Location and Hours:
The ideal candidate is located in Tampa, Florida (or surrounding area) and is comfortable with a hybrid work environment (2 nights in office, 2 nights remote). Our stunning office has a dedicate SOC analyst room, rooftop terrace, and quick access to major highways.
Hours for this overnight SOC Analysts position are: 7:00 pm EST to 5:00 am EST, 3 nights per week, and 1 weekend night, totaling 40-hours per week.
Job Summary
The Tier 1 Security Operations Center (SOC) Analyst contributes to the protection of client assets and information by monitoring security events and responding to incidents. The Tier 1 SOC Analyst will leverage their cybersecurity experience and knowledge to analyze SIEM/XDR/EDR alerts with a focus on root cause analysis. They will also collaborate with the SOC team to provide value-added analysis of potential threats and make mitigation recommendations to the client. The Tier 1 SOC Analyst will maintain knowledge of the current cyber-threat landscape and the MITRE ATT&CK framework.
Duties/Responsibilities
- Utilizes SIEM/XDR/EDR tools (AlienVault USMA/LevelBlue, LogRhythm, Microsoft Sentinel, Splunk CrowdStrike, etc.) to monitor alerts and security events of client networks and systems.
- Identifies, analyzes, and responds to security incidents as they occur.
- Collaborates and leverages their cybersecurity knowledge working alongside a team of skilled analysts to address potential threats within a 24x7 SOC.
- Crafts escalations to clients for potential threats that include value-added and root cause analysis with recommendations for remediation.
- Continually improves cybersecurity and information security expertise.
- Performs other related duties as assigned.
Expected Hours Of Work
This position is intended to be full-time, 40 hours/week.
Travel
Little to no travel is expected for this position.
Education, Experience, Basic Qualifications
- Bachelor’s degree in Information Technology, Cybersecurity, or related field is preferred.
- Basic knowledge of the following content areas is preferred:
- IP addresses and subnetting.
- Common ports and services.
- IPv4 and IPv6 basic packet structure.
- HTTP methods (GET and POST).
- DNS resolution.
- SSL / TLS and certificates.
- Common malware strategies (recon, exploit, callback).
Physical Requirements
Able to communicate information and ideas so others will understand. Must be able to exchange accurate information in these situations. Able to observe details at close range. Must be able to remain in a stationary position most of the time. Must be able to talk and listen for prolonged periods of time. Occasionally required to lift/push/carry items less than 25 pounds.