SOC Analyst

Diversified Systems, Inc.

Harrisburg, PA

JOB DETAILS
SKILLS
Analysis Skills, Business Solutions, Career Development, Communication Skills, Communication Systems, Computer Hacking, Computer Security, Continuous Improvement, Database Programming Languages, Diversity, Documentation, Establish Priorities, Hunting, Incident Response, Information Assets, Information Technology & Information Systems, Information Technology Consulting, Information/Data Security (InfoSec), Intelligence Gathering, Laptop PC, Microsoft Office, Microsoft Product Family, Network Monitoring, Network Security, Patient Assessment, Presentation/Verbal Skills, Procedure Development, Root Cause Analysis, Scripting (Scripting Languages), Security Analysis, Security Attacks, Security Information and Event Management (SIEM), Security Monitoring, Software Administration, Standard Operating Procedures (SOP), Team Player, Telecommunications, Telemetry, Time Management
LOCATION
Harrisburg, PA
POSTED
1 day ago

SOC Analyst 
Onsite
 

Description:
Diversified Systems is searching for a SOC Analyst to perform event triage and internal SOC escalations to protect the confidentiality, integrity, and availability of the Commonwealth's information technology assets through prompt and accurate threat handling. The position is responsible for identifying and closing security gaps through detection engineering, threat hunting, intelligence gathering, and investigation while contributing to the continuous improvement of network and security monitoring.


Responsibilities:

  • Perform ongoing, on-site information security and network monitoring with proactive response for mission-critical communication sites and systems.
  • Capture, log, and respond to events received from email, chat, telecommunication systems, and other security systems, ensuring accurate documentation of incoming data.
  • Perform security investigations for alerts escalated within the Security Operations Center, determining full scope, potential root cause, and potential impact.
  • Follow, create, and improve established playbooks and SOPs used by the SOC.
  • Document security incidents, responses, and related information in accordance with established procedures.
  • Analyze advanced logs, network captures, and endpoint telemetry to identify malicious activity and indicators of compromise (IOCs).
  • Conduct initial threat hunting to proactively identify security anomalies and adversary activity.
  • Conduct tuning and optimization of existing detection rules, alerts, and correlation logic to reduce false positives and improve detection fidelity.
  • Participate in root cause analysis and lessons learned sessions.
  • Monitor external event sources for security intelligence and actionable incidents.
  • Provide incident response support as needed and directed during network and security events, providing support for incident resolution.
  • Maintain flexibility to work in various shift rotations to support 24/7/365 operations, including days, nights, holidays, and weekends.
  • Perform other related duties as required.
  • Make informed and timely decisions on the appropriate response to security alerts.
  • Escalate unique issues or problems to supervisors as appropriate.
  • Use personal computer/laptop with Microsoft Office products and other business software.
  • Analyze and interpret various information.
  • Create queries, reports, and scripts leveraging current security coding and SIEM query languages.
  • Prioritize tasks effectively.
  • Communicate effectively orally and in writing.
  • Utilize troubleshooting tools and software.
  • Work independently and as a team member.


Requirements:

  • Create queries, reports, and scripts leveraging current security coding and SIEM query languages required.
  • Prioritize tasks effectively required.
  • Working knowledge of troubleshooting tools (software) required.
  • Analyze and interpret various information required.
  • Ability to communicate effectively orally and in writing required.
  • Experience with information security monitoring required.
  • Experience with security incident investigation required.
  • Experience with threat hunting and threat analysis required.
  • Experience reviewing logs, telemetry, and indicators of compromise (IOCs) required.
  • Experience supporting incident response activities required.
  • Experience working within a Security Operations Center (SOC) environment required.
  • Ability to work independently and as part of a team required.
  • Ability to support 24/7/365 operational environments required.


About Diversified Systems
Founded in 1990, Diversified Systems is an award-winning Technology Services corporation providing all levels of IT project consulting services nationwide. DSI is headquartered in Columbus, Ohio with regional offices in the American Midwest and East Coast. We offer our consultants a number of flexible and competitive compensation benefit packages.

Diversified Systems is committed to the principles of equal employment. We are committed to complying with all federal, state, and local laws providing equal employment opportunities, and all other employment laws and regulations.

Diversity, Equity and Inclusion
DSI values authenticity and is committed to making sure our employees and partners are valued and respected. At DSI, we believe building a diverse culture is important because we know when people work together, we can achieve better results as a team. DSI realizes that everyone comes from various backgrounds. We celebrate these differences because our employees are our greatest asset as we strive to best meet the needs of those we serve. As part of our ongoing efforts, DSI is focused on advancing equality, diversity, and inclusion by setting high standards to continually evolve our culture. This includes but is not limited to recruiting, community involvement, client delivery, and career development.

About the Company

D

Diversified Systems, Inc.