Security Operations Center Analyst

Remote, USA Full-time
Eviden is an Atos Group business with an annual revenue of circa € 5 billion and a global leader in data-driven, trusted and sustainable digital transformation. As a next generation digital business with worldwide leading positions in digital, cloud, data, advanced computing and security, it brings deep expertise for all industries in more than 47 countries. By uniting unique high-end technologies across the full digital continuum with 55,000 world-class talents, Eviden expands the possibilities of data and technology, now and for generations to come. Security Operations Center Analyst Analyze logs, network traffic, and other data to identify potential security threats and vulnerabilities. Respond to security incidents by investigating and mitigating threats. Perform root cause analysis and document findings. Coordinate with other teams to contain and remediate incidents. Gather and analyze threat intelligence to stay updated on the latest threats and attack vectors. Use threat intelligence to enhance detection and response capabilities. Conduct regular vulnerability assessments and scans. Prioritize and remediate identified vulnerabilities to reduce the attack surface. Configure and maintain security tools and technologies by maintaining use cases, triage rules, IOA rules, and IOC lists on MDR applications and endpoint devices. Create detailed reports on security incidents, vulnerabilities, and overall security posture. Maintain accurate and up-to-date documentation of security processes and incidents. Continuously monitor security alerts and events from various MDR applications Perform threat hunting using various TH models which are built using AI and machine learning algorithms to detect anomalies in the environment and check for various attacks like data exfiltration, malware beaconing, DGA, DOS, suspicious logins, etc. Routinely conduct investigations of the collected logs and security use case findings to further improve, refine, and enhance threat-hunting models and use cases. Contribute to the tuning and developing threat-hunting models and SIEM use cases to enhance threat detection capabilities. Execute threat hunts by proactively and iteratively searching through networks to detect and isolate cyber threats under the supervision of the other threat hunters. Work with the Threat Intelligence feeds and solutions to identify threats, develop or recommend countermeasures, and perform advanced network and host analysis in the event of a compromise. Accurately interpret and evaluate raw network traffic and network-based alerts. Search for cyber threats and risks hiding inside the data before attacks occur. Gather as much information on threat behavior, goals, and methods as possible. Leverage internal and external resources to research threats, vulnerabilities, and intelligence on various attackers and attack infrastructure. Maintain awareness within the threat intelligence community of vulnerabilities being exploited and provide comprehensive assessments of the impact on our environment. Translate TI feeds into detection and hunting strategies, hypotheses, and queries. Utilize tools and advanced techniques to hunt and identify threats and actor groups and their motives, techniques, tools, and methods. Identify anomalous behavior on the network or endpoint devices and be able to provide an assessment of malware behavior. Work in a 24x7 Security Operation Center (SOC) environment. Security Log analysis to detect attack origin, attack spread, attacker details, incident details. Incident Response when analysis confirms actionable incident. Analyze and respond to previously undisclosed software and hardware vulnerabilities. REQUIREMENTS: Bachelor’s degree in Computer Science. Five (5) years in any occupation with cyber security experience. Five (5) years in any occupation with cyber security experience must include: SIEM and other security tools such as Firewall, EDR, Proxy, AIsaac MDR, CrowdStrike, or other; MDR SOC model and MDR Operations; Advanced MDR applications such as CrowdStrike Falcon, SentinelOne, AIsaac etc.; Vulnerability management tools such as Nessus, Qualys, or OpenVAS; Networking concepts (TCP/IP, DNS, HTTP/HTTPS, VPNs); Experience with threat intelligence platforms (TIPs) and frameworks such as MITRE ATT&CK Threat Hunting using applications such as CrowdStrike OverWatch, AIsaac MDR, or other; Experience on cloud platforms (AWS, Azure, Google Cloud) and their security features; Frameworks such as GDPR, HIPAA, PCI-DSS, and NIST Cybersecurity Framework; and Experience analyzing large datasets to detect anomalies or malicious behavior. ALTERNATE EDUCATION/EXPERIENCE REQUIREMENT: Employer will accept a Master’s degree in Computer Science and three (3) years in any occupation with cyber security experience. Must have skills listed above. REQUIRED CERTIFICATION: CEH (Certified Ethical Hacking) Certification ROVING/TELECOMMUTING EMPLOYEE: Reports to company headquarters in Plano, TX. Will work at various unknown client sites throughout the U.S. for up to 100% of the time. Must be willing to travel anywhere in the U.S. and may be assigned to work at client sites across the U.S. Can work remotely or telecommute. SALARY: $149,531 - $150,531 per year APPLY: Job ID OGL 09 Let’s grow together. Apply tot his job Apply tot his job
Apply Now

Similar Jobs

[Remote] Data Assurance Analyst

Remote, USA Full-time

Title Recording Clerk (On-Site, Downtown Los Angeles)

Remote, USA Full-time

[Remote] Analyst, Software Compliance

Remote, USA Full-time

Data Engineer (Digital Wallet) -US/ Hybrid

Remote, USA Full-time

Sr. Manager, Data Engineering - Shockwave Medical

Remote, USA Full-time

Data Modeler w/ Mortgage & Banking New York City, NY - Hybrid - 62349

Remote, USA Full-time

Experienced Remote Data Entry Specialist for Teens – Flexible Work from Home Opportunities with blithequark

Remote, USA Full-time

Online Data Entry Assistant – Empowering Young Minds (Teens 15-18 Years Old) - VacancyGlobal

Remote, USA Full-time

Fresh Remote Data Entry Jobs for Teens No Experience

Remote, USA Full-time

**Remote Data Entry Specialist - Flexible Schedule | Virtual Work (Full-Time/Part-Time) | Beginners Welcome, Paying $25-$35 per hour**

Remote, USA Full-time

Pastočių inžinierė (-ius)

Remote, USA Full-time

Experienced Customer Service and Social Media Creation Specialist for College Students – Part-Time Remote Opportunity with Growth Prospects

Remote, USA Full-time

Experienced Remote Customer Service Representative – Delivering Exceptional Support for Innovative Technology Products and Services at arenaflex

Remote, USA Full-time

Analista de Sucesso do Cliente Senior (Remoto)

Remote, USA Full-time

Cybersecurity Splunk Governance Risk and Compliance (GRC) Analyst

Remote, USA Full-time

Data Entry Clerk – Full Time / Part Time (Entry Level) – Remote

Remote, USA Full-time

Experienced Remote Data Entry Specialist – Join arenaflex and Elevate Your Career with a Leader in Global Logistics

Remote, USA Full-time

**Experienced Part-Time Data Entry Clerk – Remote Opportunity with arenaflex**

Remote, USA Full-time

Experienced Customer Service Representative for Remote Work Opportunity - Snack Food Industry Expert

Remote, USA Full-time

Experienced Content Moderation Representative – Trust and Safety Specialist for Creator Economy Platform

Remote, USA Full-time
Back to Home