SOC (Security Operations Center) Senior Threat Analyst Job at GovServicesHub, New York, NY

RUxpYUJnU0NJRzBaeVdQL3pvaTBlSEpyQ3c9PQ==
  • GovServicesHub
  • New York, NY

Job Description

Job Location: Available to work On-Site, Brooklyn, NY

Note : 8+ yrs experience, Certified candidate, Candidate must be willing to work days, nights and/or weekends depending on coverage or critical incident response needs  

Shift Schedule : Night shifts will typically occur between the hours of 6:00 PM and 6:00 AM. The night SOC analyst position will include weekend shifts

 

Job Description:

TASKS:

 

Perform many critical functions within the Threat Management discipline including staffing 24x7x365 coverage at the City’s Security Operations Center (SOC) augmenting FTE shift schedules including days, nights, weekends, and holidays.

Interface with OTI Cyber Command teams internally, with City agencies, vendors, and information-sharing partners.

Monitor City networks and security alerts for intrusion, attempted compromise, and anomalous behaviour; apply mitigation techniques or escalation factors; correlate threat intelligence across various logs collected by established security controls.

Produce routine SOC metrics & reporting.

Maintain situation reports (SITREPS)

Perform weekly quality control checks.

Works closely with SOC Director on incident preparation including the continuous development of new SOC playbooks and runbooks

Requirements

Skills Set:

 

Skill

Required /Desired

Experience

experience in Threat Management/SOC/Incident Response environment.

Required

8+ years

For this senior position, leadership skills are a must, including the ability to lead and mentor junior analysts, coordinate team activities, and manage SOC operations effectively

Required

-

Prior experience working in a SOC environment is mandatory. This includes familiarity with SOC operations, procedures, and tools such as SIEM (Security Information and Event Management) systems, intrusion detection/prevention systems (IDS/IPS), and endpoint detection and response (EDR) tools.

Required

-

Knowledge of cybersecurity principles, practices, and procedures

Desired

-

Strong understanding of network and host technologies

Desired

-

Experience applying techniques for detecting host and network-based intrusion using IDS methods and technologies

Desired

-

Experience with SIEM technologies, malware analysis and mitigation techniques

Desired

-

Apply cybersecurity and privacy principles to organizational requirements (confidentiality, integrity, availability, authentication, non-repudiation)

Desired

-

Interpret information collected by diagnostic network tools (NetFlow, security event logs, IDS systems, etc.)

Desired

-

Ability to investigate and solve complex problems

Desired

-

Excellent communication skills are crucial for effectively communicating security incidents, risks, and recommendations to technical and non-technical stakeholders, including SOC Director and senior management.

Desired

-

Threat Hunting: Proactive threat hunting capabilities to identify and investigate potential security threats or anomalies within the environment before they escalate into incidents.

Desired

-

Incident Response: Experience in incident response procedures and methodologies, including the ability to analyze security incidents, contain threats, mitigate risks, and recover from security breaches effectively and efficiently

Desired

-


Job Tags

Holiday work, Contract work, Shift work,

Similar Jobs

Descope

Sales Development Representative (SDR) Job at Descope

 ...Lightspeed and GGV Capital, with participation from several other investors and notable individual investors such as George Kurtz (CEO, CrowdStrike), Bipul Sinha (CEO, Rubrik), John Thompson (Board Director, Microsoft), and Assaf Rappaport (CEO, Wiz). What You'll Be Doing:... 

General Dynamics Information Technology

Network Engineer Job at General Dynamics Information Technology

 ...maintain TS/SCI clearance. ~ This position is deemed a DoD IA Workforce, IAT Level II position and requires 8570/8140 compliance. ~ CCNA is required. ~ Must have comprehensive knowledge of the principles, methods, and techniques used in network analysis and design.... 

Vensure Employer Solutions

Division Vice President of Nursing Informatics - TX Job at Vensure Employer Solutions

 ...healthcare system is seeking a Division Vice President of Nursing Informatics to join its executive team. This role provides strategic and...  .... The ideal candidate is a transformational leader with deep clinical informatics expertise, a servant-leader mindset, and... 

Rapptr Labs

UX/UI Designer (LATAM) Job at Rapptr Labs

 ...Product Designer (LATAM - Remote) About Rapptr Labs Rapptr Labs is a product development agency specializing in mobile and web applications for startups and established brands. We work on diverse projects spanning consumer apps, B2B platforms, and enterprise solutions... 

Med Source Consultants

Family Medicine Physician - 2946 Job at Med Source Consultants

 ...Family Medicine Physician 2946 Live or Work in Chicago!*Fabulous opportunity for a Family or Internal Medicine physician to join a well-established hospital group in Indiana, near Chicago. *Highly competitive compensation package including: Great Pay, Sign-on,...