Careers

Security Analyst Level 3

Integrity360 is the largest specialist IT security consultancy in the country. We secure the networks, infrastructures and information of some of the leading companies in both Ireland and the UK. Our team is expanding all the time even though we take a very long time in matching new individuals to the company ethos. We are passionate about what we do, so too must any new recruits. Integrity Solutions is currently expanding at a rapid rate – could you be the newest member to our team? We are fun and dynamic and believe in constant learning and development. Progression is a typical buzz word within the organisation. #Whatsthecatch

Job Role

The Security Operations Center (SOC) Analyst will possess in-depth knowledge on network, endpoint, threat intelligence, forensics and malware reverse engineering, as well as the functioning of specific applications or underlying IT infrastructure You will act as an incident “hunter,” not waiting for escalated incidents and be closely involved in developing, tuning and implementing threat detection analytics.

You will be responsible for providing technical support, mentoring, and acting as an escalation point for Integrity360s’ SOC Level 2 Analysts, customers, and vendors. You will be responsible for leading and delivering accurate and expedient handling of customer support requests, development and maintenance of SOC managed services and analysts, incident analysis and investigation, and customer facing escalation.
The Security Operations Center (SOC) Analyst will possess in-depth knowledge on network, endpoint, threat intelligence, forensics and malware reverse engineering, as well as the functioning of specific applications or underlying IT infrastructure You will act as an incident “hunter,” not waiting for escalated incidents and be closely involved in developing, tuning and implementing threat detection analytics.

The Level 3 analyst must remain current on cyber security trends and intelligence (open source and commercial) in order to guide the security analysis and identification capabilities of the SOC team. You will represent Integrity360 during interactions with internal and external customers/contacts in a calm and professional manner. 

Responsibilities

Responsibilities

  • Monitor all ticket queues for appropriate ticket status, update status if necessary, and provide additional assistance when needed
  • Perform Daily SOC duties or delegate efforts to Level 2 when available
  • Investigate, document, and escalate customer event and incident information within SIEM
  • (Security Information Event Management) platform and internal ticketing systems
  • Be receptive to assume responsibility for, and promptly resolve, any escalated issues that may come from SOC leadership, customers, vendors, or from within the SOC itself
  • Provide leadership and mentoring to SOC Level 2 Analysts and be the first point of escalation for Level 2 SOC Analysts during the daily work schedule
  • Follow and enhance established procedures for the assignment, acceptance and handling of support requests and trouble tickets
  • Ensures that all identified events are promptly validated and thoroughly investigated
  • Perform advanced event and incident analysis, including baseline establishment and trend analysis
  • Follow detailed operational processes and procedures to analyse, escalate, and support the remediation of security incidents
  • Provide out of hours On Call rotation support for incident investigation validation before customer escalation
  • Provide targeted attack detection and analysis, including the development of custom signatures and log queries and analytics for the identification of targeted attacks
  • Support the incident response process by providing advanced analysis services when requested to include recommending containment and remediation processes, independent analysis of security events, and reporting of identified incidents to Incident Handling (IH)
  • Fuse locally derived and externally sourced cyber threat intelligence into signatures, detection techniques, and analytics intended to detect and track the advanced threat
  • Ability to configure and develop an enterprise SIEM solution including signature tuning, development of correlation rules, reports, and alarms

Requirements

Requirements

  • Must have 6 years’ experience progressively working within the IT Security field as it relates to Security Analysis using SIEM technologies or other investigative methodologies
  • Must have demonstrated ability to lead a team in a highly demanding, fast-paced environment
  • Understanding and experience with incident response methodologies
  • Working knowledge of security issues, vulnerabilities, exploits, regulatory and legal changes, and security standards that may impact information security
  • Ability to communicate IT, networking, and security concepts to personnel at all levels of experience and responsibility
  • Knowledge of common Internet protocols and applications
  • Ability to multi-task, prioritize, and manage time effectively, within deadlines
  • Strong attention to detail
  • Excellent interpersonal skills and professional demeanour with excellent verbal and written communication skills

Preferred Certificates

Possess 2 or more of the following certifications:

  • SANS SEC503: Intrusion Detection In-Depth;
  • SANS SEC504: Hacker Tools, Techniques, Exploits and Incident Handling;
  • SANS SEC561: Intense Hands-on Pen Testing Skill Development;
  • SANS FOR610: Reverse-Engineering Malware: Malware Analysis Tools and Techniques; o Offensive Security Certified Professional (OSCP);
  • Offensive Security Exploitation Expert (OSEE);
  • Certified Expert Penetration Tester (CEPT);
  • Certified Reverse Engineering Analyst (CREA);
  • Certified Computer Forensics Examiner (CCFE);
  • Splunk Certified User or Power User, Splunk Certified Admin

Experience

What you will bring to us

  • The successful candidate must be well-versed in security operations, cyber security tools and intrusion detection with a strong grasp on IT Security methodologies and approaches
  • The ability to demonstrate a dynamic interest in solving information security issues with an analytical ability to break down problems into constituent parts.
  • Flexibility to handle several information security issues simultaneously.
  • The ability to communicate well and demonstrate a good understanding of customer issues together with the aptitude to develop a natural empathy with customers in relation to their business requirements.
  • The ability to work in a team environment and on your own initiative and the desire to work on escalated issues from other team members.
  • Excellent leadership skills
  • Highly motivated with a willingness to learn new technologies
  • Fluent English speaker.
  • A strong team player with a flexible approach
  • Can demonstrate consistency in their work attitude

More Info

Customer Service

Fanatical Customer Service isn’t just something we offer, it’s really what makes us who we are here at Integrity360. It’s the desire to do more than our clients expect us to do. Exceed their expectations. It’s our need to make a difference in the challenges our clients face – no matter how big or small. We have found that when it comes to customer service, a little fanaticism goes a long way.

Driving excellence through all our behaviours and actions to deliver an enhanced experience for our internal and external customers.

The successful candidate will embody excellent Customer Service skills as a fundamental basic or their core skill set. All candidates will be asked during the recruitment process to demonstrate a time when they delivered a Customer Service experience that could be described as Fanatical.

Apply Now For This Position