drjobs
Security Operations Analyst
drjobs
Security Operations ....
drjobs Security Operations Analyst العربية

Security Operations Analyst

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs

Job Location

drjobs

Richmond - Belgium

Monthly Salary

drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Req ID : 2545392

Job title: TAX IT Security Operations Analyst

Location: Richmond VA NEED LOCALS

6 MONTHS CONTRACT

Onsite will be 3 days with Wednesday each week being a must!

Both Web Cam and In Person Interview.

Pls note: Initial web based Interviews will be conducted but pls note an IN PERSON may also be required as a follow up if mgr requests.

The Manager at TAX shared that (so far) the candidates they interviewed have not met the skill level they need. Local Richmond VA candidates preferred due to the onsite requirements.

REMINDER: Onsite will be 3 days with Wednesday each week being a must AND initial web interviews will be conducted but the mgr however mgr may request a followup IN PERSON interview if he believes one is needed.

Parking not provided for contractors but there is monthly/weekly parking close by.

ABOUT THE ROLE
Virginia Tax is seeking a Security Analyst with 3 years of experience to join the Office of Technology to investigate unusual activity to protect agency systems and data and help strengthen the agencys security posture.


The successful candidate will monitor Splunk (SIEM) and other security tools user and system actions and audit logs for security incidents involving unusual and unauthorized activities and provide incident response. In addition this position will prioritize and triage security events based on severity potential impact and risk factors and document all security events and investigations thoroughly and accurately along with implementing remediation actions for findings. And lastly develop and implement automation solutions to improve efficiency and accuracy of security operations.

Responsibilities include but not limited to:

Continuously monitor security events and alerts from Splunk (SIEM) IDS/IPS endpoint detection and response (EDR) and other security tools.

Prioritize and triage security events based on severity potential impact and risk factors.

Investigate suspicious activity to determine the root cause and potential threat.

Document all security events and investigations thoroughly and accurately.

Stay abreast of emerging threats vulnerabilities and attack trends relevant to the Virginia Taxs environment.

Proactively hunt for threats using advanced techniques and analysis tools.

Analyze identified threats to determine their potential impact and advise on mitigation strategies.

Participate in incident response activities as part of the designated incident response team.

Assist with containment eradication and recovery efforts as directed.

Analyze incident data and provide insights to support the investigation and remediation process.

Document and report all incident response activities for future reference.

Generate regular reports on security trends threats and vulnerabilities.

Present findings and recommendations to management.

Configure and maintain security tools and automation scripts to optimize alert generation and response efforts.

Develop and implement new automation solutions to improve efficiency and accuracy of security operations.

Maintain effective communication with office of technology teams security leadership and business users.

Effectively collaborate with other SOC analysts and team members to ensure coordinated responses.

Security event analysis threat intelligence and Incident response reports and security trend reports and recommendations

Documentation of security tooling and automation configurations

Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR)

Number and severity of security incidents identified and mitigated

Effectiveness and efficiency of security tools and automation

Required Skills/Experience:

Bachelors degree in information technology Cybersecurity industry security certifications or a related field or equivalent experience.

Minimum 3 years of experience as a Security Operations Analyst or similar role.3 years

Strong understanding of security concepts network protocols and threat vectors.3 years

Proficiency in SIEM IDS/IPS EDR and other relevant security tools.3 years

Excellent analytical and problemsolving skills.

Strong communication collaboration and documentation skills.

Employment Type

Full Time

Company Industry

Accounting & Auditing

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.