York Solutions, LLC
Cybersecurity Analyst Job at York Solutions, LLC in Saint Paul
York Solutions, LLC, Saint Paul, MN, US, 55199
Description At this time, we are unable to consider candidates requiring visa sponsorship or third-party recruitment agencies for this role. We encourage all applicants to apply directly, and we thank you for your understanding.
Overview: We are seeking a dynamic and flexible Cybersecurity Analyst - SOC Analyst to join the CTAC team to perform real-time cybersecurity monitoring and triage of security alerts, along with investigation and response to security incidents. The role will provide first line of defense to detect and respond to internal or external cyber threats, leveraging a variety of security tools and techniques, and working with teams both inside and outside of security.
Responsibilities: Monitor customer security tools and platforms in real-time to identify anomalous activity
Collect and analyze artifacts from electronic devices and technology platforms using forensic tools and techniques
Coordinate response to incidents including scoping and root cause analysis, enacting containment measures, and identifying and coordinating remediation efforts
Identify and propose areas for operational improvement within the SOC
Provide feedback on security control capability gaps based on security intrusion trends
Develop and maintain analytical procedures to improve security incident identification efficiency
Triage and validate alerts based on established thresholds and criteria
Support major incident response activities, as needed
Adhere to approved SOC documentation e.g., processes and procedures
Assist in developing, coordinating, and implementing SOC documentation
Provide input to SOC operation metrics and reports
Provide input to SOC shift change reports to maintain continuity of operations
Required Qualifications: Completed technical higher education in the field of computer science or related field
Minimum of 2-3 years of professional experience in operating, managing, designing, implementing, maintaining, or supporting cybersecurity technology
Minimum of 2-3 years of professional experience in SOC operations and/or incident response
Possession of certificates or education related to cybersecurity, information technology, or engineering
Possession of cybersecurity certifications e.g., GCIH, GMON, GSOC
Understanding of technologies and solutions utilized in cybersecurity and networks (SIEM, SOAR, Firewalls, IAM, IDS/IPS, End Point Protection, Threat Management/Intelligence)
Strong understanding of intrusion detection concepts and information security defense
Knowledge of current hacking techniques, vulnerability disclosures, data breach incidents, and security analysis techniques
Experience in collection and analysis of windows, network, and malware artifacts
Experience in collection and analysis of Office365, DLP, and Splunk
Experience in SOC documentation development
Understanding of Incident Response analysis skills e.g., SURGE Collect
Forensic artifact examination with Volatility
Proven experience with multiple security event detection platforms
Thorough understanding of TCP/IP
Understanding of basic IDS / IPS rules to identify and/or prevent malicious activity
Full professional proficiency in English, especially in technical writing and oral communication skills
Demonstrated integrity in a professional environment
Benefits: York Solutions Offers a generous benefits package for eligible full-time employees:
BCBS Medical with 3 Plans to choose from (PPO and High deductible PPO plans with Health Savings Program)
Delta Dental plan with 2 free cleanings and insurance discounts
Eye Med Vision with annual check-ups and discounts on lens
Life and Accidental Death Insurance paid by company
John Hancock 401(k) Retirement Plan with discretionary company match up to 5%
Voluntary Insurance programs such as: Hospital Indemnity, Identity Protection, Legal Insurance, Long Term Care, and Pet Insurance
Flexible work environment with some remote working opportunities
Strong fun and teamwork environment
Learning, development, and career growth
#J-18808-Ljbffr