Logo
Noralogic Inc

L3 SOC Analyst

Noralogic Inc, Baltimore, Maryland, United States, 21276


Role:

L3 SOC Analyst

Location:

Baltimore, MD / Westborough, MA / Princeton, NJ / Latham, NY (Onsite)

Duration:

Full Time

Start Date:

Immediate

Interview:

Immediate

Job Description:

Immediate availability for tomorrow for interview needed along with submission. L3 resource needed - 10+ Years.

The Senior Security Systems Engineer

is responsible for the development and implementation of technical systems and controls necessary to safeguard enterprise information and assets. The Senior Security Systems Engineer must work directly with other IT staff for the purpose of protecting the confidentiality, integrity, and availability of proprietary, personal, and privileged data.

Primary Responsibilities

Develop and implement network security standards, procedures, and processes

ProofPoint Administration Expert.

Splunk Semi Admin and familiarity with Queries

Crowdstrike Falcon complete for endpoint security

Responsibilities include debugging, configuring, tuning, or changing system parameters.

Work cross-functionally within company and with outside vendors to coordinate updates to technology to meet current and long-term business needs.

Level 3 support for some security tools & L2 Supports on others.

Monitor logs/reports from servers, firewalls, intrusion detection, network traffic, Email, Internet usage, access administration, for unusual or suspicious activity/violations, interprets activity, and recommends plans for resolution.

Perform incident response

Provide security support/recommendations for IT projects.

Develop security diagrams, reports, policies, and User Awareness training.

Other Duties As Assigned

The other good to have knowledge and some expertise on below security tools

Qualys Vulnerability Scanning Tool

Axonius

Secret Server

Okta

Netskope

Required Skills

Ability to quickly respond to customer requests.

8+ years of experience as SOC Analyst.

Hands-on Expertise on below

ProofPoint Administration

Splunk Admin Duties

Crowdstrike Falcon Complete

Incident Operations

Critical Incident Analysis

Security Response

Good understanding of Checkpoint Firewall.

Experience with security technologies such as Security and Information Event Management (Splunk, Qualys, Proofpoint, Crowdstrike etc), Data Loss Prevention, Authentication, and/or Identity and Access Management is highly desirable.

Expert-level understanding of firewall logs and validate traffic to build access rules.

Desired Skills

CISSP or other IT Security Certifications.

Working knowledge of Cisco Security Manager

Checkpoint Firewall

IPSEC VPN troubleshooting.

Experience with change control policy and procedures.

#J-18808-Ljbffr