"Empowering Excellence, Ensuring Continuity, Uninterrupted Success"
SOC Analyst
Location
South Africa
Posted
43 days ago
Salary
0
Seniority
Mid Level
Job Description
SOC Analyst
Prime System Solutions
**Responsibilities: ** · Manage the security event monitoring and incident response ticket queues and triage as appropriate to meet the established service level agreements · Promptly transfer cybersecurity tickets to the client or internal point of contact · Clearly convey indicators of compromise, isolation, and remediation steps · Analyze and interpret system, security, and application logs in order to diagnose faults, spot abnormal behavior, and rule out false positives · Effectively utilize End Detection and Response tools to investigate alerts, anomalies, and build accurate timelines related to possible compromise · Follow established procedures to investigate, escalate, contain, or eradicate malicious activity · Develop and deliver written and oral reports to clients, teammates, and management to aggregate and communicate security information and metrics · Provide input and recommendations to improve internal processes and procedures related to SOC duties and responsibilities · Participate in threat-hunting activities and other special projects as required · Understand and follow, our set of standards and processes that produce a predictable result for the client. You must be aware of and maintain our standards. **Additional Responsibilities: ** · Maintain accurate and real-time timesheets, record complete and accurate notes of troubleshooting and communication with clients · Receive mentoring and feedback from peers and others · Where appropriate, escalate complicated issues to a more senior resource or other appropriate teams · Review Tickets with Manager · Actively Participate in Team Huddles, L10 Meetings, One on One Meetings, and any other Team Meetings · Create and update documentation when changes occur, or when discoveries are made · Attend monthly training & team meetings as required · Additional duties as required
Job Requirements
- Qualifications: **
- Two years work experience in the Information Security or related fields
- Two or more current security-related industry certifications
- Experience with SIEM platforms, firewall management, and endpoint detection and response platforms
- One year or more of experience with EDR solutions, ESGs, vulnerability management, and content filtering
- Good problem-solving and decision-making skills; ability to understand and analyze complex issues
- Self-motivated, detail-oriented, highly organized, and able to handle a variety of tasks and responsibilities in an efficient manner with a high level of quality
- One of the following certifications preferred: CompTIA Security+, CompTIA CySA+, CCNA, C|EH, SSCP, or equivalent
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
SecOps Engineer – Freelance
Tech Minds AgencyA Team of Tech Experts Driving Business Success: Web/Mobile Development, Digital Marketing, and Skill-Enhancing Courses
• Perform expert-level secure code reviews with a focus on OWASP Top 10 and CWE vulnerability classes. • Identify, triage, and remediate application-layer vulnerabilities, including broken access control, IDOR, SQL injection, command injection, and deserialization flaws. • Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript to streamline vulnerability detection and remediation processes. • Conduct and document penetration tests, collaborating cross-functionally to drive remediation initiatives. • Advise development teams on secure coding practices, bringing a proactive security mindset into the software lifecycle. • Stay informed of emerging threats and incorporate best practices within the customer's environments. • Communicate effectively through detailed written reports and verbal briefings, ensuring security findings are clearly understood and actionable.
• Monitor, analyze, and correlate security alerts, logs, and events from various sources • Lead investigation and containment of security incidents, as incident handler • Prepare post-mortem reports and conduct lessons learned • Develop and maintain incident response playbooks and processes • Coordinate with cross-functional teams, internally and externally, on threats targeting DoorDash • Lead or participate in security tool proof-of-concepts and documentation • Identify opportunities for alert development based on threats to DoorDash • Conduct threat hunting • Lead training or other education and awareness opportunities for the enterprise as required • Use monitoring and detection platforms to investigate anomalous activity for potential insider risk • Advise and assist in the onboarding and implementation of custom tooling designed to alert on anomalous behaviors • Create and maintain a use case library to inform detections, and develop corresponding playbooks and escalation procedures • Participate in and support on-call rotation
Director, Security Operations – Incident Response
Reinsurance Group of America, IncorporatedTrusted Partner. Proven Results.
• Lead and mentor a global team of threat engineers focused one or more of the following disciples; threat detection, threat emulation, threat intelligence, and incident response. • Supervise all aspects of the team including hiring, training, evaluating, and coaching. • Foster a culture of technical excellence, collaboration, and continuous improvement • Manage team training, development, and staffing to ensure readiness for current and emerging threats • Lead threat engineering efforts that develop, deploy, and operate tools and services that enable the teams ability to detect and respond to cybersecurity threats • Collaborate with other Threat Management teams to ensure alignment with strategic objectives and to drive operational effectiveness • Provide detailed technical insights and recommendations to security leadership. • Develop and report metrics for reporting at an organizational, company, and/or Executive level.
• Own the operational backbone of Detection & Response (D&R): intake, triage, investigation flow, reporting, and MDR oversight. • Redesign processes, write code to eliminate toil, and leverage AI to make the team faster. • Engage partners effectively, ensuring D&R delivers on its mission. • Ensures detections flow into operational processes, manages investigations and incidents.




