SOC L2 Analyst - Cybersecurity Technology Consulting
at EY
Location:
Employment Type: full_time
Job Description
<p style="margin:0.0cm;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt"><strong><span style="font-family:'EYInterstate Light'">Key Responsibilities:</span></strong></span></p><ul style="margin-top:0.0cm;margin-bottom:0.0cm" type="disc"><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Assisting clients with monitoring, investigation and response to security incidents.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Effectively assess security incidents, determine their severity level, and manage response efforts with efficiency and precision.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Conduct research, analysis, and investigation of security alerts</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Maintain a comprehensive awareness of the current threat landscape, including malware, phishing attacks, and advanced persistent threats (APTs).</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Actively participate in post-incident reviews to identify lessons learned and recommend improvements to processes and technologies.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Provide feedback and recommendations to enhance detection and response capabilities</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Participate in continuous improvement of security operations processes and toolsets</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Provide guidance and leadership to the team during critical situations, ensuring effective decision-making and response.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Foster collaboration with cross-functional teams to enhance the overall security posture of the organization.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Mentor and train junior analysts, sharing knowledge and best practices to strengthen team capabilities.</span></li></ul><p style="margin:0.0cm;font-size:12.0pt;font-family:Aptos, sans-serif"> </p><p style="margin:0.0cm;font-size:12.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt"><strong><span style="font-family:'EYInterstate Light'">Requirements:</span></strong></span></p><ul><li style="font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Bachelor's degree in Computer Science, Information Technology, or a related field</span></li><li style="font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Preferably 2+ years of experience in a Security Operations Center (SOC) or related cybersecurity role</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Demonstrated ability to analyze, triage and remediate security incidents.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Moderate knowledge in SIEM tools such as Splunk, Microsoft Sentinel or similar platforms, along with a solid understanding of various log sources and their functions.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Moderate knowledge of security related technologies and their functions (Firewall, VPN, IDS/IPS, EDR, WAF, etc.)</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Experience in developing SOC use cases in SIEM to correlate diverse logs, including the creation of new monitoring use case logic and enabling effective investigation of security alerts and incidents.</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Experience in conducting investigations across various environments, including endpoints, networks, web applications, databases, and cloud resources</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Moderate knowledge of current threat landscape (threat actors, APT, cyber-crime, etc.)</span></li><li style="margin-top:0.0cm;margin-right:0.0cm;margin-bottom:0.0cm;font-size:10.0pt;font-family:Aptos, sans-serif"><span style="font-size:10.0pt;font-family:'EYInterstate Light'">Knowledge of Cyber Threat Intelligence, including the analysis of intelligence alerts, threat hunting, and providing actionable recommendations.</span></li></ul>