INSPYR Solutions · 5 months ago
SOC Engineer Tier 2
INSPYR Solutions is a national expert in delivering flexible technology and talent solutions, and they are seeking a SOC Security Engineer Tier 2 to enhance their cybersecurity posture. This role involves handling complex security incidents, conducting incident response, and monitoring security tools to detect and respond to threats.
Information TechnologyProfessional ServicesStaffing Agency
Responsibilities
Conduct in-depth analysis of security incidents escalated from Tier 1, according to Dropzone AI
Utilize advanced threat intelligence to thoroughly investigate potential breaches, including attack vectors, affected systems, and impact on business operations
Perform forensic analysis on compromised systems and correlate events from various sources to build a comprehensive picture of the threat
Implement containment and eradication strategies, such as isolating affected systems, blocking malicious IP addresses, or removing malware
Coordinate incident response efforts across multiple teams, including IT, network engineers, and management
Develop and update incident response playbooks based on lessons learned from investigations
Monitor security dashboards, SIEM (Security Information and Event Management) platforms, and other security tools (including Cisco security products like Cisco Secure Endpoint, Cisco Secure Malware Analytics, and the Cisco SecureX platform) for suspicious activity
Develop custom detection rules and correlation logic to improve threat detection capabilities
Tune security tools and adjust processes to reduce false positives and improve efficiency
Proactively hunt for threats that may have bypassed initial detection mechanisms
Conduct vulnerability assessments and assist in developing remediation plans
Proactively update systems and ensure the latest patches are deployed
Provide guidance and mentorship to Tier 1 SOC Analysts
Create and maintain detailed documentation of incidents, investigations, and findings
Communicate technical findings clearly to both technical and non-technical stakeholders
Contribute to security architecture improvements and best practices development
Qualification
Required
2-5 years of experience in a security-related role, with at least 2-3 years as a Tier 2 SOC Analyst or Threat Hunter
Strong understanding of networking fundamentals (TCP/IP, DNS, HTTP/S, firewalls, etc.)
Proficiency in using SIEM tools (e.g., Splunk, IBM QRadar, LogRhythm) and other security technologies (e.g., EDR, IDS/IPS, packet analyzers)
Hands-on experience with Cisco security products
Experience in handling security incidents and conducting forensic analysis
Knowledge of scripting languages (e.g., Python, PowerShell) for task automation and data analysis
Familiarity with the MITRE ATT&CK framework
Knowledge of operating systems (Windows, Linux) and their security implications
Excellent analytical and problem-solving abilities, including attention to detail
Strong communication skills, both written and verbal, for reporting and collaborating with diverse teams
Ability to work under pressure and adapt to a fast-paced environment
A commitment to continuous learning and staying updated with evolving threats
Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent experience)
Preferred
Consider industry certifications like CompTIA CySA+, GIAC Certified Incident Handler (GCIH), Cisco Certified CyberOps Associate, or similar credentials
Benefits
Comprehensive medical benefits
Competitive pay
401(k) retirement plan
Company
INSPYR Solutions
INSPYR Solutions is a information technology staffing service providers.
Funding
Current Stage
Late StageLeadership Team
Recent News
2025-09-12
Company data provided by crunchbase