Talent.com
Cyber Security Analyst (SOC)

Cyber Security Analyst (SOC)

Clark Creative SolutionsSan Diego, CA, US
5 days ago
Job type
  • Full-time
  • Quick Apply
Job description

The Cyber Analyst team member is responsible for the analysis of all technology devices which may include Operational Technology (OT) and Industrial Control Systems (ICS) as well as on-premises and cloud enterprise networks.

This includes analysis of device communication, forensic analysis of Windows or Linux systems and servers, timeline analysis of activity on these endpoints, user permission and authentication audits, log analysis, and malware identification / triage.

An ideal candidate for this position will be a proactive self-starter who has experience with system administration, Windows and Linux operating systems (OS) mechanics including filesystem structures, disk and memory forensics, cyber aware Operational Technology or Control Systems operators, commonly used mechanisms for maintaining security persistence, privilege escalation, and lateral data movement, operating system log analysis, and triaging suspicious file artifacts for unusual behavior.

This role requires a familiarity with what routine OS activities and common software / user behavior looks like in the context of forensic artifacts or timelines.

Analysts should also be familiar with common categories and formats of host-based indicators of compromise (IOCs) and how / where they can be leveraged to identify known-bad files / activity on an endpoint.

Candidate will utilize the Cyber Kill Chain and synthesize the entire attack life cycle along with creating detailed reports on how impacts may or have occurred.

Responsibilities  Support SOC team in operating and performing duties in a Security Operations Center (SOC) to provide a secure environment that facilitates monitoring, incident response, malware analysis, and threat hunting activities.  Develop and utilize analytics on the security information and event management (SIEM) platform to monitor for security alerts and coordinate vulnerability assessments and artifact collection across servers and network devices.  Asses Security Technical Implementation Guides (STIGs) compliance and completion.  Utilize asset mapping tools to verify connected inventory.  Handle Information Assurance Vulnerability Management (IVAM) notifications.  Evaluate network structures and device configurations for security risks, offering recommendations based on best practices, and gather data to identify and respond to network intrusions.  Analyze network traffic and system logs to identify malicious activities, vulnerabilities exploited, and methods used, and develop processes to enhance SOC response and efficiency.  Conduct comprehensive technical analyses of computer evidence, research and integrate new security tools into the SOC, and synthesize findings into reports for both technical and non- technical audiences.

Qualifications  (Journeyman level) At least 3 years, (Junior level) applicable 1 to 2 years of experience in security operations, demonstrating analytical duties and preforming host or network security analysis.  Proficient in analyzing cyber-attacks, with a deep understanding of attack classifications, stages, system / application vulnerabilities, and compliance with Department of Defense (DoD) policies and procedures.  Applied knowledge of network topologies, protocols (e.g., TCP / IP, ICMP, HTTP / S, DNS, SSH, SMTP, SMB), and experience with tools like Palo Alto, Elastic SIEM, Cribl, Splunk, VMware, Security Center.  Capable of attack reconstruction based on network traffic, integrating Threat Intelligence, and familiar with MITRE ATT&CK framework, with the ability to collaborate effectively across multiple locations.

Desired Skill sets  Knowledge of Operational Technology (OT) or Industrial Control Systems (ICS)  Strong analytical and troubleshooting skills  Able to provide expert content development in Splunk Enterprise Security using tstats and data models  Understands how to utilize knowledge of latest threats and attack vectors to develop correlation rules for continuous monitoring on various security appliances  Experience in other tools and protocols as applicable such as Nessus, Endgame, CrowdStrike, Gray Noise, Shodan, Bacnet, MODBus, SCADA systems, and PCAP  Review logs to determine if relevant data is present to accelerate against data models to work with existing use cases  Familiar with the operations and functions of Nessus or security center management  Can assist and provide technical input to research, discover, implement hardware and software  Understands importance and fundamentals of logistics and evidence handling  Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), or relevant IT technology certification Examples of other certifications include :

  • o Offensive Security Certified Professional (OSCP) o GIAC Response and Industrial Defense (GRID) o CERT Certified Computer Security Incident Handler o ECC CEH (Electronic Commerce Council Certified Ethical Hacker) o GCIH (GIAC Certified Incident Handler) o GISF (GIAC Information Security Fundamentals) o CISSP (Certified Information System Security Professional)  Additional certifications at an equivalent may also be considered.
  • Powered by JazzHR
Create a job alert for this search

Cyber Security Analyst • San Diego, CA, US

Related jobs
  • Promoted
Cyber Security Analyst (SOC)

Cyber Security Analyst (SOC)

Clark Creative SolutionsSan Diego, CA, US
Full-time
The Cyber Analyst team member is responsible for the analysis of all technology devices which may.Operational Technology (OT) and Industrial Control Systems (ICS) as well as on-premises and.This in...Show moreLast updated: 5 days ago
  • Promoted
Cyber Security

Cyber Security

TradeJobsWorkForce92104 San Diego, CA, US
Full-time
Cyber Security Job Duties : Safeguards information system assets by identifying and solvin...Show moreLast updated: 30+ days ago
  • Promoted
IT Security Analyst

IT Security Analyst

Somacis IncPoway, CA, US
Full-time +1
Monday–Friday, in-office (with occasional weekends as business needs require).Manager of IT & Information Security.Printed Circuit Boards (PCBs), serving a diverse range of industries inc...Show moreLast updated: 18 days ago
  • Promoted
  • New!
Cyber Security Specialist

Cyber Security Specialist

VirtualVocationsEscondido, California, United States
Full-time
A company is looking for a Cyber Security Logistics Specialist SME II.Key Responsibilities Reviews and updates system artifacts and develops baseline impact values for medical devices Documents ...Show moreLast updated: 13 hours ago
  • Promoted
GSOC Security Analyst / Physical Security Risk Analyst

GSOC Security Analyst / Physical Security Risk Analyst

ViasatCarlsbad, CA, United States
Full-time
At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show moreLast updated: 23 days ago
  • Promoted
Cyber Security Director-MedTech

Cyber Security Director-MedTech

Biolink360San Diego, CA, United States
Full-time
To be considered, email Resume To : .Our client is a large medical device company that is a leader in their space.They are known for pioneering life-saving technologies for patients world-wide.There ...Show moreLast updated: 30+ days ago
  • Promoted
Security Analyst

Security Analyst

VirtualVocationsChula Vista, California, United States
Full-time
A company is looking for a Security Analyst to join their Security team.Key Responsibilities Continuously monitor the organization's network, systems, and applications for security breaches and r...Show moreLast updated: 30+ days ago
  • Promoted
Information Security Analyst

Information Security Analyst

TradeJobsWorkForce92143 San Ysidro, CA, US
Full-time
Monitor their organization’s networks for security breaches and investigate a violation when one occurs Install and use software, such as firewalls and data encryption programs, to protect sensitiv...Show moreLast updated: 30+ days ago
  • Promoted
CPSO / Sr Principal Industrial Security Analyst

CPSO / Sr Principal Industrial Security Analyst

Northrop GrummanSan Diego, CA, US
Full-time
Sr Principal Industrial Security Analyst.At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for...Show moreLast updated: 30+ days ago
  • Promoted
Sales Director, Cyber Security

Sales Director, Cyber Security

Presidio, Inc.San Diego, CA, United States
Full-time
Presidio, Where Teamwork and Innovation Shape the Future.At Presidio, we're at the forefront of a global technology revolution, transforming industries through cutting-edge digital solutions and ne...Show moreLast updated: 1 day ago
  • Promoted
Cyber Security Risk Management Engineer

Cyber Security Risk Management Engineer

ViasatCarlsbad, CA, United States
Full-time
At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show moreLast updated: 5 days ago
  • Promoted
GSOC Analyst

GSOC Analyst

Clearance JobsCarlsbad, CA, US
Full-time
Physical Security Risk Analyst.At Viasat, we're on a mission to deliver connections with the capacity to change the world. For more than 35 years, Viasat has helped shape how consumers, businesses, ...Show moreLast updated: 20 days ago
  • Promoted
Cybersecurity ISSO / SOC Analyst

Cybersecurity ISSO / SOC Analyst

OASYS, INC.San Diego, CA, US
Full-time
Cybersecurity ISSO / SOC Analyst.Leading-Edge Government contractor, is seeking applicants for a Cybersecurity ISSO / SOC Analyst position to support our Army customer at Camp Roberts in San Miguel...Show moreLast updated: 30+ days ago
  • Promoted
Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA)

Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA)

InsuletSan Diego, CA, United States
Full-time
The Senior Director, Cyber Security oversees cyber security measures throughout the organization.This senior-level position will participate in strategic oversight of every aspect of security - fro...Show moreLast updated: 14 days ago
  • Promoted
Cybersecurity Program Analyst

Cybersecurity Program Analyst

VirtualVocationsEscondido, California, United States
Full-time
A company is looking for a Cyber Program Maturity Analyst Sr Principal.Key Responsibilities Strengthen EPA's Information Security and Privacy Posture by streamlining cybersecurity procedures and ...Show moreLast updated: 30+ days ago
  • Promoted
Security Lead

Security Lead

VirtualVocationsChula Vista, California, United States
Full-time
A company is looking for a Security Lead to build and manage its security function across governance, engineering, and operations. Key Responsibilities Own the company's security posture from code...Show moreLast updated: 30+ days ago
  • Promoted
Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA)

Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA)

Insulet CorporationSan Diego, CA, United States
Full-time
Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA).Senior Director, Cyber Security (Hybrid - San Diego, CA or Acton, MA). Position Overview : The Senior Director, Cyber Security ov...Show moreLast updated: 14 days ago
  • Promoted
GSOC Security Analyst / Physical Security Risk Analyst

GSOC Security Analyst / Physical Security Risk Analyst

Clearance JobsCarlsbad, CA, US
Full-time
Physical Security Risk Analyst.At Viasat, we're on a mission to deliver connections with the capacity to change the world. For more than 35 years, Viasat has helped shape how consumers, businesses, ...Show moreLast updated: 20 days ago
  • Promoted
CPSO / Sr Principal Industrial Security Analyst

CPSO / Sr Principal Industrial Security Analyst

Clearance JobsSan Diego, CA, US
Full-time
Sr Principal Industrial Security Analyst.At Northrop Grumman, our employees have incredible opportunities to work on revolutionary systems that impact people's lives around the world today, and for...Show moreLast updated: 26 days ago
  • Promoted
Cyber Security Engineer, Principal

Cyber Security Engineer, Principal

QualcommSan Diego, CA, United States
Full-time
Information Technology Group, Information Technology Group > .Addresses the requirement for engineering practitioners in cybersecurity functions. Protects vital electronic systems and data from attac...Show moreLast updated: 18 days ago