About the Role
The Associate Security Analyst- SOC is responsible for supporting the Security Operations Center (SOC) team in monitoring and analyzing security events, incidents, and alerts. This role will assist in identifying potential security threats and vulnerabilities, ensuring the security of our organization's information systems, and contributing to incident response efforts.
Responsibilities
- Monitor and triage security alerts and events using various security tools, such as SOAR, SIEM, XDR, firewall, cloud, identity, and email security platforms.
- Analyze reported phishing emails, suspicious URLs, attachments, impersonation attempts, business email compromise indicators and social engineering events.
- Conduct initial analysis of security incidents and escalate to senior analysts or management as necessary.
- Assist in the investigation of security incidents, including data breaches, malware infections, and unauthorized access attempts.
- Create, update, and manage incident tickets according to SOC procedures.
- Contribute to the development and improvement of standard operating procedures (SOPs) for the SOC.
- Provide timely and accurate reporting on security incidents, activities, and metrics to management.
- Participate in threat hunting activities to proactively identify potential threats and risks.
- Collaborate with other IT and security teams to identify and remediate security vulnerabilities.
- Assist in the implementation and maintenance of security platforms.
- Stay informed about the latest security threats, vulnerabilities, and industry best practices.
Requirements
- The ability to understand and implement best practices and measures for system security to protect organizational data and infrastructure - Basic
- Proficiency in configuring and managing Windows Server and Linux operating systems
- Ability to create clear and effective technical documentation - Basic
- Ability to simplify and effectively communicate complex problems to stakeholders across various functions and levels - Basic
- Experience in managing and maintaining computer systems and networks to ensure optimal performance and security - Basic
- Experience in understanding, managing, and correlating log data for effective security monitoring and analysis - Basic
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, or a related field.
- Knowledge of cybersecurity principles, security frameworks, and industry standards.
- Relevant certifications such as CompTIA Security+, Certified Ethical Hacker (CEH), or equivalent are a plus.
- Strong analytical and problem-solving skills with attention to detail.
- Ability to work in a fast-paced and dynamic environment, handling multiple tasks simultaneously.
- Strong communication skills, both verbal and written.
- Team player with the ability to collaborate effectively with cross-functional teams.
- Familiarity with security technologies, including SIEM, IDS/IPS, firewalls, identity, and endpoint protection solutions.
- Proficiency in identifying and analyzing common attack techniques, including phishing, social engineering, credential theft, malware, unauthorized access, persistence, and data exfiltration.
- Experience with security incident management and response processes, including the ability to write clear incident and investigation reports.
- Basic understanding of networking protocols and security concepts.
- Knowledge of common operating systems (Windows, Linux, etc.).
- Available to work flexible hours, including overnights, weekends, and on-call support.
- Experience with security orchestration, automation, and response (SOAR) platforms.
- Proficient in log analysis and use of security log management tools.
- Familiarity with cloud security concepts and technologies (AWS, Azure, etc.).
- Exposure to threat intelligence analysis and threat hunting methodologies.
- Knowledge of identity and access management (IAM) principles and technologies.
- Experience with scripting languages (Python, PowerShell, etc.).
- Understanding of web application security and secure coding practices.
- Knowledge of regulatory compliance frameworks (e.g., CIS, PCI DSS).
- Understanding of penetration testing and vulnerability assessment techniques.
Skills
- SOAR
- SIEM
- XDR
- Firewall
- Cloud security
- Identity security
- Email security
- Phishing analysis
- Incident analysis
- Threat hunting
- Vulnerability remediation
- Security platform maintenance
- Problem-Solving
- Data Analysis
- Self-Motivation
- Collaboration
- Communication
- Training
- Initiative
- Detail-Oriented
- Organization
- Follow-Up
- Windows Server management
- Linux operating system management
- Technical documentation
- System and network management
- Log data analysis
- Cybersecurity principles
- Security frameworks
- Industry standards
- SIEM
- IDS/IPS
- Firewalls
- Endpoint protection
- Attack technique analysis
- Incident management
- Incident response
- Networking protocols
- Security concepts
- Operating systems (Windows, Linux)
- SOAR platforms
- Security log management tools
- Cloud security concepts
- AWS
- Azure
- Threat intelligence analysis
- Threat hunting methodologies
- Identity and access management (IAM)
- Scripting languages (Python, PowerShell)
- Web application security
- Secure coding practices
- Regulatory compliance frameworks (CIS, PCI DSS)
- Penetration testing
- Vulnerability assessment
Location
- Remote
Work Type
- Remote
- Full-time
Experience Level
- Associate
Education Level
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, or a related field.
Salary/Compensations
- $60,000 - $80,000
Benefits
- Medical
- Vision
- Dental
- 401K
- Flexible spending
About the Company
- Since 1989, SHI International Corp. has helped organizations change the world through technology.
- We’ve grown every year since, and today we’re proud to be a $16 billion global provider of IT solutions and services.
- Over 17,000 organizations worldwide rely on SHI’s concierge approach to help them solve what’s next.
- The heartbeat of SHI is our employees – all 7,000 of them.
- Our commitment to diversity, as the largest minority- and woman-owned enterprise in the U.S.
- Continuous professional growth and leadership opportunities.
- Health, wellness, and financial benefits to offer peace of mind to you and your family.
- World-class facilities and the technology you need to thrive – in our offices or yours.
Equal Opportunity
- Equal Employment Opportunity – M/F/Disability/Protected Veteran Status
