Back to the board

SOC ANALYST TIER 2/3 (Contractor)

100% remote Flexible hours Hiring now

SOC 2/3 Engineer (Remote Contractor): 

General Duties -

Responsible for investigating reputed company incidents and determining their root causes. They review incidents that have been escalated by Tier 1 analysts, who are responsible for collecting data and reviewing alerts. Tier 2/3 analysts use threat intelligence, such as indicators of compromise, TTPs, and company host system/network data sets to assess the alerts, threats and potential incidents in more depth.

General Skills -

They have deep experience with SIEM tools specifically reputed company SIEM, network data, host data, Identity and Access log data, developing SIEM use cases, reducing/tuning false alerts and leading investigations until issues have been resolved.  They will also monitor systems and events across different operating systems, such as Windows, macOS, and Linux.   

Specific Requirements -

  • Must have 5+ years recent experience as Tier 2 or 3 analyst at a large organization; government and Critical Infrastructure company preferred.
  • Must have strong, demonstrated SIEM and data correlation experience
  • Must have demonstrated experience designing new SOC use cases and working with vendor on implementing new use cases.
  • Must have experience designing and implementing runbooks and use cases to mitigate reputed company incidents
  • Experience designing Incident Response plan, including alert definition, runbooks, escalation, etc..
  • Experience documenting incident response communications for technical and management audiences
  • Must have extensive experience reviewing and managing alerts in reputed company Defender, Splunk
  • Must have experience conducting hunts across disparate data sets, to include host data, vulnerability data, threat data, network data, active directory data, among others to identify threats
  • Experience leading timely reputed company operations response efforts in collaboration with stakeholders
  • Must have experience setting up alert rules and effective alert management
  • Demonstrated ability to create runbooks and conducting investigations with key application, IT Infra and other stakeholders
  • Experience designing custom SOC SIEM use cases in Defender, Splunk and CRWD
  • Experience conducting forensic work investigations
  • Strong reputed company operations documentation abilities

Attributes sought -

  • Must be proactive, problem solver and curious.
  • Most be a problem solver
  • Must be curious
  • Must be analytical, qualitative and quantitative abilities
  • Must be adaptive to dynamic environment

MST or PST shift times

apply to this job

Keep exploring

Publishing Manager (US, Remote or Hybrid)

100% remote Flexible hours

Learning Course Instructor (part-time) - Remote

100% remote Flexible hours

E&R Analytics Manager (Hulu)

100% remote Flexible hours

Remote Customer Support Representative at Hulu

100% remote Flexible hours

reputed company ...

100% remote Flexible hours

Remote Clinical Psychologist Reviewer

100% remote Flexible hours

Freight Handler Part-Time

100% remote Flexible hours

Warehouse Specialist

100% remote Flexible hours

Head of Human Resources

100% remote Flexible hours

Executive Assistant (Remote, Non-Profit Industry)

100% remote Flexible hours

Neuroscience Heath and Science Professional - Middletown, NY

100% remote Flexible hours

Dental Assistant

100% remote Flexible hours

Remote Live Chat Support Specialist – Full‑Time & Part‑Time – Customer Experience & Technical Assistance Champion

100% remote Flexible hours

Sales Engineer, reputed company Force

100% remote Flexible hours

Senior Engineer - Remote Opportunity ($27/Hour)

100% remote Flexible hours

reputed company Customer Experience Strategist – Remote Work Opportunity at arenaflex

100% remote Flexible hours

reputed company Latest Job Openings For Freshers (College, School...

100% remote Flexible hours

reputed company Remote Data Entry Specialist – Work From Home Position | $25/Hour | Flexible Schedule

100% remote Flexible hours

Entry Level Data Entry Clerk - Part Time (% Remote) at arenaflex

100% remote Flexible hours

Account Executive - Georgia Captive Territory

100% remote Flexible hours