The Senior SOC Analyst is a senior technical member of the Security Operations team, responsible for leading complex security investigations and incident response across corporate and client hosting environments. The role proactively hunts for threats, acts as an escalation point, coordinates containment and recovery, and uses threat intelligence, digital forensics and security telemetry to determine the scope and impact of incidents. It also strengthens SOC capability through SIEM tuning, detection engineering, runbook development, vulnerability management and continuous improvement, while mentoring analysts and communicating clearly with customers, management and other stakeholders.
Main Activities
Threat hunting, proactively identifying previously unknown, or ongoing non-remediated threats.
SOC SIEM fine tuning and design improvements
Positive understanding of, and working in alignment with the MITRE ATT&CK; framework
Applying OWASP standards and security best practices
The Level 3 SOC Security Analyst is responsible for conducting information security investigations due to security incidents identified from various SOC entry channels (SIEM, Tickets, Email and Phone).
Act as a point of escalation in support of information security investigations to provide guidance and oversight on incident resolution and containment techniques.
Create and maintain SOC Run books for Both AWS Cloud hosting and corporate systems
Act as the lead coordinator for Bravura Solutions response to individual information security incidents.
Mentor security analysts regarding risk management, information security controls, incident analysis, incident response, SIEM monitoring, and other operational tasks in support of technologies managed by the Security Operations Centre.
Document incidents from initial detection through final resolution.
Participate in vulnerability management.
Participate in evaluating, recommending, implementing, and troubleshooting security solutions and e