Python Job: SOC Analyst - Tier 1

Job added on

Company

Lyrical Security
Canada

Location

Remote Position
(From Everywhere/No Office Location)

Job type

Full-Time

Python Job Details

Lyrical is looking for a SOC Analyst to join our Risk Operations Centre. You have experience working in IT or a SOC, or equivalent education. You are a critical thinker, and are looking to take the next step in your cybersecurity career. This position acts as the first responder to security events, and performs triaging and analysis of attacks. You are someone who wants to grow their skills while solving complex technical issues for our clients. You’re a self-motivated individual who is interested in cyber threat research, security solutions architecture, and/or incident response.

Our hope at Lyrical is that as you grow in your career, you grow with us. We offer training and development opportunities for our SOC Analysts in the area of your choosing. Whether your long-term goals are to work as part of a red team, in digital forensics, or to lead up information security as a CISO, we want to get you there.

Lyrical Security is proud to promote a culture that truly embraces diversity, inclusion, and equality in the workplace. Having Diversity and Inclusion as part of our core values and beliefs, we foster an environment where every team member can thrive because of their differences, not despite them.

What You’ll Do:

- Perform Security Event/Threat Monitoring as part of a 24x7x365 Risk Operations Centre
- Day to day triaging of alerts, analysis, and escalating when required
- Consolidation of data to provide necessary context for escalation to tier II where necessary
- Aid in incident response for the Risk Operations Center, helping out with technical investigations of security incidents and providing customers security expertise
- Be introduced to cyber threat research and analysis for purposes of improving visibility and development of the SIEM and EDR platforms
- Aid in proactive “Threat Hunting” and investigations in the absence of any known indicator of compromise
- Contribute to the evaluation of new or updated security solutions with engineering

What You Need to Know Today:

Hands-on working knowledge with a variety of security technologies and processes including but not limited to:

- Administrative skills in operating systems such as Windows, Linux, etc.
- Knowledge of Windows Active Directory, Group Policies (PowerShell is a bonus)
- Basic knowledge of programming (Any of Python, C, C#, Java, Ruby, PHP, Go, etc.)
- Basic understanding of SIEM technologies
- Network fundamentals including OSI stack, TCP/IP, DNS, HTTP, SMTP packet capture and analysis
- Basic understanding of Cloud technologies (AWS, Google Cloud, Azure)
- Basic log analysis for Windows, Linux, Azure/O365/AWS/Google, network and end point security controls
- Understanding of Endpoint Protection and EDR technologies
- Knowledge of adversary/pentesting tooling and attack vectors preferred
- Knowledge of Living Off The Land Binary (LOLBIN) and how to identify in log analyses preferred
- Knowledge of the MITRE ATT&CK framework to understand adversaries’ tactics and techniques preferred
- Firewalls
- VPN technologies
- IDS/IPS solutions
- Web Application firewalls
- Host based intrusion detection systems
- Should have experience in incident response and a working knowledge of IT Service Management disciplines and their application to security operations.

Qualifications:

- 1-3 years of technical operations experience in Information Security, System Administration, or Network Engineering
- College Diploma or BS in Computer Science, Engineering, related discipline, or equivalent experience
- Preferred Certifications: Security+, GISF, GSEC, GCIA, CISSP, GSEC, CSA, OSCP or other industry standard certifications in information security
- Excellent written and verbal communication in English is essential to support client and internal interactions
- Applicants must be legally able to work in Canada
- Applicants should be comfortable with working rotating shifts as required

Lyrical Security offers comprehensive health and wellness benefits, training and development opportunities, and full-time remote work flexibility within Canada. Total compensation will align with skills and experience.

About Lyrical Security

Lyrical Security brings enterprise-class solutions to companies of all sizes across North America, helping our customers to protect their most critical assets with resilient cyber security risk management technology and services. We dig deeper to understand our customer’s needs and tailor solutions to detect, respond, and prevent security incidents ahead of the threat. Customers across North America trust our Managed, Advisory, Professional, and Offensive Security Services to protect their business all day, every day. For more information about us, visit Lyrical's website at www.lyricalsecurity.com.

We encourage people from underrepresented groups to apply. In keeping with our values, no employee or applicant will face discrimination/harassment based on: race, color, ancestry, national origin, religion, age, gender, marital domestic partner status, sexual orientation, gender identity, disability status, or veteran status. Lyrical Security also strives to prevent other, subtler forms of inappropriate behavior from ever gaining a foothold in our organization. Whether blatant or hidden, barriers to success have no place at Lyrical Security.

Job Type: Full-time

Salary: $60,000.00-$70,000.00 per year