We are seeking a skilled and experienced SOC Analyst Tier 2 to join our dynamic cybersecurity team. As a Tier 2 Analyst, you will play a pivotal role in our Security Operations Center (SOC), contributing to detecting, analyzing, and responding to security incidents. If you have a passion for cybersecurity and are ready to take on challenging responsibilities, we encourage you to apply.
Responsibilities:
Perform investigations, threat hunting and use cases as needed
Act as an escalation point for Tier 1
Communicate with customers regarding security related incidents
Assist in threat signature implementation and tuning
Define and mature ‘playbooks’ for response to cyber threats
Provide teaching/mentoring to junior analyst team members
Participate and lead SOC training efforts
Additional responsibilities and tasks assigned by SOC management
Skills:
Willingness to learn, adapt, and innovate
Critical thinking and analytical skills
Excellent written and oral communications skills
Great interpersonal and teamwork skills
Proficient in Incident Management and Response.
Experience in security device management and SIEM.
Knowledge of security concepts such as cyber-attacks and techniques, threat vectors, risk management, incident management etc.
Experience in threat management.
Knowledge of various operating system flavors including but not limited to Windows, Linux, Unix.
Knowledge of applications, databases, middle ware to address security threats against the same.
Proficient in preparation of reports, dashboards and documentation.
Requirements:
4 years of experience on one of the following team(s): Computer Incident Response Team (CIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Center (CSIRC) or a Security Operations Center (SOC).
Bachelors’ degree in Computer Science, Information Technology or related technical field.
Experience with Security Information and Event Management (SIEM) Systems, Anti-Virus, Intrusion Detection Systems, Firewalls, Active Directory, and large Enterprise or Cloud environments.
Experience with Incident Response, analysis of network traffic, log analysis, ability to prioritize and differentiate between potential intrusion attempts and false alarms, managing and tracking investigations to resolution.
Familiarity with one of the following; NIST Incident Response Lifecycle, Cyber Kill Chain, Adversarial Tactics, Techniques & Common Knowledge (ATT&CK).
· XDR/EDR experience
· Deep packet and log analysis
· Some forensic and malware analysis experience
· Cyber threat and intelligence gathering and analysis
Work Location:
· Fully On-site
Working Hours:
Day Shift / Evening Shift
· "On-call" availability (Some nights, weekends, and holidays)
شرکت زیرساخت فناوری تجارت ایرانیان (زفتا) در سال 1364 تأسیس و از سال 1387 فعالیت خود را به صورت حرفه ای در حوزه فناوری اطلاعات کشور آغاز کرده است. این شرکت با بهرهگیری از کارشناسان و مشاوران مجرب و متخصص، در حوزه های مختلف فناوری اطلاعات شامل طراحی و توسعه زیرساخت های IT، تأمین تجهیزات، پیاده سازی، نگهداری و پشتیبانی کلیه سامانه ها فعالیت می نماید.
زفتا با اتکا به توانمندی های تخصصی و دانش فنی با بیش از 30 دفتر استانی در سراسر کشور توانسته است خدمات خود را با بالاترین سطح کیفیت و مطابق با استانداردهای حرفه ای به سازمان ها و نهاد های بزرگ ارائه نماید.