Jobs and Careers
CO
Cyber Security SOC Engineer
CoretelligentUnited States, United Statesfull_timeVerifiedPosted 29 Aug 2024
💰 $135,000/yr($110,000/yr – $135,000/yr)
About the role
Founded in 2006, Coretelligent is a provider of comprehensive managed IT solutions, specializing in areas like cybersecurity, private cloud services, IT planning and strategy, and backup and disaster recovery. We cater to industries such as financial services, life sciences, technology, and professional services. The company has been recognized for its achievements, including being named to Inc. magazine’s Power Partner Awards and as AT&T Cybersecurity North American Partner of the Year for 2023. Coretelligent focuses on meeting regulatory requirements and ensuring clients' IT platforms are robust and compliant. We have a significant presence across various U.S. locations and offer co-managed IT solutions as well. .JOB OVERVIEW:
- The Cybersecurity SOC Engineer will play a critical role in implementing and maintaining security solutions to protect Coretelligent's clients' networks, systems, and data. This position will work closely with the security team (SOC) to identify vulnerabilities, respond to incidents, and support customer deployments and configurations.
- This position will also meet with customer contacts during initial service onboarding and throughout the account lifecycle to review service details and maintain client satisfaction.
- SIEM/XDR
- Participate in a team to review and analyze client alerts
- Deploy and configure XDR deployments
- Develop and update SIEM & XDR detection rules and automated playbooks
- Incident Response
- Participate in client incident response efforts as a technical contributor and incident manager
- As part of a team and across departments, provide incident response following the SANS 6-step IR process
- Internal and Client Communication
- Meet with clients regularly to discuss service levels, reports, trends
- Provide guidance to SOC Analysts
- Vulnerability Management
- Deploy, configure, and review the results of vulnerability scanning tools
- Determine which vulnerabilities need remediation and communicate those priorities to technical teams
- Infrastructure Management
- Deploy, upgrade, and troubleshoot VMware ESXi virtual appliances required for the SIEM and XDR platforms
- Configure infrastructure devices and cloud applications to send syslog to platform
- Configure switching infrastructure for port-mirroring/SPAN port traffic monitoring
- 3-4 years of relevant experience
- Excellent verbal and written communication
- Relevant cybersecurity certifications (CySA+, Sec+, PenTest+, or GIAC equivalent)
- Understanding of security tools and technologies
- Networking knowledge and experience
- Scripting knowledge (Python, PowerShell, etc.) and familiarity with updating queries
- Cloud security knowledge (Azure, AWS, GCP)
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s