The SOC Analyst III leads incident response, performs advanced log reviews, and conducts forensic investigations within a security operations center. The role requires deep expertise in Splunk, threat hunting, and security frameworks to manage risks and mentor teams.
A
SOC Analyst III will be able to complete advanced log reviews, lead Incident
Response cases, assist with technology review, report creation and improvement, and Audit remediation.
A SOC Analyst III will have an advanced understanding of the company network layout, and an advanced understanding of the functionality of the tools in use. SOC Analyst III will be
able to create and explain reports.
KEY RESPONSIBILITIES:
SOC Analyst II responsibilities include all those of SOC Analyst I and SOC
Analyst II, in addition to
the responsibilities as outlined below:
Demonstrated to advanced operational experience as a Cyber Threat Hunter
Demonstrated to advanced experience with computer networking and operating
systems
Demonstrated to advanced experience of current threats, vulnerabilities, and
attack trends
Insider Threat
Application Security
Malware Reverse Engineering
Advanced Log Review tasks
Forensic Investigation
Audit interview participation
Advanced Splunk knowledge
Other responsibilities as assigned
Technical Understanding
Full understanding of the OSI model
Intermediate Network Skills
Advanced Scripting knowledge
Advanced Window Knowledge
Intermediate Linux skills
Live forensic
Offline forensic
QUALIFICATIONS:
A
Bachelor's degree in computer science, engineering or a related discipline, or
the equivalent combination of education, technical training or work/military experience.
5+ years of Information Security/Risk Management experience
Intermediate understand of OSI model
Application, System and Network security best practice knowledge
Advanced knowledge and Work experience in Security Operations or related fields
such as Audit, IT Security, or Business Continuity, however other IT
disciplines are eligible
Technical knowledge to understand detailed issues around business continuity,
security, and overall risk in IT. Able to have enough expertise to drive a
solution and solve issues, addressing risk.
Experience managing a team in a high paced environment
One or more of the following certifications or ability to obtain one in near
future: CEH, CISSP, CRISC, CISA, ECSA, CHFI, CFE, MCSE, CCNA, CCNP
Preferred Skills
Experience in a regulated (financial, pharmaceutical, health care, etc.)
industry is highly desired.
Experience with regulatory requirements including but not limited to PCI-DSS,
ISO2700, HIPAA, etc.