Major Organization in NYC is seeking a Cybersecurity/SOC analyst- This is a hybrid position Week1(3 days on site) week 2 (2 days on site) and vice-versa-MUST BE LOCAL CANDIDATE- No relocations. Client cannot sponsor at this time.Must have at least 3-5 years exp in cybersecurity/SOC. Focus must be on Threat monitoring and detection, Response, Analysis, Cyber Threat Intelligence to protect and maintain the overall security of the enterprise.Investigate and analyze detections from a diverse set of security tools(NGFW,EDR,NDR, TIP, SIEM). Conduct thorough investigations of detections escalated by junior analysts to evaluate the scope of the attack,, identify affected systems, and determine necessary steps for further analysis. Stay informed on emerging and existing threats by analyzing attacker tactics, techniques and procedures and reviewing security event reports to proactively strenthen defenses. . Ability to develop specific proactive procedures for detection of security breaches. Strong working knowledge of incident response and handling methodologies. Strong working knowledge of operating systems, networking, MS Active directory. Good working knowledge of SaaS-based cloud application security and cloud platforms such as azure. Exp in collaborating with system and network administrators to help remediate the impact of identified risks and vulnerabilites at the platform level.Indepth knowledge of the following:
IDS/IPS, EDR/NDR/XDR, CASB, Firewalls and next generation firewalls(NGFW), cyber threat intelligence feeds and databases, Log mgmt systems(SIEM) Web application firewalls, vulnerability scanners and penetration testing tools, Network security best practices