SOC Analysts | Junior to Mid | Hybrid and WFH
ZigZag is looking for a SOC Analyst to join our team!
Job Summary:
The SOC Analyst is a critical member of our cybersecurity team, responsible for monitoring, analyzing, and responding to security events and incidents. This role requires a strong understanding of security principles, excellent analytical skills, and the ability to work effectively in a fast-paced environment. The SOC Analyst will play a key role in protecting our organization's information assets and ensuring business continuity.
Responsibilities:
- Security Monitoring and Analysis:Monitor security information and event management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR) tools, and other security platforms for suspicious activity.
- Analyze security logs, network traffic, and system events to identify potential security threats and vulnerabilities.
- Investigate security alerts and incidents, determining the scope and impact of security breaches.
- Correlate security events to identify patterns and trends.
- Incident Response:Follow established incident response procedures to contain, eradicate, and recover from security incidents.
- Document security incidents and investigations, providing detailed reports to management.
- Escalate critical incidents to senior SOC analysts or incident response teams.
- Participate in post-incident reviews to identify lessons learned and improve security processes.
- Vulnerability Management:Assist in vulnerability scanning and assessment activities.
- Monitor vulnerability databases and security advisories for new threats.
- Contribute to the development and implementation of vulnerability remediation plans.
- Threat Intelligence:Stay up-to-date on the latest security threats and vulnerabilities.
- Utilize threat intelligence feeds to identify potential threats to the organization.
- Share threat intelligence with other team members and stakeholders.
- Reporting and Documentation:Generate regular security reports and metrics.
- Maintain accurate and up-to-date documentation of security procedures and processes.
- Create and update knowledge base articles.
- Collaboration:Collaborate with other IT teams and departments to address security issues.
- Provide security awareness training to employees.
- Work with external vendors and partners as needed.
- Adherence to compliance:Ensure that all security operations are conducted in compliance with relevant industry regulations and standards (e.g., Data Privacy Act of 2012, ISO 27001).
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 1-2 years of experience in a SOC or related security role.
- Strong understanding of security concepts, including network security, endpoint security, and vulnerability management.
- Experience with SIEM tools (e.g., Splunk, QRadar), IDS/IPS, and EDR solutions.
- Familiarity with common security frameworks and standards (e.g., NIST, ISO 27001).
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills.
- Ability to work effectively in a team environment.
- Relevant certifications (e.g., CompTIA Security+, CEH, GIAC) are a plus.
Skills:
- SIEM Management
- Intrusion Detection/Prevention
- Endpoint Detection and Response
- Vulnerability Management
- Incident Response
- Log Analysis
- Network Security
- Threat Intelligence
- Knowledge of common operating systems and networking protocols.
ZigZag is looking for a SOC Analyst to join our team!
Job Summary:
The SOC Analyst is a critical member of our cybersecurity team, responsible for monitoring, analyzing, and responding to security events and incidents. This role requires a strong understanding of security principles, excellent analytical skills, and the ability to work effectively in a fast-paced environment. The SOC Analyst will play a key role in protecting our organization's information assets and ensuring business continuity.
Responsibilities:
- Security Monitoring and Analysis:Monitor security information and event management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR) tools, and other security platforms for suspicious activity.
- Analyze security logs, network traffic, and system events to identify potential security threats and vulnerabilities.
- Investigate security alerts and incidents, determining the scope and impact of security breaches.
- Correlate security events to identify patterns and trends.
- Incident Response:Follow established incident response procedures to contain, eradicate, and recover from security incidents.
- Document security incidents and investigations, providing detailed reports to management.
- Escalate critical incidents to senior SOC analysts or incident response teams.
- Participate in post-incident reviews to identify lessons learned and improve security processes.
- Vulnerability Management:Assist in vulnerability scanning and assessment activities.
- Monitor vulnerability databases and security advisories for new threats.
- Contribute to the development and implementation of vulnerability remediation plans.
- Threat Intelligence:Stay up-to-date on the latest security threats and vulnerabilities.
- Utilize threat intelligence feeds to identify potential threats to the organization.
- Share threat intelligence with other team members and stakeholders.
- Reporting and Documentation:Generate regular security reports and metrics.
- Maintain accurate and up-to-date documentation of security procedures and processes.
- Create and update knowledge base articles.
- Collaboration:Collaborate with other IT teams and departments to address security issues.
- Provide security awareness training to employees.
- Work with external vendors and partners as needed.
- Adherence to compliance:Ensure that all security operations are conducted in compliance with relevant industry regulations and standards (e.g., Data Privacy Act of 2012, ISO 27001).
Qualifications:
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- Minimum of 1-2 years of experience in a SOC or related security role.
- Strong understanding of security concepts, including network security, endpoint security, and vulnerability management.
- Experience with SIEM tools (e.g., Splunk, QRadar), IDS/IPS, and EDR solutions.
- Familiarity with common security frameworks and standards (e.g., NIST, ISO 27001).
- Excellent analytical and problem-solving skills.
- Strong communication and interpersonal skills.
- Ability to work effectively in a team environment.
- Relevant certifications (e.g., CompTIA Security+, CEH, GIAC) are a plus.
Skills:
- SIEM Management
- Intrusion Detection/Prevention
- Endpoint Detection and Response
- Vulnerability Management
- Incident Response
- Log Analysis
- Network Security
- Threat Intelligence
- Knowledge of common operating systems and networking protocols.