remote
Security Operations Center Analyst - Booz Allen Hamilton
Systems Engineer
Monitor, detect, and respond to cyber threats in real time as a SOC Analyst, leveraging SIEM platforms, incident response processes, and threat‑hunting techniques to protect critical infrastructure.
About the role
Key Responsibilities
- Continuously monitor security alerts across SIEM tools and other detection platforms to identify potential incidents.
- Investigate, triage, and respond to security events, performing root‑cause analysis and containment actions.
- Conduct threat‑hunting activities and malware analysis to uncover hidden adversary activity.
- Collaborate with cross‑functional teams to develop and implement remediation steps, ensuring rapid restoration of services.
- Document incidents, create post‑mortem reports, and contribute to the improvement of security processes and playbooks.
Requirements
- 2+ years of hands‑on experience in a Security Operations Center or similar environment.
- Proficiency with SIEM solutions (e.g., Splunk, QRadar, ArcSight) and incident‑response workflows.
- Strong knowledge of Windows and Linux operating systems, networking protocols, and common attack vectors.
- Experience with scripting or programming languages such as Python for automation and analysis.
- Relevant certifications (e.g., CompTIA Security+, GSEC, CISSP) are a plus.