SOC Analyst role we discussed:
- Support security operations activities and IR processes.
- Review and respond to security events.
- Coordinate and remediate security incidents with other IT and business subject matter experts.
- Keep abreast of emerging threats, threat actors, and attacker Tactics, Techniques, and Procedures (TTP’s).
- Review and maintain security tools.
- Configure, Update, and tune security tools (examples below)
- SIEM
- AntiVirus / AntiMalware
- SOAR
- Vulnerability Scanning
- Security Awareness
- Track and triage issues within ticketing system while escalating issues as needed according to the potential risk impact to the organization.
- Demonstrate consultative expertise within a cybersecurity specialization. Examples include:
- Patching and Vulnerability Management
- Security Incident Response Management
- System Administration
- Offensive Security Assessment
- IT and Security Tool Administration
- Application Security and Software Development Lifecycle Management
- Occasionally travel to clinical sites as part of a project efforts
- Review and customize Microsoft Azure rules to support Identity and Access Management (IAM) processes.
- Ability to support remote on-call support as needed.