- Company Name
- HUB International
- Job Title
- Security Operations Center Analyst
- Job Description
-
Job title: Security Operations Center Analyst
Role Summary:
Responsible for protecting data integrity and confidentiality across all systems by leading incident response, vulnerability management, and continuous security posture improvement within a Security Operations and Engineering team.
Expectations:
- Deliver timely, high‑quality responses to security incidents and alerts.
- Maintain proactive threat monitoring and remediation across cloud and on‑prem environments.
- Contribute measurable improvements to security processes and tooling.
- Support governance, risk, and compliance activities, including audits and vendor reviews.
- Demonstrate leadership in incident root‑cause analysis and cross‑team collaboration.
Key Responsibilities:
- Provide Level II support for escalated incident and request tickets.
- Lead or assist incident response activities, perform root‑cause analysis, and coordinate remediation with stakeholders.
- Generate weekly/monthly posture and response reports; recommend upgrades and changes to support scaling.
- Champion vulnerability remediation and act as liaison for patch management.
- Gather, analyze, and report on key security metrics.
- Participate in risk assessments, internal/external audits, and vendor reviews.
- Contribute to continuous improvement initiatives for security tools and processes.
Required Skills:
- 2+ years in information security or 3+ years in IT engineering with progressive responsibilities.
- Expertise in cloud infrastructure, Office 365, and Active Directory / MS Entra ID.
- Experience with SOAR platforms, vulnerability assessment, patch management, and query languages (KQL, SPL).
- Knowledge of security frameworks (ISO 27001, NIST 800‑53, SOC 2, PCI, SOX) and logging (Windows Event, network devices).
- Understanding of networking protocols (TCP, DNS, DHCP, firewalls, VPN, web proxies) and email authentication (SMTP, SPF, DKIM, DMARC).
- Proven incident response skills, malware handling, and endpoint D&A solutions.
- Strong prioritization, decision‑making, critical thinking, communication, and multitasking.
- Flexibility to travel up to 10 % and willingness to adapt to evolving priorities.
Required Education & Certifications:
- Bachelor’s degree in a related discipline or equivalent education/experience.
- Preferred certifications: GSEC, CISSP, AWS, or analogous security credentials.