Overview
Skills
Job Details
Do you write your own rules? Job Summary:
We are seeking a skilled and proactive SOC Analyst to join our Security Operations Center team. The ideal candidate will be responsible for monitoring, analyzing, and responding to security threats in real-time, using industry-leading tools such as Tenable and Splunk. This role plays a crucial part in strengthening our organization's security posture and ensuring rapid detection and response to potential incidents.
Key Responsibilities:
Monitor and analyze security alerts and logs from various sources using Splunk and other SIEM tools.
Conduct threat analysis, triage alerts, and investigate suspicious activity across the environment.
Deploy and manage Tenable for comprehensive vulnerability assessments, translating findings into actionable remediation plans and ensuring follow-through to completion.
Escalate and document incidents based on severity, and work with internal teams to contain and mitigate threats.
Maintain situational awareness of the current threat landscape and apply this knowledge to improve detection rules and response strategies.
Collaborate with IT and security teams to ensure accurate threat intelligence sharing and remediation follow-through.
Create and maintain operational documentation including incident reports, procedures, and use cases.
Requirements:
3+ years of experience in a SOC or cybersecurity analyst role.
Configure, tune, and manage Tenable.sc and Tenable.io to support proactive vulnerability identification, risk scoring, and compliance monitoring across enterprise environments.
Develop custom scan policies, automate asset discovery, and integrate Tenable outputs with SIEMs and ticketing systems to drive end-to-end remediation workflows.
Hands-on experience with Splunk (SIEM) and Tenable (vulnerability management).
Solid understanding of network security, threat vectors, and incident response.
Familiarity with MITRE ATT&CK framework and common attack patterns.
Strong analytical and problem-solving skills.
Excellent written and verbal communication skills.
Relevant certifications (e.g., Security+, GCIH, Splunk Core Certified User) are a plus.