What are the responsibilities and job description for the 2301 Security Operations Center (SOC) Tier 1 Analyst position at Smart Data?
For more than three decades, Strategic Data Systems (SDS) has been a software consultancy firm specializing in strategy, technology, and business transformation for Fortune 100 companies, mid-sized firms, and startups. At SDS, we empower our development teams to address our clients’ critical business challenges by leveraging cutting edge technologies. If you seek a workplace where your contributions are truly appreciated, then SDS is the company for you. Join us today to work alongside fellow development specialists and become a crucial part of our dynamic and cohesive community.
Job Title: Security Operations Center (SOC) Tier 1 Analyst
Location: Cincinnati, OH [Downtown]
Years of Experience: 2
What You’ll Do
Summary/Basic Purpose:
The Security Operations Center is responsible for providing 24/7, 365 monitoring, detection, and response capabilities for client. This includes event, cloud security, and DLP monitoring, as well as a role in the incident response process. The Tier 1 SOC analyst primarily serves as the initial triage and investigation point for the SOC and would escalate incidents on an as needed basis.
The Tier 1 Security Operation Center (SOC) Analyst is responsible for proactively monitoring and performing initial triage / investigation of security incidents and alerts to identify any malicious activity. Besides the initial triage and investigation, Tier 1 Analysts are expected to escalate security incidents according to defined escalation policies to Tier 2, Tier 3, and SOC leadership for further investigation / response.
Essential Duties/Responsibilities:
SOC Analysis
● Monitor security incidents for, endpoints, network, and cloud domains, being generated by the SIEM tool and ticketing system.
● Initial triage and investigation of incidents assigned through the ticketing system, following established playbooks for specific incident types.
● Respond, mitigate, and eradicate security threats, with guidance from Tier 2, Tier 3 analysts, as well as SOC leadership.
80%
Documentation and Support
● Provide consistent and quality documentation of actions taken to triage / investigate incidents.
● Assist senior staff in development of documentation / knowledge management articles for the SOC.
● Handle sensitive information in accordance with the Corporate Information Protection Policy.
● Collaborate with other Engineering and Operations teams to troubleshoot, respond, and improve detection capabilities.
10%
Other duties as assigned
10%
Physical Demands and Working Conditions:
Identify and distinguish colors and shapes in either physical and/or digital format
Occasional
Maintain a stationary position
Frequent
Operate office machinery including but not limited to computers, printers, scanners, phones, etc.
Frequent
Move through work location to access files, machinery, or other items to complete a job/task
Occasional
Move and/or position 0-20 pounds
Occasional
Move and/or position over 20 pounds
Never
Position self to work environment based on task assigned such as filing in high or low cabinets
Occasional
Ability to count and handle currency and coinage
Never
Travel required
Never
Qualifications:
Education Requirements
Minimum/Preferred:
· Minimum
Education Level:
High School/GED
Description:
With 2 years relevant and/or transferable experience
– OR -
· Preferred
4 Yr/Bachelor Degree
Degree in Computer Science, Engineering, Information Systems, or Cyber Security or equivalent degree
Minimum Experience
Years Required:
· 2 years
Specific Experience:
Transferable and/or relevant work experience
· Less than 1 year
Experience using various operating systems and industry standard monitoring, logging, alerting and investigation processes.
· Choose an item.
Please provide specific experience required.
· Choose an item.
Please provide specific experience required.
Licenses/Certifications:
Required/Preferred:
· Preferred
Licenses & Certifications:
Other (please specify)
Additional Information:
Foundational Cybersecurity / IT certifications (e.g. CompTIA Network , CompTIA Security , GCIA, GCIH, GREM, or GPEN) preferred
Job Specific Knowledge/Skills:
● Solid understanding of Cybersecurity concepts and frameworks.
● Proven, excellent analytical skills.
● Working knowledge in the use of tools such as SIEM / IT Ticketing technologies, EDR, Email Gateway’s, Malware Analysis Sandbox.
● Understanding of networking (TCP/IP networks and protocols) concepts.
● Understanding of phishing and malware techniques
● Strong written and oral communication, documentation, and organizational skills.
What You’ll Get
SDS, Inc. provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state, and local laws.
- Competitive base salary
- Medical, dental, and vision insurance coverage
- Optional life and disability insurance provided
- 401(k) with a company match and optional profit sharing
- Paid vacation time
- Paid Bench time
- Training allowance offering
- You’ll be eligible to earn referral bonuses!