Randstad - Augusta, ME

posted about 2 months ago

Full-time - Mid Level
Remote - Augusta, ME
Administrative and Support Services

About the position

The Information Security Office (ISO) is a critical component of the client's defense against cyber threats, and the Security Operations Center (SOC) plays a pivotal role in this mission. The Sr. Business SME - Security Operation Center Analyst 3 will be responsible for protecting over 20,000 devices on the client's network through continuous monitoring of critical systems. This position is integral to the SOC team, focusing on endpoint detection and response, antivirus protection, endpoint investigations, and various other endpoint security, engineering, and incident response activities. The successful candidate will work closely with SOC Team Leads and the Security Operations Manager to meet the operational demands of the SOC effectively. In this role, the analyst will engage in proactive monitoring and analysis of security events, ensuring that any potential threats are identified and mitigated promptly. The position requires a strong understanding of both Windows and Linux systems, as well as their associated scripting languages. Familiarity with cloud environments such as AWS or Azure is essential, as is experience with endpoint security platforms like Microsoft Defender for Endpoint, FireEye, Crowdstrike, and McAfee. Additionally, the analyst will utilize vulnerability testing products such as Windows Defender TVM, Tenable Nessus, Rapid 7 InsightVM, and Qualys to assess and enhance the security posture of the organization. The ideal candidate will also have experience with popular SIEM platforms, including Splunk, Azure Sentinel, Sumo Logic, LogRhythm, and Elasticsearch. A four-year college degree in computer science or a related field is required, with advanced study preferred. Relevant technical security certifications such as GIAC, ISC2, CompTIA, or EC Council are highly desirable. This position is a contract role, offering a competitive hourly rate and the opportunity to work remotely from Augusta, Maine.

Responsibilities

  • Perform continuous monitoring of critical systems for the client.
  • Support the SOC Team Leads and the Security Operations Manager in meeting operational demands within the SOC.
  • Engage in endpoint detection and response activities.
  • Conduct antivirus protection and endpoint investigations.
  • Participate in incident response activities.

Requirements

  • Five years of information security experience, focusing on Endpoint Security, Incident Response, and Security Engineering within an enterprise environment.
  • Knowledge of Windows and Linux systems and their associated scripting languages.
  • Experience with AWS or Azure cloud environments.
  • Familiarity with endpoint security platforms such as Microsoft Defender for Endpoint, FireEye, Crowdstrike, McAfee, or similar.
  • Experience with vulnerability testing products such as Windows Defender TVM, Tenable Nessus, Rapid 7 InsightVM, Qualys, or similar.
  • Experience with popular SIEM platforms (e.g., Splunk, Azure Sentinel, Sumo Logic, LogRhythm, Elasticsearch).
  • A four-year college degree in computer science or a related field; advanced study preferred.
  • One or more relevant technical security certifications (GIAC, ISC2, CompTIA, EC Council, etc.) are a plus.

Nice-to-haves

  • Advanced study in computer science or a related field.
  • Relevant technical security certifications.

Benefits

  • Comprehensive benefits package including health insurance.
  • Incentive and recognition program.
  • 401K contribution.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service