Security Operations Center (SOC) Analyst
- Lahore, Punjab, Pakistan
- Full-time
- Engineering/ Development
Position Overview:
As a SOC Analyst focused on 24/7 SOC 2 Type 2 Controls Monitoring, you will be responsible for monitoring, analyzing, and responding to security events and incidents, with a specific emphasis on ensuring compliance with SOC 2 Type 2 controls. The ideal candidate will have a strong background in information security, experience in a 24/7 operational environment, and a deep understanding of SOC 2 Type 2 requirements.
Key Responsibilities:
1. Continuous Monitoring:
- Monitor security alerts and events around the clock to identify and respond to potential security incidents.
- Conduct real-time analysis of security alerts and incidents, including log correlation and threat intelligence.
2. SOC 2 Type 2 Compliance:
- Ensure ongoing adherence to SOC 2 Type 2 controls and requirements.
- Participate in the development and maintenance of security policies and procedures aligned with SOC 2 standards.
3. Incident Response:
- Execute incident response procedures to contain, eradicate, and recover from security incidents promptly.
- Collaborate with cross-functional teams to investigate and resolve security incidents.
4. Security Tools Management:
- Utilize and maintain security tools such as SIEM, IDS/IPS, and other relevant technologies to enhance monitoring capabilities.
- Evaluate and recommend improvements to existing security controls.
5. Documentation and Reporting:
- Document security incidents, investigations, and related activities thoroughly.
- Generate regular reports on security metrics and compliance status for management.
6. Collaboration and Communication:
- Collaborate with internal teams to enhance security awareness and promote a security-conscious culture.
- Communicate effectively with stakeholders regarding security incidents and status updates.
7. Training and Development:
- Stay current with industry trends, emerging threats, and new technologies.
- Participate in training and development activities to enhance skills and knowledge.
Qualifications:
- Bachelor's degree in Information Security, Computer Science, or a related field.
- Proven experience in a SOC environment, preferably with a focus on SOC 2 Type 2 controls.
- Familiarity with relevant frameworks and standards (e.g., NIST, ISO 27001).
- Strong analytical and problem-solving skills.
- Excellent communication and collaboration abilities.
- Certifications such as CISSP, CISM, or GIAC are a plus.