← all jobs

SOC Analyst - Endpoint Detection & Response

Work from home Full-time role Hiring

About the position Seeking an SOC Analyst that possesses strong expertise in Endpoint Detection and Response (EDR) tools and cyber-security incident handling. The resource will be expected to provide security monitoring and response efforts for, and in coordination with the SOC. This is a remote position.

Responsibilities

  • Monitor, analyze, and respond to cyber-security events, alerts, and incidents affecting State of Iowa IT systems.
  • Take appropriate actions to protect IT assets from potential incidents and threats.
  • Document and report changes, trends, and implications related to evolving cyber-security tools, systems, and solutions.
  • Follow SOC processes and assist ISD Security Engineers and OCIO support teams during alerts, events, and incidents.
  • Submit new events and update existing events within the SOC ticketing system.
  • Provide phone and email support to state agencies and participating partners during alerts, events, and incidents.
  • Provide off‑hours or ad‑hoc shift support as required.
  • Support Tier 1 SOC Analysts in triaging cyber-security events, alerts, and incidents.
  • Follow detailed operational procedures to analyze, escalate, and support remediation of critical security incidents.
  • Assist with SOC metrics, reporting, and communications.
  • Support incident response activities up to the preliminary forensics stage.
  • Monitor EDR tools and perform initial assessment and data gathering for alerts.

Requirements

  • Strong communication, reporting, and documentation abilities.
  • Proven ability to collaborate effectively with partners across varying technical backgrounds.
  • Capability to perform Tier 1 troubleshooting, including log collection, documentation review, and appropriate escalation.
  • Maintain up‑to‑date knowledge on relevant cyber-security technologies and tools.
  • Hands on experience working with Endpoint Detection and Response (EDR) tools (3 years)
  • Experience responding to cyber security events and incidents (3 years)
  • Experience working with Crowdstrike, or comparable EDR tool (3 years)
  • Ability to work in high pressure, fast paced environments (3 years)

Benefits

  • Paid Sick Time
  • Insurance for Medical, Dental, Vision and Life Available
  • 401(k) including Employer Match
  • HSA, Short-term & Long-term Disability Available Apply To this Job

More open positions

Night Shift SOC Analyst - Level 1

Work from home Full-time role

PSM Coordinator

Work from home Full-time role

Account Representative - Core Safety, 3M Personal Safety Division (Idaho and Montana)

Work from home Full-time role

Environmental Health & Safety Lead

Work from home Full-time role

SOC Analyst IV

Work from home Full-time role

Consultant - Cloud Architect

Work from home Full-time role

Azure Build Engineer/ Remote (PST )6+ Months ( Could go long-term )

Work from home Full-time role

Experienced Customer Service Representative – Remote Opportunity at careerzynith

Work from home Full-time role

[Remote] Reporting Analyst

Work from home Full-time role

Director, Experimental Medicine - Medical Writing - Remote

Work from home Full-time role

Director Regional Admissions

Work from home Full-time role

Insurance Agent Role – Work From Home

Work from home Full-time role

Assoc Analyst Business Operations

Work from home Full-time role

Title Examiner Residential & Commercial (Remote)

Work from home Full-time role

Systems Engineer

Work from home Full-time role

AI Product Manager / Owner

Work from home Full-time role

Senior Voice and Clinical Communications Engineer - Remote

Work from home Full-time role

Senior Design Verification Engineer

Work from home Full-time role

US English Voice Actors Needed for Dubbing & Lip Sync Project

Work from home Full-time role

Experienced Data Entry Operator – Part-Time Remote Opportunity at careerzynith

Work from home Full-time role

[Hiring] Lead Product Owner, AEM Asset & Workfront @Caterpillar Inc.

Work from home Full-time role