Company Description
Techpace is a leading provider of cybersecurity consulting services designed to help organizations maximize their return on investments in security. The company specializes in crafting advanced cyber threat detection strategies, incident response planning, and delivering tailored consulting services. With expertise in security operations and compliance, Techpace also offers professional services and legal advisory support to ensure organizations meet regulatory requirements and maintain robust security postures.
Role DescriptionL3 SOC Analyst experts in the field with a strong background of multiple SIEM and EDR solutions.
Key Responsibilities- Develop, test and tune both detections and parsers for various tools and technologies.
- Perform continuous improvement and validation t o ensure accuracy and efficiency, and enablecomprehensive coverage based on the industry standards (MITRE ATT&CK and Lockheed Martin's Cyber Kill Chain) Work to reduce false positives and improve the computational efficiency of Rules and Use-Cases.
- Continuously evaluate and optimize detection content monitoring various on-prem and cloudservice provider environments in support to SOC operations Advanced skill in developing complex detection content using various data sources and query languages.
- Responsible for mentoring and training of Junior Analysts and Engineers.
A minimum of 5 years o f experience in Cyber Security, specifically as a SOC analyst.computer networks/networking concepts. Strong understanding of various SIEM products from both analysis and administrative perspectives. Understand and master data sources across a variety of categories including Windows, Linux,Active Directory, Privileged Access Management, Intrusion Detection/Prevention, Firewalls, Anti-Virus, Endpoint Detection & Response, Cloud Access Security Broking, Network Access Control,Application Control and Productivity Apps.
Proven experience i n threat detection, incident response, and security operations. In-depth knowledge of security technologies, including SIEM, IDS/IPS, EDR, etc. Familiarity with common threat intelligence feeds and the ability t o integrate them into detection systems. Excellent knowledge o f cybersecurity frameworks and standards. Strong understanding o f network and endpoint security. Performed Threat Hunting activities previously.
Relevant certifications such as:
Certified Detection Analyst (GCDA). Certified information system security professional (CISSP). Certified Forensics Analyst (GCFA). Continues Monitoring Certification (GMON).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).