SOC Analyst
Remote
Full Time Senior-level / Expert USD 500K - 750K
DeepSeas
Nearly 1,000 organizations trust DeepSeas to transform their cybersecurity program with 24x7 detection and response, pen testing, and vCISO services.
SOC Analyst
Position Overview
We are seeking a motivated Cyber Security Operator to join our team, offering an exciting opportunity to enhance your expertise in incident investigations and containment. The ideal candidate is someone passionate about the cyber security industry with an analytic mindset and a solid understanding of cyber security tools. In this role, you will play a crucial part in impacting the services provided to our customers by detecting, investigating, and containing security incidents.
This position is well-suited for an individual eager to progress in their information security career within a dynamic, customer-service oriented environment. You will collaborate with other seasoned analysts and top-notch cyber-security engineers in our Security Operations Center (SOC).
Our Security Operations Center works on a 4x3 work week which may include early morning, evening or weekend shift hours, so flexibility is a key consideration.
**Remote work in Costa Rica Only**
• Provide monitoring support in a 24x7x365 environment.
• Investigate SIEM and endpoint alerts within the SOAR platform for containment, notification, and remediation.
• Collect and analyze intrusion artifacts (e.g., source code, malware, and system configuration) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise.
• Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
• Determine tactics, techniques, and procedures for intrusion sets
• 3-5 years cyber security operations experience
• Experience with proprietary security protection/detection tools such as Firewalls, Host and Network IDS/IPS, Anti-Virus, EDR, URL Filtering Gateways, Email Filtering Gateways, DLP tools, SIEM tools, etc
• Hands-on experience with Splunk, Crowdstrike and SOAR preferably
• Highly proficient in Microsoft and Linux operating systems
• Experience working within one or more SOAR platforms
• Familiarity with the MITRE ATT&CK framework
• Working knowledge of advanced actor TTPs
• Excellent written/verbal communication skills
• We are client obsessed.
• We stand in solidarity with our teammates.
• We prioritize personal health and well-being.
• We believe in the power of diversity.
• We solve hard problems at the speed of cyber.
This is your chance to join a supportive crew of teammates and an industry-leading organization that values opportunities for growth. If DeepSeas sounds like a good fit for you, send us your resume and let’s talk!
Department: Security Operations
Employment Type: Full Time
Location: Remote
Compensation: $500,000 - $750,000 / year
Description
With 30 years of experience in cyber defense, DeepSeas is trusted by nearly 1,000 clients around the world, including Fortune 100 enterprises and mid-market organizations, higher education institutions, municipality and local governments, and federal agencies. Known for its programmatic approach to continuously transforming cyber defense programs, DeepSeas is recognized by Gartner as a top 40 provider of MDR and ranked as a top 5 MDR leader in the 2024 Frost Radar™: Global Managed Detection and Response (MDR) Market. In addition to its industry-leading MDR service, DeepSeas offers a full suite of advisory, compliance, and testing services to support clients on their cybersecurity transformation journeys, with an approach to cyber defense that prioritizes technical expertise, tradecraft, and continuous innovation to deliver unparalleled results.Position Overview
We are seeking a motivated Cyber Security Operator to join our team, offering an exciting opportunity to enhance your expertise in incident investigations and containment. The ideal candidate is someone passionate about the cyber security industry with an analytic mindset and a solid understanding of cyber security tools. In this role, you will play a crucial part in impacting the services provided to our customers by detecting, investigating, and containing security incidents.
This position is well-suited for an individual eager to progress in their information security career within a dynamic, customer-service oriented environment. You will collaborate with other seasoned analysts and top-notch cyber-security engineers in our Security Operations Center (SOC).
Our Security Operations Center works on a 4x3 work week which may include early morning, evening or weekend shift hours, so flexibility is a key consideration.
Key Responsibilities
**Hours will start at 2-11 pm then switch to overnight (6pm - 6 am)****Remote work in Costa Rica Only**
• Provide monitoring support in a 24x7x365 environment.
• Investigate SIEM and endpoint alerts within the SOAR platform for containment, notification, and remediation.
• Collect and analyze intrusion artifacts (e.g., source code, malware, and system configuration) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise.
• Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
• Determine tactics, techniques, and procedures for intrusion sets
Skills Knowledge and Expertise
• 3-5 years cyber security operations experience
• Experience with proprietary security protection/detection tools such as Firewalls, Host and Network IDS/IPS, Anti-Virus, EDR, URL Filtering Gateways, Email Filtering Gateways, DLP tools, SIEM tools, etc
• Hands-on experience with Splunk, Crowdstrike and SOAR preferably
• Highly proficient in Microsoft and Linux operating systems
• Experience working within one or more SOAR platforms
• Familiarity with the MITRE ATT&CK framework
• Working knowledge of advanced actor TTPs
• Excellent written/verbal communication skills
Why DeepSeas?
At DeepSeas, we like to say that heart rates go down, careers take off, and security programs mature. Our values provide the ultimate guide for our daily behavior and decisions. Without these values, we aren’t DeepSeas. They preserve the essence of our organization, reflect the personalities of our Deeps (how we affectionately refer to our teammates), and enable us to exceed expectations. Our values are:• We are client obsessed.
• We stand in solidarity with our teammates.
• We prioritize personal health and well-being.
• We believe in the power of diversity.
• We solve hard problems at the speed of cyber.
This is your chance to join a supportive crew of teammates and an industry-leading organization that values opportunities for growth. If DeepSeas sounds like a good fit for you, send us your resume and let’s talk!
Job stats:
13
1
0
Categories:
Analyst Jobs
Incident Response Jobs
Tags: Compliance CrowdStrike Cyber defense EDR Firewalls IDS IPS Linux Malware MITRE ATT&CK Monitoring SIEM SOAR SOC Splunk TTPs
Perks/benefits: Career development
Region:
Remote/Anywhere
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Systems Security Officer jobsInformation System Security Officer jobsInformation Security Officer jobsSenior Cybersecurity Engineer jobsSenior Cloud Security Engineer jobsInformation Security Manager jobsCyber Security Specialist jobsIT Security Engineer jobsSystems Engineer jobsSenior Network Security Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsSecurity Consultant jobsSenior Cyber Security Engineer jobsSecurity Specialist jobsIT Security Analyst jobsChief Information Security Officer jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsThreat Intelligence Analyst jobsSenior Penetration Tester jobsCyber Security Architect jobsSecurity Operations Analyst jobsSenior Information Security Engineer jobsCyber Threat Intelligence Analyst jobs
Encryption jobsTop Secret jobsGDPR jobsSaaS jobsSplunk jobsMalware jobsEDR jobsRMF jobsSDLC jobsBash jobsSQL jobsForensics jobsIDS jobsThreat detection jobsIPS jobsActive Directory jobsFinance jobsDoDD 8570 jobsIntrusion detection jobsITIL jobsCompTIA jobsCRISC jobsDocker jobsTerraform jobsGIAC jobs
OWASP jobsHIPAA jobsSOC 2 jobsClearance Required jobsSANS jobsUNIX jobsCCSP jobsIndustrial jobsSAP jobsOSCP jobsJavaScript jobsVPN jobsTCP/IP jobsAnsible jobsBanking jobsDNS jobsPolygraph jobsSOX jobsData Analytics jobsMachine Learning jobsIT infrastructure jobsJira jobsCISO jobsVMware jobsNIST 800-53 jobs