Jobs and Careers
JL

Senior Security Operations Center (SOC) Analyst - Tier II

JLL
United Statesfull_timeVerifiedPosted 13 Mar 2024
💰 $160,000/yr($140,000/yr$160,000/yr)

About the role

JLL supports the Whole You, personally and professionally.


Our people at JLL are shaping the future of real estate for a better world by combining world class services, advisory and technology to our clients. We are committed to hiring the best, most talented people in our industry; and we support them through professional growth, flexibility, and personalized benefits to manage life in and outside of work.  Whether you’ve got deep experience in commercial real estate, skilled trades, and technology, or you’re looking to apply your relevant experience to a new industry, we empower you to shape a brighter way forward so you can thrive professionally and personally.

What this job involves:

About the role

#JLLTechAmbitions
 

Jones Lang LaSalle, an international commercial real estate firm, is looking for a Senior Security Operations Center (SOC) Analyst to respond to threats faced by the organization. This position is accountable and responsible for responding to alerts and incidents generated by JLL security controls and employee submissions.  The position is also responsible for escalating identified critical issues to the Incident Response Team. This analyst will support pivotal Global Cyber Defense capabilities by responding to any and all cyber threats that JLL faces. This role is a highly dynamic role that will require not only strong leadership and interpersonal skills, but also advanced technical ability and understanding to support threat response and incident investigations. Additionally, with the level of integration between core ops functions, they must facilitate robust communications between other teams within the cybersecurity organization.

This position will report directly to the Senior Director of Threat Defense and Response and in addition, interface regularly with senior leaders such as the global CISO, various business lines, and technical engineers. A successful candidate must have great leadership experience while being detail oriented and capable of operating in an extremely dynamic environment.

This position can be completed remotely from any state within the United States.

Responsibilities

  • Responding to security control alerts and employee submissions while performing the collection, triaging, and analysis of alerts generated by JLL systems.
  • Assisting other SOC Analysts and Incident Responders while responding to advanced attacks/incidents.
  • Staying up to date with emerging threats and vulnerabilities to improve JLL’s threat response capabilities.
  • Tracking key metrics and continually improving ability to measure and monitor the maturity and performance of the overall threat response program.
  • Recommending control and defensive measures to protect the organization from advanced threat actor tactics. 
  • Coordinating efforts to automate repeatable scenarios using SOAR playbooks and native programming tools like Python.
  • Assisting with defining, creating, and maintaining SIEM detection rules and dashboards
  • Mentoring junior Security Operations Center Analysts

Sounds like you? To apply you need to be:

Experience & Education

  • Bachelor’s degree in information technology or Cybersecurity field (or equivalent experience)
  • 2-4 years Cybersecurity experience, preferably in a SOC or Cybersecurity Analyst role.
  • Strong appreciation and demonstrated ability to harness automation and custom tooling to streamline response and data collection.
  • Advanced working knowledge of Cybersecurity prevention, detection, and response capabilities such as, but not limited to: AV, EDR, SIEM, digital forensics suites, IPS, and WAF.
  • Proficiency with multiple operating systems, as well as multiple cloud environments such as but not limited to: Windows, Mac, Linux, Azure, GCP, AWS, and O365.
  • Familiarity with Cybersecurity industry best practices, frameworks, and methodologies such as but not limited to: NIST 800-53, ISO 27001, MITRE ATT&CK, CIS.
  • Industry recognized certifications (or industry experience/education) such as but not limited to: BTL1, C|SA, GSOC, GCFE, GCIH, and CEH.
  • Excellent communication and collaboration skills.

Technical Skills & Competencies

  • Ability to respond to highly technical alerts and incidents.
  • Ability to trace down an endpoint on the network, based on ticket or alert information.
  • Familiarity with system log information and what it means.
  • Understanding of common network services (web, mail, DNS, RDP, etc.).
  • General Desktop OS and Server OS knowledge.
  • TCP/IP, Internet Routing, UNIX / LINUX, Mac, & Windows
  • Ability to investigate and utilize SOAR, creation of SOAR playbooks is a plus
  • Experience in automation of security incidents is a plus
  • Experien

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

JLL

View company profile →