Optiv

Associate SOC Engineer | Remote, USA

Leawood KansasFull timePosted 12 days ago
Apply on Optiv →

Sign into see who you know at Optiv.

The Associate SOC Engineer will be responsible for updating customer work requests and following operating procedures to perform MSS support tasks including health checks, reporting, work ticket acknowledgment and assignment, basic troubleshooting and other tasks as required for MSS service health and operation.  The Associate SOC Engineer will contribute to the development of knowledge base and troubleshooting information to expand the efficiency and performance of MSS services. This role requires the ability to develop skills on multiple security products and work closely with the staff of higher tiers, Service Delivery, and clients to provide ongoing communication of status and timely response to MSS service tickets. This is a third shift position working overnight Wednesday-Saturday.How you'll make an impact:Serve as a primary responder for Cyber Operations client systems, taking ownership of client configuration issues and tracking through resolutionAct as a point of escalation for other Engineers (Associate Engineer) and provide guidance and mentoring.Advise best practice on SIEM and Enterprise Security products to both technical and relatively non-technical personnelProvide remote consulting services via interactive client sessions to assist with implementation of multiple product vendors and technologiesImplement and configure discipline software and appliance-based products in large enterprise environmentsDevelop and maintain content and reportingProvide escalation support to Tier 1 and 2 for Authorized Support Customers, following processes and interacting appropriately with both customers and partners when requiredPerform knowledge transfers to clients regarding security and system configuration awarenessPerforms other duties as assignedComplies with all policies and standardsWhat we're looking for:Bachelor's Degree in Information System, Security or Networking or Associate’s degree in above field with equivalent experience required2-4 years experience in discipline domain requiredGeneral security knowledge (IT knowledge, Network Troubleshooting, Cloud Certification, and other IT experience) Upon Hire preferredCCNA, SentinelOne, CrowdStrike, MS Sentinel, Splunk or MCSE Upon Hire preferred.CompTIA Security+ and/or Network+ upon hire preferredExperience working with Internal and client Ticketing and Knowledge Base Systems for Incident and Problem tracking as well as procedures. (i.e. Service Now, Jira, Confluence, etc.)Practical knowledge and sufficient experience with TCP/IP networking and network protocols (basic understanding of OSI model)Knowledge of Linux and Windows Operating SystemsAn understanding of a wide array of server grade applications such as: DBMS, DNS, SMTP, IIS, Apache, SharePoint, Active Directory, Identity Management, Patch Management, LDAP, SQL, AntiVirus.Training and experience in one or more non-SIEM network security products to include: Enterprise endpoint security products, such as SentinelOne, Crowd...