Position Overview :
Seeking a Security Analyst to join our Security Operations Center (SOC), focusing on incident response and threat detection. This role involves working with enterprise SIEM platforms, EDR solutions, and incident management tools to protect IBKRs global trading infrastructure.
Key Responsibilities :
- Triage and investigate security alerts using SIEM / EDR tools
- Execute incident response playbooks
- Perform malware analysis and IOC identification
- Create incident tickets and maintain documentation
- Conduct initial forensic data collection
- Support security event correlation and analysis
- Monitor suspicious endpoint activities
- Participate in 24x7 incident response coverage
Required Technical Skills :
Experience with SIEM (Splunk / QRadar)EDR platforms (CrowdStrike / Carbon Black)Incident ticketing systems (ServiceNow / JIRA)Windows / Linux log analysisNetwork traffic analysisMalware detection toolsIOC collection and analysisBasic forensic toolsRequired Experience :
2-3 years SOC / IR experienceL1 / L2 alert analysis backgroundExperience with incident playbooksExposure to MITRE ATT&CK frameworkUnderstanding of kill chain methodologyBasic threat intelligence usageTechnical Environment :
SIEM platformsEDR solutionsTIP platformsForensic toolsNetwork monitoring toolsVulnerability scannersIncident management systemsWork Requirements :
Rotating shifts (24x7 SOC)Incident response handlingAlert triage and escalationDocumentation and reportingTeam collaborationGrowth Path :
Advanced IR certification supportThreat hunting trainingDigital forensics exposureTechnical skill developmentSenior analyst progressionSkills Required
Siem, Splunk, crowdstrike