Senior Threat Detection (CSOC) Analyst
CR, ASUNCION, VIRTUAL
3M
3M applies science and innovation to make a real impact by igniting progress and inspiring innovation in lives and communities across the globe.Job Description:
Job Title
Senior Threat Detection (CSOC) Analyst
Collaborate with Innovative 3Mers Around the World
The person filling the Cybersecurity Operations Center Senior Analyst role will join 3M’s Information Security, Risk and Compliance organization as part of a team focused on the ongoing development and operations of 3M’s global Cybersecurity Operations Center. You will help support day to day operations, monitoring and responding to security threats and risks, provide in-depth incident evaluation & analysis, and will provide pro-active threat hunting and intelligence research. This position will be operating in our Cybersecurity Operations Center; some weekend and after-hours work will be required.
Primary Responsibilities include but are not limited to the following:
- Actively participate on the analysis, handling and response of high priority cyber incident cases.
- Provide support to other CSOC analyst on cyber incident cases, as technical point of contact.
- Provide feedback and/or enhancement opportunities to the detection content developers and other teams managing the security stack (EDR, Firewalls, IPS, etc.).
- Participate on the identification of automation opportunities through the SOAR and/or scripting.
- Lead and participate on Threat Hunting activities to evaluate and detect potential threats.
- Retrieve and analyze relevant artifacts from systems to create timelines and evaluate the activity on endpoints/servers.
- Author Global Standard Operating Procedures and training documentation as needed
- Assist in training SOC team members and QA process for closed cases.
- Collaborate on designing and executing tabletop exercises related to the IR function.
Basic Qualifications:
- University Degree in MIS, Computer Science, or related field from a recognized college or university or equivalent work experience
- 5 years of security experience with at least of 8 years total IT background
- IT Security Operations Center environment experience with security monitoring experience
- Experience working with a SIEM and SOAR and participating on their feedback loops.
- Ability to interact with vendors, clients, and internal teams in a professional and articulate way via spoken and written word
Preferred Qualifications:
- CISSP, SANS Certifications or other equivalents
- Experience working/analyzing with Windows and Linux forensic artifacts and different methods of collection.
- Experience working with scripting languages such as Python and PowerShell
- Ability to identify and assess foreseeable internal and external risks to the security, confidentiality, and availability of information and systems using a documented process
- Experience working in IT at a global organization
Supporting Your Well-being
3M offers many programs to help you live your best life – both physically and financially. To ensure competitive pay and benefits, 3M regularly benchmarks with other companies that are comparable in size and scope.
Imagine your future in 3M
At 3M, inspiration happens daily. Here, science is how the magic happens. Except it is not magic, it is the right science, applied in the right way by the people of 3M. Here, your ideas help shape everyday lives around the globe. Here, you matter. You inspire. Challenge. Create. Thrive. Here, you go. Apply now and discover inspired opportunities!
Please note: your application may not be considered if you do not provide your education and work history, either by: 1) uploading a resume, or 2) entering the information into the application fields directly.
3M Global Terms of Use and Privacy Statement
Carefully read these Terms of Use before using this website. Your access to and use of this website and application for a job at 3M are conditioned on your acceptance and compliance with these terms.
Please access the linked document by clicking here, select the country where you are applying for employment, and review. Before submitting your application, you will be asked to confirm your agreement with the terms.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation CISSP Compliance Computer Science CSOC EDR Firewalls IPS Linux Monitoring PowerShell Privacy Python SANS Scripting SIEM SOAR SOC Threat detection Windows
Perks/benefits: Career development Competitive pay
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.