Position Overview:
As a SOC Analyst at viLogics , you are a front-line cyber defender operating within the Total Secure Office 365 (TSO 365) framework—our fully managed cybersecurity and IT services platform. In this MSSP (Managed Security Services Provider) environment, you will work alongside elite engineers to deliver continuous threat detection, incident response, and risk mitigation for our clients, across industries ranging from healthcare and education to manufacturing and state/local government.
This role requires deep analytical skills, collaborative instincts, and operational fluency in cloud, hybrid, and on-prem environments. Analysts must be comfortable supporting viLogics ’ proprietary FastTrack Cybersecurity Model, which includes fully integrated MDR/XDR, SIEM, SASE, PAM, and secure backup platforms.
Core Responsibilities:
🔍 Security Monitoring & Threat Detection
- Monitor endpoints, servers, SaaS platforms (e.g., M365), and cloud workloads via viLogics integrated MDR/XDR platform.
- Analyze events from viLogics ' SIEM/SOAR environment and escalate based on criticality and workflows.
- Apply threat intelligence feeds, MITRE ATT&CK mapping, and behavioral analytics to detect advanced persistent threats (APTs), ransomware, and zero-day exploits.
⚠️ Incident Triage & Response
- Lead real-time response to Tier 1 and Tier 2 security events using viLogics ' TSO toolkits, including playbook-driven SOAR workflows.
- Document incident reports with impact assessments and recommended mitigations; coordinate remediation with client IT teams or viLogics ’ Helpdesk.
- Participate in post-incident reviews, ensuring lessons learned are documented and improvements applied to IR playbooks.
🛠️ Operational Excellence & Automation
- Tune correlation rules, detection logic, and alert thresholds to align with client risk profiles and compliance requirements (HIPAA, CMMC, PCI, etc.).
- Recommend improvements for automated containment workflows (quarantining hosts, revoking credentials, etc.).
- Assist with purple team exercises and tabletop simulations facilitated under viLogics ’ cyber readiness engagements.
🧩 Client-Facing Collaboration
- Participate in monthly client briefings to review detected threats, trends, and security posture improvements.
- Translate complex technical findings into executive-level insights during client calls and compliance audits.
- Provide risk prioritization to clients leveraging viLogics ’ Cyber Exposure Index and SaaS Alert integrations.
Toolsets You’ll Work With:
- SIEM/SOAR: viLogics Internal SIEM/SOAR, Microsoft Sentinel, Splunk, LogRhythm, Cortex XSOAR
- EDR/XDR/MDR: viLogics EDR, SentinelOne, Defender for Endpoint, Huntress, CrowdS