Tier 2 SOC AnalystLocation:Remote
Interview Process:1 round, Virtual/Online & potential forsecond round of in-person interviews
Duration:12Months Employment Type: Contract Experience Required: 05+ Years
Candidatelocation: SC residency required.
AdditionalInformation: Preference will be given to candidates that are local to SCand are able to come onsite for project needs.
Project Scope:
The Division of Information Security (DIS) isseeking an experienced Tier 2 SOC Analyst to support enterprise securityoperations, threat detection, incident response, and cyber investigations. Thisrole will work closely with state agencies to enhance security monitoringcapabilities and improve adoption of centralized security services.
Key Responsibilities:
Monitor andanalyze security events across SIEM, EDR, IDS/IPS, and threat intelligenceplatforms.
Investigatesuspicious activity, security incidents, phishing attempts, malware infections,and policy violations.
Perform incidentvalidation, root cause analysis, impact assessment, and escalation to Tier 3teams when necessary.
Create detailedincident reports, timelines, lessons learned, and remediation recommendations.
Support proactivethreat hunting using current threat intelligence and MITRE ATT&CKmethodologies.
Tune detectionrules, alert thresholds, and correlation logic to improve SOC effectiveness.
Collaborate withengineering, SOC teams, and state agencies to strengthen security monitoringand response capabilities.
Assist withonboarding and support of centralized security services.
Document SOCprocedures, runbooks, troubleshooting guides, and operational processes.
Serve as acustomer-facing security SME supporting agency stakeholders.
Required Skills & Experience:
·2+ Years ofIncident Response Experience
2+ Years ofExperience with MITRE ATT&CK Framework
Experience withSecurity Event Analysis & Threat Detection
DashboardDevelopment and Security Reporting Experience
Strong Analyticaland Investigation Skills
Preferred Skills:
·LinuxAdministration Knowledge
·FirewallAdministration Experience
·VPN TechnologiesExperience
·IDS/IPSAdministration Experience
PreferredCertifications:
·CISSP
·CISA
·CISM
·CEH
·OSCP
·GPEN
·Other SecurityVendor Certifications
Education:
OR