Back

SOC 2 Analyst

Worldwide Salaried Open

SOC 2 Contract 

Through 2026

Supporting APAC Time zones

Responsible for investigating security incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are responsible for collecting data and reviewing alerts. Tier 2/3 analysts use threat intelligence, such as indicators of compromise , TTPs, and company host system/network data sets to assess the alerts, threats and potential incidents in more depth.

They have deep experience with SIEM tools specifically Crowdstrike SIEM, network data, host data, Identity and Access log data, developing SIEM use cases, reducing/tuning false alerts and leading investigations until issues have been resolved.  They will also monitor systems and events across different operating systems, such as Windows, macOS, and Linux.  

Must be proactive, problem solver and curious.

Must have 5+ years recent experience as Tier 2 or 3 analyst at a large organization; government and Critical Infrastructure company preferred.

Must have strong, demonstrated SIEM and data correlation experience

Must have demonstrated experience designing new SOC use cases and working with vendor on implementing new use cases.

Must have experience designing and implementing runbooks and use cases to mitigate security incidents

Experience designing Incident Response plan, including alert definition, runbooks, escalation, etc..

Must have extensive experience reviewing and managing alerts in Microsoft Defender, Splunk and or Crowdstrike

Must have experience conducting hunts across disparate data sets, to include host data, vulnerability data, threat data, network data, active directory data, among others to identify threats

Experience leading timely security operations response efforts in collaboration with stakeholders

Experience documenting incident response communications for technical and management audiences

Must have experience setting up alert rules and effective alert management

Demonstrated ability to create runbooks and conducting investigations with key application, IT Infra and other stakeholders

Experience designing custom SOC SIEM use cases in Defender, Splunk and CRWD

Experience conducting forensic work investigations

Most be a problem solver

Must be curious

Must be analytical, qualitative and quantitative abilities

Must be adaptive to dynamic environment

Strong security operations documentation abilities

Apply To This Job

More jobs

Offshore Events and Marketing Coordinator

Worldwide Salaried

Regional Account Executive – Cybersecurity & Critical Services

Worldwide Salaried

Regional Sales Manager - (REMOTE) (Remote)

Worldwide Salaried

Regional Sales Manager (REMOTE) (Remote)

Worldwide Salaried

Regional Sales Manager (Pauling)

Worldwide Salaried

Field Support Engineer (Arizona) (Remote)

Worldwide Salaried

Water Treatment Intern

Worldwide Salaried

Partner Solutions Engineer

Worldwide Salaried

Sales Representative BC - Memphis, TN

Worldwide Salaried

Part-time Intake Case Coordinator

Worldwide Salaried

Credentialing Specialist

Worldwide Salaried

Entry-Level Manufacturing Planner Associate - Production Planning & Control for Fire Control & Tact Programs at Lockheed Martin

Worldwide Salaried

Experienced Remote Data Entry Specialist – Part-Time Positions at arenaflex

Worldwide Salaried

Cloud Engineer

Worldwide Salaried

Experienced Remote Data Entry Specialist – Full Time, Entry Level Opportunity for Detail-Oriented Individuals with Strong Organizational Skills

Worldwide Salaried

Immediate Hiring: Need Children's Development, Gymnastics and

Worldwide Salaried

Experienced Part-Time Chat Customer Service Representative – Music Industry Enthusiast Wanted for Remote Position at arenaflex

Worldwide Salaried

Experienced Resume Writer - (part-time) work from home - U.S.-based Remote - Pipeline

Worldwide Salaried

Reporting Analyst US-AL-FOLEY-111 ~ 111 Airport Dr ~ MRO BLDG

Worldwide Salaried

Experienced Part-Time Remote Customer Experience Agent – No Experience Needed – Thrive in a Dynamic Online Media Environment

Worldwide Salaried