At IBM, work is more than a job - it's a calling: To build. To design. To code. To consult. To think along with clients and sell. To make markets. To invent. To collaborate. Not just to do something better, but to attempt things you've never thought possible. Are you ready to lead in this new era of technology and solve some of the world's most challenging problems? If so, let’s talk.
As a SOC Analyst you will work with cutting edge SOC technologies to monitor, identify, triage, investigate and report potential threats.
- Analyze events, flows, alerts and advanced analysis of potential security incidents.
- Correlate events and find tuning opportunities to have a healthy environment on customer’s console.
- Make recommendations to clients about increasing security.
- Analyze trends across customer environment for large trends.
- Report security events and make customer escalations based on threat analysis.
- Work with client to help remediate and answer questions regarding security events.
- Make recommendation to clients to improve security posture.
- Stay abreast of current and upcoming threats.
- Identify trends in traffic and provide recommendations.
- Mentor other analysts.
- Minimum 1 year of experience as SOC analyst or similar.
- Understanding of TTP’s, MITRE ATT&CK, cyber threats and threat mitigation recommendations.
- Ability to analyze a payload and produce a technical analysis.
- Understanding of incident handling and investigation.
- Understanding of Cloud technologies and environment.
- Experience working with MITRE ATT&CK, XDR, SIEM, SOAR and EDR tools.
- Must be flexible and adaptable to changing shift assignments with availability to support the night shift.
- English level intermediate.
- 2+ years of experience with SOC services.
- CompTIA CySA+, Pentest+ or Security+.