SOC Security Engineer – Infosec – Fedramp
Company | Palo Alto Networks |
---|---|
Location | Santa Clara, CA, USA |
Salary | $Not Provided – $Not Provided |
Type | Full-Time |
Degrees | Bachelor’s |
Experience Level | Senior |
Requirements
- Minimum 4+ years working in a Security Operations role
- Familiarity with the principles of network and endpoint security, current threat and attack trends, and have a working knowledge of security principles such as defense in depth
- Familiarity with performing security Incident Response activities in complex organizations, with familiarity in at least one of the following three core areas: Endpoint Detection and Response (EDR) or Endpoint Forensics, Network Log Analysis, Public Cloud Defense (AWS, GCP etc)
- Threat hunting experience
- Hands-on working knowledge of a SIEM
- Excellent analytical and problem solving skills
- Strong communication skills, both spoken and written
- Strong familiarity with technologies commonly seen in Enterprises (i.e. AD, Kubernetes, VMs etc)
- Bachelor’s degree from four-year college or university or equivalent training, education, and experience in information / cyber security, computer systems, IT, etc. or equivalent military experience required
Responsibilities
- Monitor and analyze alerts to confirm security incidents
- Perform analysis of true positive alerts to determine root cause and impact
- Own and lead individual incident response activities by analyzing security alerts and coordinating responses
- Perform in-depth event review and analysis where appropriate
- Analyze events, research the potential cause, and recommend a course of action
- Hunt for indications of compromise across multiple technology platforms
- Continuously improve our alerting use cases and the threat hunting program
- Collaborate with SOC Automation team to automate tedious, boring activities
- Contribute to proof-of-concept assessments of new security products
- Generate reports detailing security incidents for security leaders and the business
- Show off your excellent communication skills in post mortem reviews of incident response activities, to facilitate continuous improvement
- Research security trends with the goal of improving our own processes and tools
Preferred Qualifications
-
No preferred qualifications provided.