Epicareer Might not Working Properly
Learn More

Security Professional

Salary undisclosed

Checking job availability...

Original
Simplified

Buchanan Technologies is on the hunt for a highly skilled L2 Security Analyst to join our global Security Operations Center (SOC). This role involves monitoring, detecting, analyzing, and responding to cybersecurity incidents in a 24/7 MSSP SOC environment. The successful candidate will serve as a key point of escalation for complex security issues and mentor junior SOC team members.

With offices in Grapevine, TX, Wichita, KS, Mississauga, Ontario, Charlottetown, PE, Sofia, Bulgaria, and Manila, Philippines, Buchanan Technologies supports a diverse client base across the globe, offering a challenging and collaborative work environment.

Key Responsibilities:

Incident Detection and Response:

  • Perform network security monitoring and advanced incident response for numerous clients.
  • Monitor and analyze Security Information and Event Management (SIEM) systems, Endpoint Detection and Response (EDR), and other security tools to identify, investigate, and respond to threats.
  • Recognize potential, successful, and unsuccessful intrusion attempts and compromises by analyzing event details and summary information.
  • Communicate alerts to clients regarding intrusions, compromises, or vulnerabilities.
  • Analyze and deconstruct malware (e.g., obfuscated code) using open-source and vendor-provided tools.

Threat Intelligence and Analysis:

  • Consolidate and conduct comprehensive analysis of threat data obtained from classified, proprietary, and open-source resources.
  • Provide detailed threat intelligence to clients to help prevent future attacks.
  • Create, modify, and fine-tune SIEM rules for better detection capabilities.
  • Provide trending and analysis of security logs from a wide range of heterogeneous IT security devices.

Documentation and Reporting:

  • Prepare detailed reports and briefings on incident methodology, findings, and remediation actions.
  • Generate end-of-shift reports to ensure seamless knowledge transfer to subsequent SOC analysts.
  • Create and maintain standard operating procedures (SOPs) and other documentation to ensure consistency across the team.

Collaboration and Mentorship:

  • Assist entry-level SOC analysts in building stronger technical and analytical skills.
  • Collaborate with IT, network, and application teams to mitigate risks and address security incidents effectively.
  • Review the work of Junior Analysts to ensure a thorough investigation and resolution.
  • Support Team Leads with reporting, project work, and administrative tasks.

Minimum Requirements:

Required Certifications:

  • CompTIA A+
  • CompTIA Security+
  • CompTIA CySA+ (Cybersecurity Analyst)

3+ years of experience in SOC support or IT Security

Strong understanding of:

  • Cybersecurity incident response processes.
  • Network security monitoring concepts and tools.
  • Computer networking fundamentals (TCP/IP).
  • Windows and Linux operating systems.

Proficiency in analyzing logs, packet captures, and other security data from various sources.

Experience with MDR, SIEM, and Anti-Virus solutions.

Basic knowledge of client-server applications, web applications, relational databases, firewalls, and VPNs.

Excellent analytical and problem-solving skills with attention to detail.

Strong written and verbal communication skills.

Preferred Qualifications:

  • Associate’s Degree in Computer Information Systems or related field.
  • CompTIA Network+ certification.
  • Certified Ethical Hacker (CEH) certification.
  • Certified SOC Analyst (CSA) certification.
  • Advanced certifications such as:
  • CISSP (Certified Information Systems Security Professional).
  • CISM (Certified Information Security Manager).
  • CISA (Certified Information Systems Auditor).

Skills and Competencies:

  • Proficiency in ticketing and case management systems.
  • Hands-on experience with phishing investigation and resolution.
  • Ability to lead detailed investigations into security incidents and provide actionable remediation steps.
  • Strong teamwork and collaboration skills, with the ability to mentor junior team members.
  • Familiarity with industry frameworks like MITRE ATT&CK and NIST Cybersecurity Framework.

Work Environment:

  • Buchanan Technologies’ SOC operates across multiple time zones, requiring the ability to work collaboratively with global teams.
  • The position may require after-hours availability to respond to critical incidents or conduct system maintenance.
  • This position may require the ability to work all three shifts

Buchanan Technologies is on the hunt for a highly skilled L2 Security Analyst to join our global Security Operations Center (SOC). This role involves monitoring, detecting, analyzing, and responding to cybersecurity incidents in a 24/7 MSSP SOC environment. The successful candidate will serve as a key point of escalation for complex security issues and mentor junior SOC team members.

With offices in Grapevine, TX, Wichita, KS, Mississauga, Ontario, Charlottetown, PE, Sofia, Bulgaria, and Manila, Philippines, Buchanan Technologies supports a diverse client base across the globe, offering a challenging and collaborative work environment.

Key Responsibilities:

Incident Detection and Response:

  • Perform network security monitoring and advanced incident response for numerous clients.
  • Monitor and analyze Security Information and Event Management (SIEM) systems, Endpoint Detection and Response (EDR), and other security tools to identify, investigate, and respond to threats.
  • Recognize potential, successful, and unsuccessful intrusion attempts and compromises by analyzing event details and summary information.
  • Communicate alerts to clients regarding intrusions, compromises, or vulnerabilities.
  • Analyze and deconstruct malware (e.g., obfuscated code) using open-source and vendor-provided tools.

Threat Intelligence and Analysis:

  • Consolidate and conduct comprehensive analysis of threat data obtained from classified, proprietary, and open-source resources.
  • Provide detailed threat intelligence to clients to help prevent future attacks.
  • Create, modify, and fine-tune SIEM rules for better detection capabilities.
  • Provide trending and analysis of security logs from a wide range of heterogeneous IT security devices.

Documentation and Reporting:

  • Prepare detailed reports and briefings on incident methodology, findings, and remediation actions.
  • Generate end-of-shift reports to ensure seamless knowledge transfer to subsequent SOC analysts.
  • Create and maintain standard operating procedures (SOPs) and other documentation to ensure consistency across the team.

Collaboration and Mentorship:

  • Assist entry-level SOC analysts in building stronger technical and analytical skills.
  • Collaborate with IT, network, and application teams to mitigate risks and address security incidents effectively.
  • Review the work of Junior Analysts to ensure a thorough investigation and resolution.
  • Support Team Leads with reporting, project work, and administrative tasks.

Minimum Requirements:

Required Certifications:

  • CompTIA A+
  • CompTIA Security+
  • CompTIA CySA+ (Cybersecurity Analyst)

3+ years of experience in SOC support or IT Security

Strong understanding of:

  • Cybersecurity incident response processes.
  • Network security monitoring concepts and tools.
  • Computer networking fundamentals (TCP/IP).
  • Windows and Linux operating systems.

Proficiency in analyzing logs, packet captures, and other security data from various sources.

Experience with MDR, SIEM, and Anti-Virus solutions.

Basic knowledge of client-server applications, web applications, relational databases, firewalls, and VPNs.

Excellent analytical and problem-solving skills with attention to detail.

Strong written and verbal communication skills.

Preferred Qualifications:

  • Associate’s Degree in Computer Information Systems or related field.
  • CompTIA Network+ certification.
  • Certified Ethical Hacker (CEH) certification.
  • Certified SOC Analyst (CSA) certification.
  • Advanced certifications such as:
  • CISSP (Certified Information Systems Security Professional).
  • CISM (Certified Information Security Manager).
  • CISA (Certified Information Systems Auditor).

Skills and Competencies:

  • Proficiency in ticketing and case management systems.
  • Hands-on experience with phishing investigation and resolution.
  • Ability to lead detailed investigations into security incidents and provide actionable remediation steps.
  • Strong teamwork and collaboration skills, with the ability to mentor junior team members.
  • Familiarity with industry frameworks like MITRE ATT&CK and NIST Cybersecurity Framework.

Work Environment:

  • Buchanan Technologies’ SOC operates across multiple time zones, requiring the ability to work collaboratively with global teams.
  • The position may require after-hours availability to respond to critical incidents or conduct system maintenance.
  • This position may require the ability to work all three shifts