SOC Analyst
at Ekco
3905 Veenendaal, Utrecht, Netherlands -
Start Date | Expiry Date | Salary | Posted On | Experience | Skills | Telecommute | Sponsor Visa |
---|---|---|---|---|---|---|---|
Immediate | 23 Apr, 2025 | Not Specified | 23 Jan, 2025 | N/A | Good communication skills | No | No |
Required Visa Status:
Citizen | GC |
US Citizen | Student Visa |
H1B | CPT |
OPT | H4 Spouse of H1B |
GC Green Card |
Employment Type:
Full Time | Part Time |
Permanent | Independent - 1099 |
Contract – W2 | C2H Independent |
C2H W2 | Contract – Corp 2 Corp |
Contract to Hire – Corp 2 Corp |
Description:
ABOUT EKCO
Founded in 2016 Ekco is now one of the fastest growing cloud solution providers in Europe!
We specialise in enabling companies to progress along the path of cloud maturity, managing transformation and driving better outcomes from our clients’ existing technology investments.
️ In a few words, we take businesses to the cloud and back!
We have over 1000 highly talented and supportive colleagues (and counting) across a number of regional offices in the UK, Benelux & Ireland.
Responsibilities:
THE ROLE
Reporting to the regional Security Operations Lead, the role of the SOC Analyst is to apply the understanding of investigative techniques and analytical skills, to defend against and respond to cybersecurity events and incidents in our client’s IT environments.
You will support clients by ensuring they remain secure. You will work as part of a team to deliver monitoring and protection in both a reactive and proactive manner. You will also be responsible for rolling out security tools including creating documentation.
SOC Analysts at Ekco are operationally focused; they secure and monitor systems using advanced toolsets, to prevent security breaches and to respond to incidents as they arise.
DAY TO DAY YOUR ROLE WILL INVOLVE:
- Performing accurate and precise real-time analysis and correlation of logs/alerts from a multitude of client systems.
- Analysing and assessing security incidents and advancing to client resources or collaborating with internal teams for additional assistance
- Determining if events constitute security incidents e.g.: security events and incidents from SIEM, Firewall (FW), Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Antivirus (AV), Directory Servers, Network Access Control (NAC) and other client data sources.
- Assigning and escalating tickets in accordance with defined SLA’s.
- Recommending tuning for security engineers to develop/adjust SIEM rules and reduce false positives.
- Raising incidents to appropriate Seniors or Incident Response for major security issues.
- Recognising potential; successful; and unsuccessful intrusion attempts and compromises thorough reviewing and analysing relevant event detail and summary information
- Monitor identity and access management, including monitoring for abuse of permissions by authorised system users.
- Participate in cyber-security exercises and training – Blue-Teaming
- Deliver best in class customer service, communicating with clients frequently
- Responding to inbound requests via phone, emails or tickets
- Documenting actions in cases to effectively communicate information internally and to client.
- Reporting common and repeat problems (trend analysis) to management and propose process and technical improvements.
- Providing cover in line with rotating shift patterns. You should be flexible to rotating 12 hour shifts. We provide 24/7 cover to clients and shifts are allocated accordingly.
- Performing other duties as assigned.
REQUIREMENT SUMMARY
Min:N/AMax:5.0 year(s)
Information Technology/IT
IT Software - Network Administration / Security
Other
Graduate
Proficient
1
3905 Veenendaal, Netherlands