Senior SOC Engineer
CVS HealthFull Time
Senior (5 to 8 years)
Candidates must have at least 6 years of experience in a SOC, Incident Response, or Forensics role. They should possess the ability to clearly explain complex alerts and events both verbally and in writing. Proven mentoring skills for junior team members are essential, along with a solid understanding of Malware Analysis, including configuring analysis VMs, identifying file formats, and performing static and dynamic analysis. Demonstrated experience with Windows and/or MacOS as an attack surface, and a strong understanding of Threat Actor Tools and techniques, including the MITRE ATT&CK Framework, PowerShell, Command Prompt, WMIC, Scheduled Tasks, SCM, Windows Domain and host enumeration techniques, basic lateral movement, persistence, and defense evasion techniques, are also required.
The Principal Security Operations Analyst will triage, investigate, respond to, and remediate intrusions daily. They will serve as the lead liaison between the SOC and other Product and Research teams, and build automation through report template creation to reduce SOC workload. Responsibilities include owning and completing investigative objectives for multi-host intrusions independently, performing tactical forensic analysis and providing remediation, and conducting advanced malware analysis. The role also involves investigating suspicious Microsoft M365 activity, assisting with escalations from product support, engaging with customers to explain observed activity, contributing to detection efforts by creating and tuning detections, providing technical mentorship to junior team members, and contributing to external content such as blogs and webinars.
Managed endpoint detection and response services
Huntress provides managed endpoint detection and response (EDR) services to protect businesses from cyber threats, particularly ransomware. Their service includes 24/7 monitoring of clients' systems to identify potential cyberattacks. When a threat is detected, their team of security experts verifies the activity and alerts the client only if necessary, reducing the number of false positives that can occur with other services. In addition to threat hunting, Huntress offers security awareness training and resources like eBooks and webinars to educate employees about cybersecurity risks. Their commitment to high customer support and personalized reporting distinguishes them from competitors in the cybersecurity field. The goal of Huntress is to enhance the security posture of businesses by providing effective monitoring and education against cyber threats.