02 MarPosition: Incident Detection (SOC)Location: Plano, TXJob Type: Full-time, ContractWork Remotely: Temporarily due to COVID-19 SummaryThe Incident Detection role helps security operations by responding to escalated alerts and monitoring alerts. This position conducts in-depth analysis of security events with the specific ability to identify Indicators of Compromise, perform intrusion scope and root cause analyses and implement triaging protocols to mitigate potential damage to our cyber ecosystem. Essential Duties Include But Not Are Limited To: Conducts Event Detection, Incident Triage, Incident. Handling, Hunting activities by leveraging our detection/response platforms Continuously monitors levels of service as well as interpret and prioritize threats through use of cyber threat intelligence, intrusion detection systems, firewalls and other boundary protection devices, and any security incident management products deployed Provide 24x7 incident detection and monitoring service, and performance report on regular basis Escalates cyber security events according to playbook and standard operation procedures (SOPs). Remediate non-compliance with technical and security requirements. Escalates high or critical severity level incidents to Incident Investigators. Assists with containment of threats and remediation of environment during or after an incident Performs triage of service requests from customers and internal teams Develop and implement remediation plans in response to incidents Updates procedures and configure tools for Monitoring Analysts consumption Consumes threat intelligence and disseminate findings to relevant parties Conducts hunting activities based on internal and external threat intelligence Integration of additional supported log source/device and development of new use cases as required MINIMUM QUALIFICATION Has to be flexible and be available for the various shift (our day shift is: 6am to 6pm, and the night shift is: 6pm to 6am as we run 24/7 SOC operation, and that includes on weekends as well. It will be 2 days off then 2-3 days on. Day and night shift would rotate every few months.) 8+ years cyber security experience required 3+ years of experience in incident response handling BA/BS in Engineering, Computer Science, Information Security, or Information Systems or related work experience 2+ years of experience using event escalation and reporting procedures, managing security alerts within enterprise SIEM systems, and performing network monitoring in a Cyber Security?Operations environment Working knowledge of security technologies such as Active Directory, anti-malware tools, forensics tools, firewalls, identity access management, IDS / IPS, multi-factor authentication, network devices, SIEM, threat intelligence, vulnerability scanners, monitoring tools, and web filters on premise and in cloud environments required Demonstrated analytical, problem-solving, and critical thinking skills required Ability to work with little supervision and consistently deliver results required Familiarity with network technologies and protocols (switches, routers, firewalls, VPNs, remote connection technologies, and multiple domain environments) strongly preferred PREFFERED QUALIFICATION Experience with Splunk and other SIEM platforms, Enterprise Intrusion Prevention Systems, Endpoint Detection tools, and other security products Experience conducting incident handling and response efforts in large enterprise environments Experience supporting incident investigations Experience working in a 24/7 SOC environment Security certifications (e.g. Security+, Network+, CEH, SANS etc.) At Advantage Resourcing, our primary objective is to perfectly align the best people with the appropriate jobs. These jobs may be temporary assignments or career positions. We place talented people in a wide variety of jobs working with our client companies in areas such as: engineering, IT, technical, manufacturing, skilled trades, distribution, call centers, clerical, accounting, finance and sales.Our strength is being able to solve our client's workforce needs by matching people that have the right skills, knowledge and motivation to each opportunity. Advantage Resourcing can help you discover the personal and career success you desire.Advantage Resourcing Americas, Inc. is an Equal Opportunity Employer offering employment without regard for race, color, religious creed, national origin, ancestry, gender, marital status, age, sexual orientation, sex, gender identity, disability, veteran status, or other legally protected categories. Advantage Resourcing is a VEVRAA Federal Contractor.