Security / Soc Analyst III
Core
A security analyst responsible for incident response, threat monitoring, and defining detection requirements for SIEM and security technologies.
Role type
Security Operations Center (SOC) Analyst
Builds
Security detection schemes and incident response capabilities
Domain
Cybersecurity / Information Security
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Incident response, threat monitoring, SIEM configuration, Endpoint Detection and Response (EDR), Firewall/IPS/IDS management, Data Loss Prevention (DLP), Authentication systems, False positive triage, Detection rule development, Cross-source data correlation, Code interpretation for detection logic
Preferred skills
Experience with industry security frameworks
Technologies
SIEM, EDR, Firewall, IPS, IDS, Proxy, DLP
Responsibilities
Perform security monitoring and incident response for cyber events, Triage security offenses to identify false positives, Determine detection requirements for new data sources onboarding to SIEM, Assess existing SIEM detection cases to identify gaps and overlaps, Define detection or protection schemes based on industry standards, Leverage data from security technologies to correlate across multiple sources
Seniority
Mid-level (5+ years experience)