SOC Analyst supporting 24/7 operational capabilities in cybersecurity at Starling. Collaborating with global teams to protect customers and assets through incident response and investigations.
Responsibilities
Supporting 24/7 operational capabilities alongside UK colleagues
Incident Triage, Response, and Investigations based on Alerts received
Investigating and responding to security alerts raised by Users
Enhancing and creating analytic triggers to enhance alert efficacy
Continuous development of incident handling and readiness processes
Proactive threat hunting based on threat intelligence
Documentation of incidents and investigations
Requirements
3+ years experience in an in-house SOC role and team
Understanding of AWS Security Solutions (or other Public Cloud Solutions)
Analysis and Incident Response experience with Cloud systems (GCP, AWS)
Experience working and supporting analytics/SIEM platforms.
Experience supporting and conducting Incident Response engagements.
Experience in endpoint based investigations.
Experience in cloud based investigations.
Experience with Incident Command and conducting Tabletop Exercises.
Excellent communication skills (both verbal and written), ability to communicate technical concepts to both technical and non-technical audiences.
Demonstrated teamwork and collaboration skills as part of a multi-functional team
Time management, problem-solving and interpersonal skills.
Eagerness to learn and apply knowledge to new security challenges.
Willingness to share knowledge with the team and mentor colleagues.
A high level understanding of mobile, network and operating system security controls.
Preferred
3+ years experience in a cyber incident response and digital forensics function
SOC analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Investigating escalated alerts and improving 24×7 security operations.
SOC cybersecurity analyst monitoring and responding to cyber threats for Wepoint’s digital transformation clients. Improving 24×7 detection, investigation, and incident response capabilities.
Senior Security Operations Engineer monitoring incidents and leading forensics for Samsara’s IoT - connected operations platform. Building security automation and supporting insider - threat investigations.
Senior SOC analyst leading threat detection, investigations, and incident response for Financeit, a Canadian point - of - sale financing provider. Building its new SOC’s automation, AI - threat coverage, and operational standards.
Security Operations Engineer securing Tailscale’s software for safe device and network connections. Managing endpoints, identity access, platforms, automation, and data loss prevention.