SOC Lead

18 Jun 2024

Vacancy expired!

Lead Cyber SOC Analyst that will lead the triage, analysis andresponse to cyber-attacks. Join us in evolving our response capabilities to protect State Street, itscustomers and partners from the ever evolving and sophisticated global threat actors. Responsible for detecting and responding to various cyber threats 24/7 365 days ayear, that are directed towards the enterprise.This role will be predominately be office based in the Cyber Fusion Center. The Fusion Center willlocated in Phoenix Arizona. The successful candidate will also partake in an on-call rotation.What will you be responsible for:• Leading the cyber incident response process to ensure timely triage, analysis, containment,eradication and return to service for high severity or long running incidents.• Author incident status updates and closure reports to leadership.• Produce post mortem reports to identify lessons learned and recommendations.• Continuously prepare for incidents by updating and maintaining incident response plans,playbooks and procedures.• Manage and participate in cyber related exercises such as table tops and cyber ranges.• Measure the effectiveness and performance of the incident response process through KRIand KPI metrics.• Identify methods to continuously enhance the incident response process• Work closely with the SOC to drive development and collaboration• Train and Mentor SOC personnel• Creating an environment which drives knowledge sharing with teams across the FusionCenter• Help developing the 24/7 Fusion Center mindset and follow the sun modelWhat we value:• Experience with investigating & managing major/complex cyber incidents end to end• Experience working/leading in a SOC or Fusion Center• Strong operating systems administration skills (Windows, Linux, Mac)• Strong malware analysis expertise• Experience in performing memory forensics• Knowledge of adversarial tactics, techniques, procedures (TTPs) & Industry standardframeworks (NIST, Mitre Att&ck)• Knowledge of IT architecture and operations (computing, network, storage & cloud)• Strong working knowledge of security technologies including but not limited to SIEM,EDR/EPP, AV, ID/PS, HIPS, Web Proxy/Content filtering, AD, PKI and DNSEducation & Preferred Qualifications• Masters in Cyber Security, Information Technology, Computer Science or relevant experience• CISSP, CEH, OSCP,OSCE IH or applicable certification in Security field• 4+ years in a cyber security SOC/IR type skill role – Incident Response, SOC Tier 3/LeadAnalyst, Threat Hunter, Penetration testing, etc.Additional Requirements• Financial Services experience a plus.• Software development and/or scripting experience a plus: Python, Powershell, SQL etc.

  • ID: #43226638
  • State: Arizona Phoenix 85001 Phoenix USA
  • City: Phoenix
  • Salary: $140,000 - $150,000
  • Job type: Permanent
  • Showed: 2022-06-18
  • Deadline: 2022-08-14
  • Category: Et cetera