What are the responsibilities and job description for the Security Operations Center Analyst - Remote position at TalentFish?
TalentFish is casting a line for an Information Security Analyst. This is a Direct Hire role, fully remote. This position exists to strengthen a growing Information Security department's Security Operations function, providing hands-on incident response, threat hunting, and detection capabilities to protect a large, complex enterprise environment.
What You Bring to the Role (Ideal Experience)
- BS or BA in Computer Science, Engineering, or equivalent work experience
- 4 years of security experience, or equivalent training and education
- Solid knowledge of computing systems, data network communications, and network architecture
- Working knowledge of SIEM platforms and associated query languages (Yara-L, CQL, SPL, etc.)
- Strong grasp of network security fundamentals, including NDR, intrusion detection, incident detection/response, malware analysis, and cyber forensics
- Scripting or programming skills (Python, PowerShell, Go, etc.) preferred
- Strong verbal, writing, and reporting skills, with a high level of integrity and sound judgment around security and privacy
What You'll Do (Skills Used in this Position)
- Participate in incident response, triage, and investigations for security events including malware, phishing, and other threats
- Use threat intelligence and institutional knowledge to proactively hunt for active threats and malicious activity
- Investigate and respond to email-based threats, including phishing, business email compromise (BEC), malware delivery, and account takeover
- Create incident reports, threat reports, and security operations documentation for stakeholders
- Support eDiscovery requests and insider threat investigations in collaboration with Privacy, Legal, and HR
- Contribute to detection development, automation, and SOC AI workflows
- Continuously improve security operations playbooks and documentation based on incident trends and lessons learned
- Monitor the Security Operations service and incident queue
- Participate in on-call rotation and respond to critical security events