Journeyman SOC Analyst (Q Clearance)

ShorePoint, LLC

Las Vegas (NV)

On-site

USD 90,000 - 120,000

Full time

3 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

PTO 144 hours
Health insurance

Job summary

ShorePoint, LLC, based in Las Vegas, NV, is seeking a Journeyman SOC Analyst to provide advanced monitoring, triage and response within a 24/7 SOC environment. You will investigate security incidents, advise on mitigations and contribute to content development in a fast-paced setting.

The role requires hands-on experience with security technologies and a willingness to shape growth and culture in a rapidly expanding cybersecurity services firm.

Qualifications

  • Bachelor’s degree required.
  • 2+ years in a SOC or similar security operations environment.
  • Experience with security technologies such as SIEM, IDS/IPS, DLP, EDR, WAF.

Responsibilities

  • Monitor client sources for security incidents and health alerts in real-time and via dashboards.
  • Perform triage of potential incidents and determine needed mitigation.
  • Escalate incidents and implement countermeasures.
  • Maintain incident notes in the case management system.
  • Analyze monitoring results and assess escalated outputs.

Skills

SOC operations
Incident response
Malware analysis
APT knowledge
SIEM
EDR
IDS/IPS
WAF
Networking fundamentals
Security architecture

Education

Bachelor’s degree

Tools

SIEM
EDR
IDS/IPS
WAF

Job description

Who We Are

ShorePoint is a fast-growing, industry-recognized and award-winning cybersecurity services firm focused on high-profile, high-threat public and private sector customers who demand experience and proven security models to protect their data. We embrace a “work hard, play hard” mentality and celebrate individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers, while fostering an environment that supports creativity, accountability, mission success, critical thinking and a desire to give back to our community.

Who We Are

ShorePoint is a fast-growing, industry-recognized and award-winning cybersecurity services firm focused on high-profile, high-threat public and private sector customers who demand experience and proven security models to protect their data. We embrace a “work hard, play hard” mentality and celebrate individual and company successes. We are passionate about our mission and going above and beyond to deliver for our customers, while fostering an environment that supports creativity, accountability, mission success, critical thinking and a desire to give back to our community.

The Perks

As recognized members of the Cyber Elite, we work together in partnership to defend our nation’s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individual’s technical and professional growth. We are committed to the belief that our team members do their best work when they are happy and well cared for. In support of this philosophy, we offer a comprehensive benefits package, major carriers for healthcare providers. Highlighted benefits include 144 hours of PTO, 11 holidays, 85% of insurance premiums covered, a 401(k), continuing education, certification maintenance and reimbursement and more.

Who We’re Looking For

We are seeking a Journeyman SOC Analyst (Q clearance) provide advanced monitoring, triage and response within a 24/7 Security Operations Center (SOC) environment. This role plays a key part in identifying and investigating security incidents, advising on mitigation and improving monitoring content and procedures. The Journeyman SOC Analyst will have hands-on experience with security technologies and be ready to contribute to threat detection, content development and continuous service improvement in a fast-paced operational setting. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market.

What You’ll Be Doing
  • Monitor client sources of potential security incidents, health alerts with monitored solutions and requests for information. This includes the monitoring of real-time channels or dashboards, periodic reports, email inboxes, helpdesk or other ticketing systems, telephone calls and chat sessions.
  • Follow client and incident-specific procedures to perform triage of potential security incidents to validate and determine needed mitigation.
  • Escalate potential security incidents to client personnel, implement countermeasures in response to others and recommend operational improvements.
  • Keep accurate incident notes in the case management system.
  • Maintain awareness of the client’s technology architecture, known weaknesses, the architecture of the security solutions used for monitoring, imminent and pervasive threats as identified by client threat intelligence and recent security incidents.
  • Provide advanced analysis of the results of the monitoring solutions, assess escalated outputs and alerts from Level 1 Analysts.
  • Perform web hunting for new patterns/activities.
  • Advise on content development and testing.
  • Provide advice and guidance on the response action plans for information risk events and incidents based on incident type and severity.
  • Ensure that all identified events are promptly validated and thoroughly investigated.
  • Provide end-to-end event analysis, incident detection and manage escalations using documented procedures.
  • Devise and document new procedures and runbooks/playbooks as directed.
  • Maintain monthly Service Level Agreements (SLAs).
  • Maintain compliance with processes, runbooks, templates and procedures-based experience and best practices.
  • Assist the Cyber Hunting team with advanced investigations as needed.
  • Provide malware analysis (executables, scripts, documents) to determine indicators of compromise and create signatures for future detection of similar samples.
  • Continuously improve the service by identifying and correcting issues or gaps in knowledge (analysis procedures, plays, client network models), false positive tuning, identifying and recommending new or updated tools, content, countermeasures, scripts, plug-ins, etc.
  • Perform peer reviews and consultations with Level 1 Analysts regarding potential security incidents.
  • Serve as a subject matter expert in at least one security-related area (e.g., specific malware solution, Python programming, etc.).
  • Provide shift status and metric reporting as well as support weekly operations calls.
What You Need To Know
  • Strong understanding of SOC operations, incident response workflows and monitoring tools.
  • Experience with malware behavior analysis and identification of indicators of compromise.
  • Familiarity with APT tactics, techniques and procedures.
  • Knowledge of security technologies such as SIEM, EDR, IDS/IPS and WAF.
  • Understanding of networking fundamentals, protocols (TCP/IP, DNS, HTTP) and infrastructure devices.
  • Awareness of security architecture principles and common defensive tools.
Must Have’s
  • Bachelor’s degree.
  • 2+ years of working in a SOC or similar security operations environment, including 1+ years of experience in security technologies such as:
    • Security Information and Event Management (SIEM).
    • IDS/IPS, DLP, Endpoint Detection and Response (EDR).
    • Web Application Firewall (WAF), anti-virus and sandboxing solutions.
    • Host- and network-based firewalls, threat intelligence platforms or penetration testing tools.
  • One or more of the following certifications:
    • (ISC)2 Certified Information Security Professional (CISSP)
    • GIAC Certified Intrusion Analyst (GCIA)
    • GIAC Continuous Monitoring (GMON)
    • Certified Ethical Hacker (CEH) or equivalent.
  • Proven ability to analyze complex requirements and translate them into clear, actionable tasks and processes through critical thinking.
  • Must have the ability to work shifts on a rotating basis for 24/7 support of clients.
  • Travel up to 15%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must possess an active DOE Q Clearance or equivalent DoD Top Secret clearance at time of hire.
Beneficial To Have The Following
  • A strong desire to understand the what as well as the why and the how of security incidents.
  • Knowledge of Advanced Persistent Threats (APT) tactics, techniques and procedures.
  • Understanding of possible attack activities such as network probing/ scanning, DDOS, malicious code activity, etc.
  • Understanding of common network infrastructure devices such as routers and switches.
  • Understanding of basic networking protocols such as TCP/IP, DNS, HTTP.
  • Basic knowledge in system security architecture and security solutions.
Where It’s Done
  • Onsite (Las Vegas, NV).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior SOC Analyst (Q Clearance)
Junior SOC Analyst (Q Clearance)

ShorePoint, LLC • North Las Vegas (NV)

On-site
USD 55,000 - 85,000
144 hours PTO
11 holidays
Health insurance
+2
Junior SOC Analyst (Q Clearance)
Junior SOC Analyst (Q Clearance)

ShorePoint • Las Vegas (NV)

On-site
USD 52,000 - 76,000
144 hours PTO
11 holidays
Health insurance premiums covered 85%
+2
Junior SOC Analyst (Q clearance)
Junior SOC Analyst (Q clearance)

ShorePoint Inc • Las Vegas (NV)

On-site
USD 70,000 - 90,000
18 days of PTO
11 holidays
80% of insurance premium covered
+2
Sr. Analyst - Security Operations
Sr. Analyst - Security Operations

Solomon Page • Village of Great Neck (NY)

On-site
USD 120,000 - 140,000
Network Security Analyst
Network Security Analyst

ArnAmy, Inc. • Austin (TX)

On-site
USD 85,000 - 120,000
SOC Engineer
SOC Engineer

Amentum • Columbia (MD)

On-site
USD 120,000 - 180,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Security Operations Center Technical Lead
Security Operations Center Technical Lead

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 120,000 - 170,000
Security Operations Center Technical Lead
Security Operations Center Technical Lead

Invictus International • Colorado Springs (CO)

On-site
USD 130,000 - 180,000
Tier 2 Security Operations Center (SOC) Analyst
Tier 2 Security Operations Center (SOC) Analyst

Jobtailor • California (MO)

On-site
USD 95,000 - 125,000