What are the responsibilities and job description for the SOC Analyst (Onsite - Harrisburg, PA) position at Morph Enterprise?
Position Details
Duration: 4 months 29 days
Location: Harrisburg, PA
Work Arrangement: Full-time Onsite
Interview Mode: In-person
Working Title:
SOC Analyst 2
Position Purpose:
The SOC Analyst 2 performs event triage and internal SOC escalations to protect the confidentiality, integrity, and availability of information technology assets through prompt and accurate threat handling. The role also identifies and closes security gaps through detection engineering, threat hunting, intelligence gathering, and investigations, contributing to the continuous improvement of network and security monitoring.
Description of Duties:
- Perform ongoing, on-site information security and network monitoring with proactive response for mission-critical communication sites and systems.
- Capture, log, and respond to events received from email, chat, telecommunication systems, and other security platforms while ensuring accurate documentation.
- Perform security investigations for alerts escalated within the Security Operations Center, determining scope, root cause, and potential impact.
- Follow, create, and improve SOC playbooks and standard operating procedures (SOPs).
- Document security incidents, response activities, and related information according to established procedures.
- Analyze security logs, network captures, endpoint telemetry, and other forensic data to identify malicious activity and indicators of compromise (IOCs).
- Conduct proactive threat hunting to identify security anomalies and adversary activity.
- Tune and optimize detection rules, alerts, and correlation logic to reduce false positives and improve detection accuracy.
- Participate in root cause analysis and lessons learned sessions.
- Monitor external intelligence sources for emerging threats and actionable security incidents.
- Provide incident response support during network and security events.
- Maintain flexibility to work rotating shifts supporting 24x7x365 operations, including days, nights, weekends, and holidays.
- Perform other related duties as assigned.
Decision Making:
- Make informed and timely decisions regarding appropriate responses to security alerts.
- Escalate unique or complex issues to the supervisor as needed.
- Work is periodically reviewed for adherence to established standards and schedules.
Essential Functions:
- Use personal computers/laptops with Microsoft Office and other business applications.
- Analyze and interpret various types of information.
- Create queries, reports, and scripts using security coding and SIEM query languages.
- Prioritize multiple tasks effectively.
- Communicate effectively, both verbally and in writing.
- Utilize troubleshooting software and tools.
- Work independently as well as collaboratively within a team.
Salary : $38 - $40