Job Description
We are seeking a highly skilled and motivated Cybersecurity Analyst to join our elite Security Operations Center (SOC) team. This is a critical role dedicated to protecting our enterprise infrastructure through 24/7 monitoring and rapid incident response. As a key member of our weekend rotation, you will be the first line of defense against sophisticated cyber threats, ensuring business continuity and data integrity for our clients in Silicon Valley.
Why Join Apex Cyber Defense?
- Impactful Work: Play a pivotal role in securing critical infrastructure and high-profile clients.
- Competitive Compensation: Comprehensive benefits package including health, dental, and vision insurance.
- Professional Growth: Continuous training on the latest threat intelligence and cybersecurity technologies.
- Weekend Flexibility: Enjoy a predictable work-life balance with a focus on high-impact weekend shifts.
Responsibilities
- 24/7 Monitoring: Monitor security alerts, logs, and events on the SIEM platform (Splunk/Sentinel) during weekend shifts to identify potential threats.
- Incident Response: Conduct triage, analysis, and containment of security incidents with a focus on minimizing downtime and data loss.
- Vulnerability Management: Assist in the identification and remediation of vulnerabilities within the network infrastructure.
- Threat Hunting: Perform proactive threat hunting to identify malicious actors hiding within the environment.
- Report Generation: Document incident reports, root cause analyses, and weekly security status updates for stakeholders.
- Access Control: Review and validate access requests and maintain strict adherence to Identity and Access Management (IAM) policies.
Qualifications
- Experience: Minimum 3-5 years of experience in a SOC, Security Operations Center, or related cybersecurity role.
- Education: Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent work experience.
- Certifications: CISSP, CEH, Security+, or equivalent certification is highly preferred.
- Technical Skills: Proficiency with SIEM tools (Splunk, ArcSight, or QRadar), endpoint detection and response (EDR) platforms, and firewalls.
- Knowledge: Deep understanding of network protocols, TCP/IP, and common attack vectors (Phishing, Malware, Ransomware).
- Communication: Excellent written and verbal communication skills with the ability to articulate complex technical findings to non-technical stakeholders.