We are seeking a Lead SOC (Security Operations Center) Analyst to join our Cyber Fusion Centre.
Job Summary
The Lead SOC Analyst will oversee threat hunting initiatives, support incident response activities, and provide strategic guidance to junior staff.
Responsibilities
- Lead the creation and operationalization of a formalized Threat Hunting program.
- Participate in a 24x7 SOC schedule, including one week per month Monday – Sunday, 11AM – 7PM, and occasional holiday work.
- Provide expertise and guidance to less senior team members.
- Support Incident Response (IR) and Threat Detection development activities and report to Senior Management.
- Support the introduction and implementation of new capabilities and IR processes within the Cyber Fusion Centre.
- Interact closely with Swift’s Red Team to enhance detection capabilities.
- Lead and participate in IR simulation exercises from a blue team perspective.
- Perform proper triage, identification, and scoping of incidents, including containment actions.
- Participate in the identification, development and communication of IOCs.
- Coordinate eradication and remediation actions with stakeholders.
- Enhance and tune tools for efficiently managing large collections of security events.
- Stay abreast of changing technologies, emerging cyber threats, and attack methodologies.
Qualifications
- Bachelor’s degree in Computer Science, IT, or related field.
- 8+ years of experience in a SOC, Incident Response, or Threat Hunting role.
- Experience performing or leading threat hunting activities.
- Experience with cloud technologies such as Azure, Google Cloud, or AWS.
- Experience with security tools such as SIEM, IDS/IPS, EDR/XDR, SOAR, etc.
- Ability to learn quickly in a fast-paced, multi-dimensional, technical environment.
- Strong verbal and written communication skills, with the ability to document technical investigations concisely.
Preferred Qualifications
- Familiarity with scripting languages such as PHP, Perl, or Python and databases such as MySQL.
- Knowledge of Unix and Windows operating systems.
- Security certifications such as GIAC GCIA/GCIH, CISSP, or other relevant certifications.
- Knowledge of penetration testing and vulnerability assessment capabilities and tools.
Salary
Estimated range: $121,564.00USD – $225,762.00USD per year for a new hire in Virginia.
Benefits
Medical, dental, vision, and life insurance at no employee premium; retirement plan with 401(k) matching; bonus opportunities contingent on performance.
Swift is unable to sponsor an employment authorization for this position now or in the future.Equal Employment Opportunity
Swift is committed to an inclusive and accessible recruitment process. For accessibility accommodations, please contact accessibility-Sysgroup@swift.com.
#J-18808-Ljbffr