The Lead Security Operations Analyst plays a critical role in the Security Operations Center (SOC) by handling escalated incidents from the analysts. This role involves in-depth analysis, incident response coordination, mentoring of analysts, real time security monitoring, threat hunting and ensuring compliance with the Security policies and standards.
Roles And Responsibilities :
- Experience : 10 plus years of experience in cybersecurity, particularly in security operations.
- Cybersecurity Expertise : Advanced knowledge of cybersecurity threats, vulnerabilities, malware investigation and incident response, evidence collection, communication and documentation.
- Technical Proficiency : Proficiency in operational support, Security Architecture of SIEM, SOAR, EDR, XDR, Firewalls and other security tools.
- Analytical Skills : Strong analytical, investigative, and problem-solving skills.
- Forensic Analysis : Experience with forensic analysis and malware analysis.
- Certifications : Relevant certifications such as CFCE, CISSP, GCIH, or GCIA.
- Language Skills : Excellent verbal and writing skills in English.
- On Call Support : Rotational on call support for high severity incidents in a 24x7 environment.
Education & Experience :
Education : Bachelors degree in computer science, Cybersecurity, or a related field.Certifications : Advanced certifications such as CISSP, OSCP, GCIH, GSOC or GCIA.Incident Response Experience : 7+ years of experience in Cyber Incident response and investigations.Leadership Skills : Strong leadership and communication skills.Incident Analysis : Conduct detailed analysis of escalated security incidents. Coordination of end-to-end Security Incident management on escalated incidents, ensuring timely updates to stakeholders and efficient resolution of incidents.Incident Response : Lead the development and implementation of incident response plans.Threat Monitoring and Analysis : Monitor security alerts and events using SIEM and other security tools. Lead and coordinate proactive threat hunting to identify potential risks and vulnerabilities. Analyze and integrate threat intelligence feeds to the platforms and stay updated on emerging threats.Mentorship : Mentor and provide guidance to Security analysts on incident handling. Foster a culture of continuous improvement and learning.Forensic Analysis : Perform forensic analysis and malware analysis of Computers, Cloud, Networks, Mobile devices and other digital medias.Architecture Design : Develop and refine architecture of Security Tools and platforms.Collaboration : Creatively solve problems collaborating with SecOps, Platform, Delivery, IT and Engineering team members.(ref : hirist.tech)