SOC Analyst at Rush Street Interactive
Canada, Ontario, Canada -
Full Time


Start Date

Immediate

Expiry Date

03 Jan, 27

Salary

65000.0

Posted On

05 Oct, 26

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Industry

Information Technology & Services

Description

Monitor SIEM and other security platforms, reviewing logs, events, and alerts for suspicious or anomalous activity


Investigate and classify security alerts and anomalies, eliminate false positives, correlate activity with known attack patterns, and prioritize confirmed incidents based on severity and potential impact

Respond promptly to security incidents by following established incident response playbooks


Own the creation, maintenance, and continuous improvement of playbooks and other relevant documentation, including policies and procedures

Participate in the vulnerability management process


Collaborate with internal stakeholders to support incident response and threat mitigation efforts, including correlating alerts with known attack patterns

Maintain and tune security monitoring systems and detection rules, identify detection coverage gaps, and recommend or implement enhancements

Document incidents, findings, and remediation steps in detailed reports


Support forensic investigations and evidence collection when required


Qualification


Represents the skills you have

Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.


Security Operations Center Processes

SIEM ManagementXDR

Vulnerability Scanning

Network InfrastructureGSECGCIH

CompTIA CertificationsBTL1BTL2ITILClient Relationship ManagementRequired

Bachelor's degreein information technology, Information Security, or a related field,orequivalent relevant work experience

2+ years of experience in a cybersecurity role

GSEC, GCIH, CompTIA, BTL1, BTL2 or relevant cybersecurity vendor certificates

Experience with security operations center processes

Experience in documenting andmaintainingprocesses and procedures

Hands-on experience with SIEM management, Vulnerability Scanners and XDR tools

Knowledge of network infrastructure, including routers, switches, firewalls, VPN, and associated network protocols and concepts

Strong team-oriented interpersonal skills, with the ability tointerface effectively witha broad range of people and roles, including vendors and both technical and non-technical audiences

Strong client focus, with the ability to manage expectations appropriately; provide a superior customer/client experience and build long-term relationships

Able to travel occasionally both domestically and internationally #LI-REMOTE

Open to candidates in eligible locations in the Continental US or Canada

Responsibilities
Loading...