Summary
Blueshift Cybersecurity is an innovative XDR as a Service company dedicated to detecting and removing cyber-threats for clients. The SOC Analyst will work in the Security Operations Center to provide continuous monitoring, incident response, and threat analysis services.
Responsibilities
- Support the operations and overall service delivery of SOC services to BSC clients
- Triage alerts and anomalies detected within our client’s infrastructure
- Work with internal teams to continuously improve operations and platform performance
- Provide real-time response to requests for emergency blocking/unblocking upon receipt of notification from authorized personnel in accordance with relevant service level agreements
- Continually improve operating methods, and document standard processes and procedures
- Be part of an on-call rotation (24/7) for service continuity and escalations
- Monitor health of all internal SOC systems to ensure uninterrupted client service
- Document and track client calls, service requests and resolutions
- Provide internal SOC training and knowledge transfer as required
- Other duties as assigned
Skills
- Proficient with Linux, Windows and MacOS
- Ability to investigate security alerts and system logs and telemetry for signs of malicious activity
- Ability to define, tune and deploy signatures to detect malicious activity
- Strong cybersecurity knowledge regarding the Cyber Kill Chain and MITRE ATT&CK framework
- Friendly demeanor. Ability to work well with others and partner on solutions. Coachable
- Excellent verbal and written communication skills
- Excellent organizational skills and attention to detail
- Proactive and results driven, enjoys analysis work
- Strong analytical and problem-solving skills. Curious
- Ability to act with integrity, professionalism, and confidentiality
- Bachelor's degree in Computer Science, Computer Engineering, Information Systems or related field preferred. Strong self-taught candidates encouraged to apply
- Server Administration and Cybersecurity Certificates such as Linux+, Security+, GCIA, CISSP, CEH, etc. are a plus
- Prolonged periods of sitting at a desk and working on a computer
- Must be able to lift 15 pounds at times
- Be able to travel to headquarters up to a few times a year. Travel expected to be minimal
- A work environment conducive to sensitive analytic work (few interruptions, private and operationally secure)
Qualifications
Must Haves
- Proficient with Linux, Windows and MacOS
- Ability to investigate security alerts and system logs and telemetry for signs of malicious activity
- Ability to define, tune and deploy signatures to detect malicious activity
- Strong cybersecurity knowledge regarding the Cyber Kill Chain and MITRE ATT&CK framework
- Friendly demeanor. Ability to work well with others and partner on solutions. Coachable
- Excellent verbal and written communication skills
- Excellent organizational skills and attention to detail
- Proactive and results driven, enjoys analysis work
- Strong analytical and problem-solving skills. Curious
- Ability to act with integrity, professionalism, and confidentiality
- Bachelor's degree in Computer Science, Computer Engineering, Information Systems or related field preferred. Strong self-taught candidates encouraged to apply
- Server Administration and Cybersecurity Certificates such as Linux+, Security+, GCIA, CISSP, CEH, etc. are a plus
- Prolonged periods of sitting at a desk and working on a computer
- Must be able to lift 15 pounds at times
- Be able to travel to headquarters up to a few times a year. Travel expected to be minimal
- A work environment conducive to sensitive analytic work (few interruptions, private and operationally secure)