Conduct in-depth security event analysis, identify complex attack patterns, and escalate critical incidents. Create detailed incident reports and contribute to lessons-learned documentation. Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned.
Key Highlights
Key Responsibilities
Technical Skills Required
Benefits & Perks
Nice to Have
Job Description
Dice is the leading career destination for tech experts at every stage of their careers. Our client, Abacus Service Corporation, is seeking the following. Apply via Dice today!
Position: Security Analyst/Engineer
Location: Columbia, SC (100% Remote)
Contract: 12+ Months
Client: State of SC (United States Department of Health and Human Services)
Description:
- Continuously review and correlate security event data across SIEM, EDR, IDS/IPS, and threat intelligence sources to identify complex attack patterns, emerging threats, and security incidents.
- Perform deep-dive analysis of suspicious activity, validate incidents, determine root cause and impact, and escalate critical incidents with detailed context to Tier 3 as required.
- Create detailed incident reports, timelines, and post-incident summaries; contribute to lessons-learned documentation and recommendations for remediation and preventative measures.
- Investigate user-reported phishing, malware infections, and potential policy violations; advise users and internal/external teams on containment and recovery actions.
- Recommend updates to SOC playbooks and workflows based on real-world INVESTIGATIONS, fine-tune detection rules. Alert thresholds, and correlation logic to reduce false positives and improve threat coverage.
- Collaborate with engineering teams to ensure monitoring tools are properly configured and tuned. Integrate new threat intelligence feeds into workflows and proactively hunt for threats using up-to date tactics, techniques, and procedures (TTPs)
- Serve as a customer-facing SME, "selling” the value of Client services by demonstrating
Interested in remote work opportunities in Cyber Security? Discover Cyber Security Remote Jobs featuring exclusive positions from top companies that offer flexible work arrangements.
- Document processes, runbooks, and troubleshooting steps related to SOC operations.
- Coordinate with engineering, SOC, and agency staff as needed to meet goals.
- Other duties as needed.
- 2+ Years of Experience with Security Monitoring and Incident Response.
- 2+ Years of Experience with MITRE Telecommunication &CK framework.
- 2+ Years of Experience with dashboard creation and reporting.
- Associate''s degree in an information technology or information security related field
- Four years of relevant work experience may be substituted in lieu of education
- Two years of experience in supporting large soc operations.
Browse our curated collection of remote jobs across all categories and industries, featuring positions from top companies worldwide.
- Experience with the Palo Alto Cortex XSIAM/XDR platform.
- Knowledge of Linux, network administration and network design.
- Experience in administration of firewalls, VPN technology, Active Directory, Intrusion Detection/Prevention systems.
- Candidate is local to Columbia, SC or surrounding city in South Carolina
- CISSP, CISA, CISO or equivalent advanced security certification.
- Additional relevant certifications (e.g., CEH, OSCP, GPEN).
- Vendor certifications related to information security.
Similar Jobs
Explore other opportunities that match your interests
Cybersecurity & Identity Protection Engineer
BLACKCLOAK
D&H Distributing