About the role: As a Cyber Security Analyst II in the Dataprise Security Operations Center (SOC), you will be the first responder for business-impacting cyber security incidents that arise in our customers' environments. Fast, effective, and courteous service is the lifeblood of our organization, and this position requires nothing less. Your technical acumen will be challenged daily. Quick thinkers who can make decisions on their feet will be successful in this job.
Why Dataprise?
- An employee focused organization with a “work hard/play hard” culture including a unified mission, strong relationships, and opportunities to build a career.
- Exponential growth opportunity through continuous learning, upskilling, job shadow programs, career mentors, annual training allotments, and LinkedIn Learning licenses for all employees.
- Comprehensive Wellness Program including gym membership discounts/subsidies, and Wellness Rewards opportunities.
- A commitment to Diversity, Equity, and Inclusion (DEI) through a multi-faceted DEI Program.
- A focus on work/life balance including hybrid and remote work options, 10 paid holidays and 3-5 weeks of flexible PTO.
- Competitive pay and a comprehensive benefits package including top-quality medical, dental, and vision coverage for you and your family + FREE telemedicine benefits, company-paid Employee Assistance Program (EAP), and 401(k) with company match.
- An opportunity to grow, be challenged, have fun, and learn from some of the most talented technology professionals out there.
What You’ll Do:
- Monitor cyber security tools to identify, triage, and report security incidents to customers.
- Leverage available cyber security capabilities to contain security incidents to prevent the lateral spread of malware or lateral movement of attackers.
- Conduct cyber security investigations to identify and rule out false positive security incidents.
- Provide additional cyber security investigatory support to customers as needed.
- Work with a team of like-minded professionals to monitor customer ticket queues and triage tickets that need immediate attention. We service customers as small as 10 users, up to multi-national enterprises.
- Follow pre-defined playbooks and runbooks and collaborate with other technical resources, where appropriate.
- Monitor and process event tickets on a prioritized basis as to the customer impact and urgency of these events.
- Remain cognizant of customer service-level agreements and strive to meet or exceed them on a regular basis.
- Participate in Incident Management by providing situational reports (sitreps) via ticket updates and/or customer-facing communications.
- Provide first level technical resolution for cyber security incidents.
- Collaborate with our Network Operations Center (NOC) as needed, to document incidents, maintenance, and problems.
- Utilize various systems management tools to monitor availability, reliability, and performance of customer environments.
- Demonstrate problem solving skills that contribute towards the resolution of any issues that arise.
- Quickly assess an issue and form an understanding of the likely root cause in unfamiliar technical environments and technologies.
- Investigate, resolve, and/or escalate matters of significance pertaining to customer alerts and events.
- Document solutions, processes, procedures and present them in writing, verbally on the phone or in-person.
- Creating After Action Reports as well as incident response reports
- Commit to professional growth and development by maintaining and/or obtaining new industry specific certifications.
What Skills & Experience You’ll Need:
- Experience with monitoring and using a SIEM
- Azure Sentinel preferred (Splunk, Elastic, QRadar are nice to have)
- Experience supporting and administering the following is highly desired:
- Crowdstrike (or a similar nextgen endpoint solution)
- Azure or AWS cloud environments, including compute, storage, networking basics, and backups
- Microsoft O365
- Microsoft Defender
- Microsoft Sentinel
- Microsoft OS 10&11, Mac OS
- Windows Server OS: Windows 2012 through Windows 2019, including ADDS, DNS, DHCP, DFS, file/print services, PowerShell basics.
- KQL query language
- Nessus IO
- Networking Basics (CompTIA Network+ equivalent).
- At least one of the following industry certifications highly desired: Security+, Network+, CEH, GCIH.
- A curious disposition.
- Strong documentation, reporting, analytical and problem-solving skills.
- The ability to effectively engage in customer-facing communications.
- Experience with any of the following tools: Kaseya VSA, Auvik.
- Experience working in IT enterprises that use industry frameworks such as ITIL, COBIT, or MOF.
Compensation:
- Dataprise is committed to maintaining a positive work environment by ensuring that compensation across the Company is managed in a competitive, consistent, and fair manner. Each Dataprise employee will be compensated in line with their specific scope of responsibility, skill level, and educational background, in addition to the projected impact on the success of the Company.
- We have a comprehensive Compensation Management System which establishes the guidelines we use in making compensation decisions and is comprised of compensation policies, salary structures, salary grades, incentive target guidelines, job descriptions, and career charts.
- This position’s Salary Range is $80,000-90,000 (NOTE: this is the range at the national average level; specific salaries offered will be adjusted higher/lower due to the local labor market of the candidate. Individual compensation packages are based on various factors unique to each candidate, including skill set, experience, qualifications, and other job-related reasons.)
Dataprise Diversity Commitment: At Dataprise, we celebrate what makes us unique: our people. We believe in fostering a diverse and inclusive work environment that seeks and embraces thoughts and ideas from all different backgrounds. We welcome everyone and are committed to providing equal employment opportunity regardless of race, gender, religion, ethnicity, disability, national origin or sexual orientation. We are #DataprisePROUD!
Dataprise is an Equal Opportunity Employer.