Back to the board

SOC Analyst - Incident Response, MITRE ATT&CK - REMOTE (W2 ONLY)

100% remote Flexible hours Hiring now

Dice is the leading career destination for tech experts at every stage of their careers. Our client, Chandra Technologies, Inc., is seeking the following. Apply via Dice today! Job Description:

  • Only W2 resumes are accepted
  • *Work Location: Role is 100% Remote

Candidate location: No SC residency required. Open to nationwide candidates.** The position will work as a Tier 2 SOC Analyst for the Division of Information Security. This role will focus on supporting security monitoring, threat detection, security incident response and security investigations. Engaging directly with state agencies to promote, support, and improve adoption of centralized security services is a key focus. The engagement is expected to be needed for 12 months with the possibility of extension. DAILY DUTIES / RESPONSIBILITIES: PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

  • Continuously review and correlate security event data across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify complex attack patterns, emerging threats, and security incidents.
  • Perform deep-dive analysis of suspicious activity, validate incidents, determine root cause and impact, and escalate critical incidents with detailed context to Tier 3 as required.
  • Create detailed incident reports, timelines, and post-incident summaries; contribute to lessons-learned documentation and recommendations for remediation and preventative measures.
  • Investigate user-reported phishing, malware infections, and potential policy violations; advise users and internal/external teams on containment and recovery actions.
  • Recommend updates to SOC playbooks and workflows based on real-world INVESTIGATIONS, fine-tune detection rules. Alert thresholds, and correlation logic to reduce false positives and improve threat coverage.
  • Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned. Integrate new threat intelligence feeds into workflows and proactively hunt for threats using up-to date tactics, techniques, and procedures (TTPs)
  • Serve as a customer-facing SME, “selling” the value of DIS services by demonstrating capabilities and resolving issues.
  • Document processes, runbooks, and troubleshooting steps related to SOC operations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Required Skills

  • 2+ Years of Experience with Security Monitoring and Incident Response.
  • 2+ Years of Experience with MITRE ATT&CK framework.
  • 2+ Years of Experience with dashboard creation and reporting
  • Associate’s degree in an information technology or information security related field
  • Four years of relevant work experience may be substituted in lieu of education

Preferred Skills

  • Experience with the Palo Alto Cortex XSIAM/XDR platform.
  • Knowledge of Linux, network administration and network design.
  • Experience in administration of firewalls, VPN technology, Active Directory, Intrusion Detection/Prevention systems.
  • Candidate is local to Columbia, SC or surrounding city in South Carolina
  • CISSP, CISA, CISO or equivalent advanced security certification.
  • Additional relevant certifications (e.g., CEH, OSCP, GPEN).

Vendor certifications related to information security Apply To This Job

Keep exploring

Regional Safety Manager - Eastern US (Remote)

100% remote Flexible hours

Regional Category Sales Specialist (West) - Wearable Safety Solutions

100% remote Flexible hours

Field Safety Manager

100% remote Flexible hours

Regional Environmental, Health & Safety Manager

100% remote Flexible hours

Environmental Health and Safety (EHS) Compliance Officer - Remote

100% remote Flexible hours

Regional Manager, Environmental Health & Safety (Remote)

100% remote Flexible hours

Senior Environmental Health and Safety Specialist - Remote

100% remote Flexible hours

SAP EHS PRC Developer

100% remote Flexible hours

Trust and Safety Manager, Critical Response

100% remote Flexible hours

Associate Investigator, Trust and Safety, Remote Job

100% remote Flexible hours

Experienced Remote Customer Support Specialist – Deliver Exceptional Service from the Comfort of Your Home

100% remote Flexible hours

Remote Entry-Level Data Entry Clerk – Unlock the Power of Data with arenaflex

100% remote Flexible hours

Export Sales Manager

100% remote Flexible hours

Experienced Customer Service Representative – Remote Amazon Operations

100% remote Flexible hours

Employer Brand Manager - Campaign Design and Creative. Job in Reading Gr8Jobs

100% remote Flexible hours

Experienced Customer Experience Representative III (Remote) – Medicaid, Medicare, and Marketplace Business

100% remote Flexible hours

[Remote] Principal AI Engineer, HR Automation

100% remote Flexible hours

[Remote] Manager, Cloud Engineering

100% remote Flexible hours

Executive Support & Business Operations Lead

100% remote Flexible hours

Remote Live Chat Data Entry Specialist – arenaflex Subscriber Support & Account Management – $33/hr – 2024

100% remote Flexible hours