Back

Lead SOC Analyst

Worldwide Salaried Open

Scope of the project: The position will work as an Tier 2 SOC Analyst for the Division of Information Security. This role will focus on supporting security monitoring, threat detection, security incident response and security investigations. Engaging directly with state agencies to promote, support, and improve adoption of centralized security services is a key focus. The engagement is expected to be needed for 12 months with the possibility of extension Daily Duties / Responsibilities: PREFERENCE WILL BE GIVEN TO A CANDIDATE WHO CAN WORK ONSITE OVER HYBRID AND OVER FULL-TIME REMOTE (ON-SITE AS NEEDED).

  • Continuously review and correlate security event data across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify complex attack patterns, emerging threats, and security incidents.

•Perform deep-dive analysis of suspicious activity, validate incidents, determine root cause and impact, and escalate critical incidents with detailed context to Tier 3 as required.

  • Create detailed incident reports, timelines, and post-incident summaries; contribute to lessons-learned documentation and recommendations for remediation and preventative measures.
  • Investigate user-reported phishing, malware infections, and potential policy violations; advise users and internal/external teams on containment and recovery actions.
  • Recommend updates to SOC playbooks and workflows based on real-world INVESTIGATIONS, fine-tune detection rules. Alert thresholds, and correlation logic to reduce false positives and improve threat coverage.
  • Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned. Integrate new threat intelligence feeds into workflows and proactively hunt for threats using up-to date tactics, techniques, and procedures (TTPs)
  • Serve as a customer-facing SME, “selling” the value of DIS services by demonstrating capabilities and resolving issues.
  • Document processes, runbooks, and troubleshooting steps related to SOC operations.
  • Coordinate with engineering, SOC, and agency staff as needed to meet goals.
  • Other duties as needed.

Required Skills (rank in order of Importance):

  • 2+ Years of Experience with Security Monitoring and Incident Response.
  • 2+ Years of Experience with MITRE ATT&CK framework.
  • 2+ Years of Experience with dashboard creation and reporting.

Preferred Skills (rank in order of Importance):

  • Experience with the Palo Alto Cortex XSIAM/XDR platform.
  • Knowledge of Linux, network administration and network design.
  • Experience in administration of firewalls, VPN technology, Active Directory, Intrusion Detection/Prevention systems.
  • Candidate is local to Columbia, SC or surrounding city in South Carolina

Required Education/Certifications:

  • Associate’s degree in an information technology or information security related field
  • Four years of relevant work experience may be substituted in lieu of education
  • Two years of experience in supporting large soc operations.

Preferred Education/Certifications:

  • CISSP, CISA, CISO or equivalent advanced security certification.
  • Additional relevant certifications (e.g., CEH, OSCP, GPEN).
  • Vendor certifications related to information security.

Apply tot his job Apply To this Job

More jobs

Product Manager - Security & Trust

Worldwide Salaried

Japanese Bilingual CFO Assistant (TEMP)-Remote #12744

Worldwide Salaried

Software Training Specialist, Finance (US)

Worldwide Salaried

Customer Service Representative (Bilingual Japanese/English)

Worldwide Salaried

Entry-Level Remote Human Resources Generalist (20 - 27 per hour)

Worldwide Salaried

HRIS Analyst (Dayforce)- Remote within the US

Worldwide Salaried

Remote Coordinator, HR​/Recruitment, Employee Relations

Worldwide Salaried

Manager, Labor Strategy & Engagement (Remote)

Worldwide Salaried

Trainer (PeopleSoft HR) / Training Specialist

Worldwide Salaried

[Remote] HR Coordinator-Global Mobility & Immigration

Worldwide Salaried

Experienced Remote Customer Support Specialist – Deliver Exceptional Travel Experiences at arenaflex

Worldwide Salaried

Data Entry Clerk Remote Work From Home - Part-Time Focus Group Panelist Opportunity at arenaflex

Worldwide Salaried

Assistant Director, Admissions

Worldwide Salaried

Payer Credentialing Specialist

Worldwide Salaried

Assembler Sr.

Worldwide Salaried

Solution Executive - Government

Worldwide Salaried

Experienced Entry-Level Chat Support Specialist – Remote Opportunity with arenaflex

Worldwide Salaried

Experienced Remote Healthcare Customer Service Representative – Deliver Exceptional Patient Care and Drive Business Growth at arenaflex

Worldwide Salaried

Experienced Engineering Manager – ChatGPT Growth and Innovation

Worldwide Salaried

U.S. Federal Government Contracts Specialist at SnappyCX

Worldwide Salaried