Cyber Security Analyst -SOC
Tampa, FL, United States
University of South Florida
This position will work within Cyber Florida’s Security Operations Center (SOC) Apprenticeship Program and the Florida Cyber Hub. The SOC Analyst (Full Time) will work with security tools such as a SIEM, DLP, IDP, threat reports, and other security tools to identify incidents and threats. The SOC Analyst will also complete incident reports, produce threat advisories and reports, and handle issues according to established procedures and guidelines. The SOC Analyst will perform troubleshooting of technical issues, provide technical support to business partners and end users, and create technical documentation. The SOC Analyst will also assist in training new hires (junior staff and students) in their SOC Analyst roles and provide cyber security engineering support to SOC operations.
- Create and assist in documenting processes, procedures, and other activities related to the SOC.
- Work and develop security applications for operational security (SIEM queries, Defender queries, runbooks, etc.)
- Analyze and respond to security alerts. Provide timely updates and resolutions to end-users.
- Prepare detailed threat advisories with recommendations and indicators of compromise.
- Research trends and current precautions for cybersecurity vulnerabilities, exploits, and other potential threats.
- Assist in training junior staff and new student SOC analysts and getting them acclimated to the environment.
- Guide junior analysts on best practices and assist in distributing their workload.
- Work on security engineering projects that will help in the build-out and capability of the SOC.
- Review, set up, test, and implement cloud, hybrid, and on-prem cyber security engineering solutions. (Velociraptor, malware analysis lab, network IDS, etc.)
- Maintain and update log management and SIEM solution (Splunk, Elastic, etc.)
- Familiar with Amazon Web Services (AWS), such as Workspaces, EC2 instances, and security groups. Create and maintain golden images (AMIs) for deployment within an AWS environment.
- Familiar with Microsoft Azure, such as Virtual machines, Storage, and security groups. Create and maintain golden images (VHDs) for deployment within an Azure environment.
- Perform software installations and upgrades to operating systems and software applications.
- Act as a point of escalation to resolve requests or issues from end users.
- Implement and enhance technology standards based on best practices – ensuring high system availability and providing an easily sustainable, compatible, and scalable architecture for future implementations.
- Perform routine security tasks in support of the systems for the Security Operations Center.
- Review security tools and create status reports according to schedule and need.
- Analyze and investigate security data from a range of security tools and resources.
- Conduct and provide incident response and digital forensic support when required.
- Research threats and monitor feeds to produce cyber threat intelligence reports.
- Keep up to date with cybersecurity software and hardware tools and resources.
- Communicate effectively with clients while thoroughly documenting conversations, exchanges, or sessions into ticketing systems.
- Provide feedback to leadership for improvement.
- Performs other information technology duties as required to support the unit's work
Minimum Qualifications
Bachelor’s degree in computer science, MIS, or other field involving software and analytical training, one year of IT-related work experience, OR a bachelor’s degree with no specific required field and two years of IT-related work experience.
Preferred Qualifications
Master's degree in a related field OR a combination of four years of IT-related work experience and validated training. Preparation for relevant IT certification is related to training. Demonstrated ability to link program goals to strategic goals. Detail-oriented, with strong communication skills and the ability to effectively manage time and tasks, is imperative. Must be able to work collaboratively with all team members and the university.
FLSB1310 Equivalency:
4 years of directly relevant experience may be substituted for bachelor's degree.
6 years of directly relevant experience may be substituted for master's degree.
This position may be subject to a Level 1 or Level 2 criminal background check.
Applicants for USF employment are entitled to request reasonable accommodation(s) in the application process. A request is to be made at least five (5) working days prior to the time the accommodation(s) is needed. Contact the USF ADA Lead (hr-ADA-Request@usf.edu) to coordinate your accommodation request.
The University of South Florida is a high-impact global research university dedicated to student success. Over the past 10 years, no other public university in the country has risen faster in U.S. News and World Report's national university rankings than USF. Serving more than 50,000 students on campuses in Tampa, St. Petersburg and Sarasota-Manatee, USF is designated as a Preeminent State Research University by the Florida Board of Governors, placing it in the most elite category among the state's 12 public universities. USF is a member of the American Athletic Conference.
Working at USF
With more than 16,000 employees at USF, the University of South Florida is one of the largest employers in the Tampa Bay region. At USF you will find opportunities to excel in a rich academic environment that fosters the development and advancement of our employees. We believe in creating a talented, engaged and driven workforce through on-going development and career opportunities. We also offer a first class benefit package that includes medical, dental and life insurance plans, retirement plan options, tuition program and generous leave programs and more.
To learn more about working at USF please visit: Work Here. Learn Here. Grow Here.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: AWS Azure Cloud Computer Science EC2 Exploits IDS Incident response Malware SIEM SOC Splunk Threat intelligence Vulnerabilities
Perks/benefits: Career development Medical leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.