SOC Analyst 2

JPS Tech Solutions

Harrisburg (Dauphin County)

On-site

USD 70,000 - 90,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

JPS Tech Solutions is seeking a SOC Analyst 2 to monitor and protect critical IT assets. The role involves incident handling, threat detection, and proactive security operations in a 24/7 SOC environment.

You will analyze logs, perform threat hunting, tune detection rules, and coordinate responses with the team to reduce false positives and improve security posture. On-site work at customer facilities may be required, with shifting schedules to cover nights and weekends.

Qualifications

  • Create queries, reports and scripts leveraging current security coding and SIEM query languages.
  • Prioritize tasks effectively.
  • Working knowledge of troubleshooting tools (software).
  • Analyze and interpret various information.

Responsibilities

  • Perform on-site information security and network monitoring for mission-critical sites.
  • Capture, log, and respond to events from various security systems with accurate documentation.
  • Investigate alerts escalated within the SOC to determine scope and root cause.
  • Follow and improve established playbooks and SOPs used by the SOC.
  • Document security incidents and responses per procedures.
  • Monitor external event sources for security intelligence and actionable incidents.
  • Provide incident response support during network and security events.

Skills

SIEM queries
Threat analysis
Incident response
Log analysis

Job description

Job Description:
Position Purpose:

The SOC Analyst 2 performs event triage and internal SOC escalations to protect the confidentiality, integrity, and availability of the Commonwealth’s information technology assets through prompt and accurate threat handling, while also identifying and closing security gaps through detection engineering, threat hunting, intelligence gathering, and investigation, thereby contributing to the continuous improvement of network and security monitoring.

Description of Duties:

Perform ongoing, on-site information security and network monitoring with proactive response for mission-critical communication sites and systems.

Capture, log, and respond to events received from email, chat, telecommunication systems, and other security systems, ensuring accurate documentation of incoming data.

Perform security investigation for alerts escalated within the Security Operation Center, determining full scope, potential root cause, and potential impact.

Follow, create, and improve established playbooks and SOPs used by the SOC.

Document security incidents, responses, and related information in accordance with established procedures

Analyze advanced logs, network capture, end-point telemetry to identify malicious activity and indicators of compromise (IOCs)

Conduct initial threat hunting to proactively identify security anomalies and adversary activity

Conduct tuning and optimization of existing detection rules, alerts, and correlation logic to reduce false positives and improve detection fidelity.

Participate in root cause analysis or lessons learned sessions.

Monitor external event sources for security intelligence and actionable incidents

Provide incident response support as needed and directed during network and security events providing support for incident resolution.

Maintain flexibility to work in various shift rotations to support 24/7/365 operations, including days, nights, holidays, and weekends.

Performs other related duties as required.

Decision Making:

Make informed and timely decisions on the appropriate response to security alerts.

Unique issues or problems may be escalated to supervisor.

Work is reviewed periodically for adherence to established standards and established schedules.

Essential Functions:
  1. Use personal computer/laptop with Microsoft Office products and other business software
  2. Analyze and interpret various information
  3. Create queries, reports and scripts leveraging current security coding and SIEM query languages
  4. Prioritize tasks effectively.
  5. Communicates effectively orally and in writing.
  6. Working knowledge of troubleshooting tools (software)
  7. Work independently and as a team member
Skill Matrix:

Skill

Required / Desired

Amount

of Experience

Create queries, reports and scripts leveraging current security coding and SIEM query languages

Required

Prioritize tasks effectively.

Required

Working knowledge of troubleshooting tools (software)

Required

Analyze and interpret various information

Required

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Analyst 2
SOC Analyst 2

Mbi Llc • Harrisburg

On-site
USD 60,000 - 90,000
SOC Analyst 2
SOC Analyst 2

i-Link Solutions • Harrisburg

On-site
USD 70,000 - 100,000
SOC Analyst
SOC Analyst

KeenLogic • Fairfax (VA)

On-site
USD 90,000 - 130,000
Health, dental, vision benefits from a
PTO
401(k) with company match
+1
SOC Analyst
SOC Analyst

BDO USA, LLP • Oak Brook (IL)

On-site
USD 75,000 - 95,000
Security Operation Center (SOC) Analyst – Level II
Security Operation Center (SOC) Analyst – Level II

TAC Integrated Solutions • United States

On-site
USD 90,000 - 130,000
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
Security Operations Center Analyst
Security Operations Center Analyst

Diligente Technologies • San Jose (CA)

On-site
USD 80,000 - 100,000
SOC Analyst
SOC Analyst

PSG Global Solutions • Dallas (TX)

On-site
USD 90,000 - 120,000
SOC Analyst I
SOC Analyst I

SOClogix, Inc. • Catonsville (MD)

Hybrid
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6
Sr. SOC Analyst
Sr. SOC Analyst

HW3 • Village of Great Neck (NY)

On-site
USD 130,000 - 170,000