Senior Specialist – Security Operations Center Analyst – Hybrid
Requirements
Must have:
– A minimum of 2 years of security experience or an equivalent background. – Between 2-5 years of IT experience or an equivalent background. – Experience serving as the first point of escalation for Security Analyst I. – Ability to train, mentor, and oversee Security Analyst I. – Comprehensive understanding of computer networking, including TCP/IP, routing, and protocols. – CompTIA Network certification or equivalent knowledge and experience is mandatory. – CompTIA Security certification or equivalent knowledge and experience is mandatory. – Detailed knowledge of packet structures and previous experience with in-depth packet analysis is required. – Strong understanding of information security best practices and technologies. – Extensive knowledge about administration, utilization, securing, and exploiting common operating systems. – Previous experience analyzing log sources from security and networking devices such as firewalls, routers, proxies, anti-virus solutions, and operating systems is essential. – Strong proficiency with Windows and Unix/Linux command line interfaces. – In-depth understanding of obfuscation techniques applied in coding/encrypting malicious traffic/data. – Familiarity with a standardized incident response framework (SANS/NIST). – An analytical mindset with research and analytical experience, particularly regarding event classification, correlation, and root cause analysis. – Preferred scripting experience with Python, Perl, SQL, and/or PowerShell. – Ability to react swiftly and decisively in high-pressure situations. – High ethical standards and core values. – A genuine enthusiasm for learning. – Strong verbal and written communication skills are needed for documenting and conveying findings, escalating critical incidents, and interacting with clients. – Willingness to work in shifts. – Self-discipline to complete tasks with minimal supervision. – Highly motivated, with skills to self-initiate, prioritize tasks, and manage multiple assignments.
Responsibilities:
- Collaborate as a pivotal member of our Security Operations Center (SOC) supporting a global enterprise by monitoring, analyzing, and responding to information security threats including commodity malware, policy breaches, and advanced persistent threats. – Triage and address simultaneous information security incidents reported through various channels such as SIEM, ticketing systems, and emails. – Conduct root cause analysis, document findings, and work with technology/process owners to reduce future risk. – Research, analyze, and comprehend log sources originating from security and networking devices like firewalls, routers, proxies, anti-virus products, and operating systems. – Automate manual tasks using scripting. – Conduct reviews of raw data to detect malicious activities for which there are no existing signatures/content. – Assist in developing new content and refining/filtering existing content for SIEM, IDS, and other security technologies. – Participate in ongoing documentation processes to ensure accuracy, which is vital to our team’s effectiveness. – Work alongside management to define and update standard operating procedures and incident response plans. – Support Senior Security Analysts, Team Leads, Technical Directors, and Management throughout all phases of the Incident Response process.
-
Company:
At Charles Schwab, we are dedicated to fostering our employees’ personal and professional growth. Our purpose-driven and supportive culture, along with a strong focus on your development, means you will receive the resources necessary to make a meaningful impact in the finance sector. Our hybrid work model embraces flexibility while maintaining our commitment to serve clients and valuing regular in-person interactions. We provide a competitive benefits package that addresses your overall well-being, both now and in the future, including: – A 401(k) with company matching and employee stock purchase options. – Paid time off for vacations, community service, and a 28-day sabbatical after every five years of service for eligible roles. – Paid parental leave and benefits to support family growth. – Tuition reimbursement programs. – Health, dental, and vision insurance.