Position responsibilities:
- Assists in the ongoing development and improvement of Security Tools
- Serve as a technical point contact for enterprise
- Collaborate with L3 analysts and service line owners to ensure SOC tools are available and in good hygiene
- Conduct regular review of coverage zones and makes recommendations on alerting priority and strategy
- Work inbound security events - incidents and develops SIEM use cases
- Maintain and enforce adherence to corporate and SOC standards, processes, and procedures
- Identifies automation opportunities
- Participate in our global on call
- Mentors Junior analysts and conducts regular lunch and learns with analysts
- Design internal processes and workflows
- Review and modify security monitoring toolsets to ensure high fidelity alerting
- Enhance current processes and procedures to improve enterprise security service delivery
- Perform quality review of tickets for documentation compliance, accuracy, and consistency
Qualifications:
- Working knowledge of at least two of the following: Network Security, Endpoint Security, Cloud Security, Database Security, Use case Development or documentation
- The candidate should be familiar with handling cybersecurity events and incidents
- 2+ years of technical writing experience
- Experience in one or more monitoring zones (endpoint, network, application, web, cloud, database)
- Relevant security certifications such as :(GCIH, CISA, GIAC, GMON, OSCP, GCFA)
- Proficiency investigating security events and incidents from the point of discovery to remediation
- Experience with ticketing and case management solutions
- Experience with next generation security tools
- Experience analyzing logs in a SIEM
- Excellent problem-solving and technical skills
- 4 year degree in computer science or related field or equivalent experience
- 5+ years relevant experience in cyber security
- 3+ years experience in Security Operations or Incident Response
- Work Arrangement: Hybrid (2 days onsite, 3 days remote)
- Schedule: Shifting, based on business or client requirements
Top Skills
What We Do
Aprio is a premier CPA and business advisory firm that advises clients and associates on how to achieve what’s next. Aprio’s associates work as integrated teams across advisory, assurance, tax, outsourcing, staffing and private client services, bringing the best thinking and personal commitment to each client. Across practices, Aprio brings together proven expertise, deep understanding and strategic foresight for industries including Manufacturing and Distribution; Non-Profit and Education; Professional Services; Real Estate and Construction; Retail, Franchise and Hospitality; and Technology and Blockchain.
Headquartered in Atlanta, Georgia, Aprio has grown to over 1,000+ team members. To serve clients wherever life or business may take them, Aprio’s teams speak more than 30 languages and work with clients in over 50 countries.