Jr. Security Operations Center (SOC) Analyst

Posted 2 weeks ago

Company Background

GRA Quantum is a pioneering information security firm founded upon the belief that every organization has the right to keep its data private and secure. Our mission is to build close partnerships with our clients, serving them not as just a vendor, but as trusted advisors helping to build effective, proactive plans. Our focus is always on both the technical and human elements within an organization. We believe in comprehensive strategies designed to harden networks, deflect attackers, and rapidly recover from any accidents. As technology progresses, so too do our tactics, ensuring our experts are always prepared to serve forward-looking leaders eager to stay ahead of emerging threats. GRA Quantum is a wholly-owned subsidiary of Global Risk Advisors.

Position Overview

GRA Quantum is seeking a focused Jr. Security Operations Center (SOC) Analyst to take on an exciting role in Salt Lake City, UT. This is an entry level security position perfect for new graduates or those seeking to build their security skills.  The successful candidate will report directly to the Director of Managed Security Services and work directly with other SOC staff on security threat hunting, event analysis, incident response, and other SOC duties as assigned. The successful candidate will learn and build upon best security practices, security tool administration and maintenance, and other essential security skills. Previous security analyst experience is highly desirable but not required. Junior analysts are expected to develop other skills and will receive on the job training in areas such as vulnerability management, penetration testing, technical writing, ethical hacking, digital forensics, and other security related skills. Growth opportunities to SOC Analyst, Sr. SOC Analyst and SOC Lead are likely for a candidate who can hit the ground running, is a self-starter, and who can demonstrate excellent analytical and critical thinking skills.

Skills Required and Job Responsibilities

  • Responsible for monitoring, analyzing, and interpreting security/system logs for events, operational irregularities, and potential incidents and escalating issues as appropriate
  • Responsible for administration and operational support of all security monitoring and management systems
  • Responsible for implementing, utilizing, tuning, and administering security tools such as anti-virus, endpoint protection, network analysis, SIEM, and other essential security solutions
  • Provides technical support and troubleshooting when needed regarding existing or new security tools and solutions
  • Responsible for analyzing suspicious emails, phone calls, and other potential security incidents to determine false positives or needs for escalation
  • Provides support to remediate vulnerabilities such as patching, implementing controls to mitigate risk, and ensuring secure configuration of systems
  • With direction, performs regular threat hunting using security tools and intelligence information to identify and remediate potential security threats
  • Performs research and remains aware of new and emerging threats to ensure newly discovered vulnerabilities are addressed
  • Acts as an Incident Response team member when the incident response team is active. Incident response tasks may include identification, log and event collection and analysis, forensic investigation support, communication support, and evidence handling
  • Assist in documenting Standard Operating Procedures, SOC playbooks, configuration guides, and secure standards
  • Basic understanding of information technology and information security including: firewalls/UTM’s, IDS/IPS, VPNs, penetration testing, security event monitoring, and other security systems with an emphasis on threat hunting and log analysis
  • Excellent written and verbal communication skills
  • Exceptional analytical and problem-solving skills; someone who ‘sees’ the box differently
  • Basic understanding of IT infrastructure, information security, and compliance controls
  • Ability and willingness to learn other security skills such as pen testing, ethical hacking, digital forensics, or vulnerability management

Minimum Qualifications

  • Associates degree or similar industry experience in cyber security, information technology, computer science, or similar field

OR

  • One or more industry security certifications such as CISSP, CISM, CISA, or GIAC and a demonstrable passion and aptitude for security work

This position has the potential to be shift-based in a 24×7 operation

Apply Online