Security Operation Center Analyst (Remote Role)
Client Location: Augusta-Maine
Job Description
The Information Security Office (ISO), Security Operations Center (SOC) is at the forefront of the State of Maine defense against cyber threats. The position works to protect more than 20,000 devices on the State of Maine network. This position will perform continuous monitoring of critical systems for the State of Maine. The candidate will be a member of a team focused on endpoint detection and response, antivirus protection, endpoint investigations, and other endpoint security, engineering, and incident response activities. The position will also support the SOC Team Leads and the Security Operations Manager in adequately meeting and addressing the operational demands within the SOC.
Top 3 Skills:
Endpoint Security
Incident Response
Engineering Security Protocols
Relevant Education:
Five years of information security experience, with a focus on Endpoint Security, Incident Response, and Security Engineering within an enterprise environment. The ideal candidate will have knowledge of Windows and Linux systems and their associated scripting languages, experience with AWS or Azure cloud environments, and will have worked with endpoint security platforms such as Microsoft Defender for Endpoint, FireEye, Crowdstrike, McAfee, or similar, and with vulnerability testing products such as Windows Defender TVM, Tenable Nessus, Rapid 7 InsightVM, Qualys, or similar. Experience with any of the popular SIEM platforms is also desired (Splunk, Azure Sentinel, Sumo Logic, LogRhythm, Elasticsearch, etc.
A four-year college degree in computer science or a related field with advanced study preferred; One or more relevant technical security certifications are a plus (GIAC, ISC2, CompTIA, EC Counsel, etc.)