TC-CS-CDR-SOC Analyst-Senior
Job description
At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all.
Job Profile Name: Senior Incident Response Analyst
Job Profile Summary
To provide security monitoring and support to Client's technology platforms, network, applications, crew, and environments in response to incidents of varying severity and perform other security monitoring/incident response functions as needed.
Job Description
Duties and Responsibilities:
- Operate as second level support to a 24x7 managed security operations centre.
- Alert clients regarding intrusions and potential intrusions that may compromise their network infrastructure.
- Maintain an inventory of the procedures used by the SOC and regularly evaluate the SOC procedures and add, remove, and update the procedures as appropriate
- Takes a proactive role in the resolution of incidents, even after they are escalated
- Work on assigned ticket queue
- Understanding and exceeding expectations on all tasked SLA commitments
- Track and report on closure of tickets as per SLAs
- Escalating issues to Level 2 or Level 3 and management when necessary
- Providing daily and weekly reports on security and vulnerability incidents
- Working in shift teams
- Adheres to Client Information Security policies and departmental procedures, along with following industry best practices.
- Works with other departments (within and outside of Information Security) to communicate appropriate and consistent security requirements.
- Should independently manage the assigned project/engagement with minimal oversight/guidance from the manager.
Qualifications:
- Undergraduate degree in information/cyber security, an information technology-related field or equivalent combination of training, certifications, and experience.
- 3-6 years related experience.
- CompTIA Security+, ISC2 CISSP, SANS, or other similar certifications are a plus but not required.
- Knowledge of security concepts, theories, and best practices.
- Ability to analyze and demonstrate problem resolution skills.
- Demonstrated ability to work collaboratively as well as independently, with attention to detail.
- Demonstrated ability to be flexible and exercise good judgment.
- Demonstrated strong organization and time management skills.
- Strong verbal, written and interpersonal communication skills.
- Ability to deal effectively with various levels of business unit crew and management.
- Experience on SIEM, SOAR and EDR/XDR is must.
Special Factors:
- Weekend availability/flexibility to work weekends is a MUST.
- Willing to support US shift (Night shift)
EY | Building a better working world
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.