District Tech Group Incorporated logo
District Tech Group Incorporated
Posted 60 days agoVerified live 1d ago

MSSP SOC Analyst

Brief overview

Remote
2+ yrsMinimum
Security Information and Event Management (SIEM)Endpoint Detection and Response (EDR)MITRE ATT&CK frameworkNetwork protocolsFirewallsIntrusion detection systemsSecurity certifications Security+Security certifications CySA+Security certifications GCIHScripting PythonScripting PowerShellScripting BashCloud security AWSCloud security AzureCloud security GCPIncident responseDigital forensics

Job description

Summary

District Tech Group Incorporated is seeking an MSSP SOC Analyst to serve as the first line of defense for their clients by monitoring security events and responding to incidents in real-time. The role involves working within a 24/7 Security Operations Center to protect organizations across multiple industries.

Responsibilities

  • Monitor and analyze security events and alerts from SIEM, EDR, and other security tools
  • Triage and investigate potential security incidents, escalating as necessary
  • Perform initial incident response and containment activities
  • Document incidents and maintain detailed case notes
  • Collaborate with client security teams to resolve security issues
  • Contribute to the development of detection rules and playbooks
  • Participate in threat hunting activities and proactive security monitoring
  • Provide clear communication to clients regarding security events and recommendations

Skills

  • 2+ years of experience in a SOC or security analyst role
  • Strong understanding of common attack vectors, TTPs, and the MITRE ATT&CK framework
  • Experience with SIEM platforms (Splunk, Sentinel, QRadar, or similar)
  • Familiarity with EDR solutions (CrowdStrike, SentinelOne, Microsoft Defender)
  • Knowledge of network protocols, firewalls, and intrusion detection systems
  • Excellent analytical and problem-solving skills
  • Strong written and verbal communication skills
  • Ability to work in a fast-paced, 24/7 environment
  • Security certifications (Security+, CySA+, GCIH, or equivalent)
  • Experience in an MSSP or managed services environment
  • Scripting skills (Python, PowerShell, or Bash)
  • Experience with cloud security (AWS, Azure, GCP)
  • Background in incident response or digital forensics

Qualifications

Must Haves

  • 2+ years of experience in a SOC or security analyst role
  • Strong understanding of common attack vectors, TTPs, and the MITRE ATT&CK framework
  • Experience with SIEM platforms (Splunk, Sentinel, QRadar, or similar)
  • Familiarity with EDR solutions (CrowdStrike, SentinelOne, Microsoft Defender)
  • Knowledge of network protocols, firewalls, and intrusion detection systems
  • Excellent analytical and problem-solving skills
  • Strong written and verbal communication skills
  • Ability to work in a fast-paced, 24/7 environment

Nice to Haves

  • Security certifications (Security+, CySA+, GCIH, or equivalent)
  • Experience in an MSSP or managed services environment
  • Scripting skills (Python, PowerShell, or Bash)
  • Experience with cloud security (AWS, Azure, GCP)
  • Background in incident response or digital forensics

Benefits

  • Fully remote work environment
  • Health, dental, and vision insurance
  • Professional development and certification support
  • Mentorship from industry-leading security experts
  • Flexible scheduling options
  • Competitive salary and performance bonuses

More jobs like this