SOC Analyst II

7 days ago


Cork, Cork, Ireland eSentire Full time

eSentire is on a mission to hunt, investigate and stop cyber threats before they become business disrupting events. We were founded on the premise that if you can't find a solution, you build it. Entrepreneurship and innovation are in our DNA. Our culture is based on transparency, teamwork, and continuous innovation.

As the authority in Managed Detection and Response, we protect the critical data and applications of 2000+ organizations in 80+ countries, across 35 industries from known and unknown cyber threats.

The Global Security Operations Centre (GSOC) is central to eSentire's Service Delivery Organization (SDO) with a growing team of over 100 passionate members across two SOC locations in Canada and Ireland. The GSOC delivers comprehensive security services to customers worldwide on a 24x7 basis, utilizing best-in-class tooling from both external vendors and internally developed technologies. We are trusted by over 1500 organizations globally to detect and respond to cyber threats and to protect them from business disruption.

eSentire considers employee development, wellbeing, and mental health as top priorities. GSOC Analysts operate on static and predictable 8-hour shifts which offer a healthy work-life balance and are provided with resources to develop and grow their careers.

The successful candidate will perform Tier II security analysis tasks across network, endpoint, log, and cloud security in a fast-paced and dynamic environment.

In addition to the Tier 1 responsibilities listed below, Tier II SOC Analysts are also responsible for the following:

  • Completing more complex high priority/escalated client support tickets
  • Participating in Incident/Breach response investigations and deliver incident response reports and after-action reviews
  • Work on various internal projects/initiatives such as UAT of new SOC tools, working cross functionally with other teams/departments as a stakeholder for the Service Delivery Organization
  • Writing or providing input to our Learning and Development team on KB Articles or training content
  • Delivering training modules and conducting assessments with new hires
  • Ongoing mentoring and coaching of Tier I Analysts
  • Participating in Quarterly Service Reviews (QSRs) with our Customer Success Team providing technical input from the SOC where necessary
  • Secondary review and approval of permanent signal filters, Global Denylist IP Nominations, and high priority client alerts
  • Critical Event Reviews – performing secondary audits of selected signals and following up with analysts and clients as necessary
  • Analyze incoming security signals in real time with a balance of accuracy and speed using a variety of forensic tools
  • Apply investigative tools, techniques and procedures (TTPs), use your understanding of the security threats associated with the incoming signals and follow defined Runbooks to determine and execute the relevant actions
  • Perform allowlisting/filtering of false positive signals
  • For confirmed true positive signals, you will alert clients using defined templates and escalate high priority alerts to clients by phone
  • Block malicious network traffic and isolate infected hosts on customers networks
  • Add malicious IOC's to eSentire's Global Denylist for all customers where appropriate.
  • Complete basic-intermediate client support requests/queries assigned by the operations lead. Work directly with clients via email/phone as needed to complete these tasks
  • Handle some service administration and troubleshooting tasks

Requirements

  • Relevant degree in Computer Science, IT Security, IT Management, IT Support or related discipline. The completed course must include a strong focus on networking and security.
  • 3+ years' full-time experience in a Security Operations Centre or similar Cyber Security Analysis role excluding time spent on an intern or work experience program
  • Hands on experience in at least one of the following Security domains:
  • Network Security including Intrusion Detection Systems (IDS)
    • Windows Endpoint Security, using EDR products such as VMware Carbon Black Response/Threat Hunter, Crowdstrike Falcon or Microsoft Defender ATP.
    • SIEM/Log Management, using products such as SumoLogic, Splunk or similar
  • Knowledge and experience of network and endpoint security technologies including:
  • Snort/Suricata, Packet Capture (PCAP) Analysis using Wireshark
  • Windows system internals, knowledge of PowerShell
  • Linux Kernel and basic scripting (Bash/Python) knowledge
  • Analytical mind with strong attention to detail and a commitment to quality of service
  • Strong customer facing written and verbal communication skills with the ability to effectively communicate complex security concepts with end customers
  • Demonstrated experience to confidently handle escalated client issues, diffuse challenging situations and deliver an optimal customer experience
  • Natural ability to thrive in a fast-paced and time sensitive environment

Our Culture and Values

At eSentire we work in a collaborative and innovative work environment. We work with brilliant and passionate people who strive and encourage others to do their best. eSentire's idea-rich environment welcomes creative and sometimes unconventional perspectives

We celebrate diversity, operating with mutual respect and consideration, in an environment that fosters inclusivity for all. We believe that a variety of perspectives, backgrounds, and experiences make us stronger – if you're enthusiastic about this opportunity but don't meet every qualification, we encourage you to apply anyway. It takes a diverse set of thoughts, cultures, backgrounds, and perspectives to be a true market leader.

Total Rewards

We believe in rewarding performance and providing comprehensive benefits tailored to support your well-being. Our package includes comprehensive health benefits, a flexible vacation plan, and participation in our company-wide equity program, allowing you to share in the success and growth of our organization.

Accommodation

If you have any accessibility requirements during the recruitment process, please reach out to our HR team at aoda@esentire.com and any accommodation needs will be addressed upon request. Your talents and unique perspectives are valued, and we look forward to the opportunity to work together to build a more inclusive future.

It's our mission at eSentire to protect our customers 24/7/365 and we extend this conviction to job seekers. During the application and interview process, eSentire will communicate with you from one of our corporate "@esentire.com" email addresses, never from a public email address. We strive to provide a welcoming, respectful, and thorough interview process, providing the candidate with ample opportunity to spend time with the hiring manager, recruiter, and future colleagues face to face, or using a video conference technology.

#J-18808-Ljbffr
  • SOC Analyst

    5 days ago


    Cork, Cork, Ireland TN Ireland Full time

    SOC Analyst - Microsoft Security - 6+ Months - Shannon, County ClareRequirements:3+ years experience in Cyber Security OperationsExcellent knowledge of Microsoft Security stackStrong understanding of M365 and Identity ManagementAwareness of Firewall technologies, Crowdstrike, IDS/IPSMicrosoft Security certification preferredImmediate availability...


  • Cork, Cork, Ireland TN Ireland Full time

    SOC Security Analyst L2Location: Hybrid (50% of the time) in Cork, IrelandSchedule: Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage. The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off). Every 4 weeks, it will change from the...


  • Cork, Cork, Ireland TN Ireland Full time

    SOC Security Analyst L3Location: Hybrid (50% of the time) in Cork, IrelandThe schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage. The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off). Every 4 weeks, it will...


  • Cork, Cork, Ireland Bluevoyant Full time

    SOC Security Analyst L2 Location: Hybrid (50% of the time) in Cork, Ireland The schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage.The working and non-working days follow this pattern:  2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off). Every 4 weeks, it will...


  • Cork, Cork, Ireland TN Ireland Full time

    SOC Security Analyst LILocation: Hybrid (50% of the time) in Cork, IrelandSchedule: Panama schedule (2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off) with a rotation between day and night shifts every 9 weeks.Summary: BlueVoyant is looking for a SOC Security Analyst LI in Ireland to help our global customers manage their IT security. You...


  • Cork, Cork, Ireland BlueVoyant Full time

    SOC Security Analyst L2 Location: Hybrid (50% of the time) in Cork, Ireland The schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage.The working and non-working days follow this pattern:  2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off). Every 4 weeks, it will...


  • Cork, Cork, Ireland Bluevoyant Full time

    SOC Security Analyst LI Location: Hybrid (50% of the time) in Cork, Ireland The schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage.The working and non-working days follow this pattern:  2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off). Every 9 weeks, it will...


  • Cork, Cork, Ireland BlueVoyant Full time

    SOC Security Analyst LILocation: Hybrid (50% of the time) in Cork, IrelandThe schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage. The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off). Every 4 weeks, it will...


  • Cork, Cork, Ireland Bluevoyant Full time

    SOC Security Analyst LI Location: Hybrid (50% of the time) in Cork, IrelandSchedule: Panama schedule (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage.The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off).Every 4 weeks, it will change from the...


  • Cork, Cork, Ireland Bluevoyant Full time

    SOC Security Analyst LILocation: Hybrid (50% of the time) in Cork, IrelandThe schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage.The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off).Every 4 weeks, it will...


  • Cork, Cork, Ireland Websitecyber Full time

    SOC Security Analyst LILocation: Hybrid (50% of the time) in Cork, IrelandThe schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage. The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off). Every 4 weeks, it will...

  • Soc Team Lead

    6 days ago


    Cork, Cork, Ireland Bluevoyant Full time

    SOC Team Lead Location: This position is hybrid in Cork, Ireland requiring 2 - 3 days on site while working the day Panama shift schedule.The schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage.The working and non-working days follow this pattern:  2 days on, 2 days off, 3 days...


  • Cork, Cork, Ireland Bluevoyant Full time

    Company OverviewBlueVoyant is a global cybersecurity leader that provides active prevention and defense across both your organization and supply chain. Our proprietary data, analytics, and technology work as a force multiplier to secure your full ecosystem.We Are A Team Of Experts Led By CEO, Jim Rosenthal, Who Have Extensive Frontline Experience In...

  • SOC Team Lead

    1 week ago


    Cork, Cork, Ireland BlueVoyant Full time

    SOC Team Lead Location: This position is hybrid in Cork, Ireland requiring 2 - 3 days on site while working the day Panama shift schedule.The schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage.The working and non-working days follow this pattern:  2 days on, 2 days off, 3 days...


  • Cork, Cork, Ireland Proofpoint Full time

    Sr.Security and Compliance AnalystApply locations Cork, Ireland time type Full time posted on Posted 21 Days Ago job requisition id R11908It's fun to work in a company where people truly BELIEVE in what they're doingWe're committed to bringing passion and customer focus to the business. Corporate Overview Proofpoint is a leading cybersecurity company...

  • Soc Analyst I

    3 days ago


    Cork, Cork, Ireland Esentire Full time

    eSentire is on a mission to hunt, investigate and stop cyber threats before they become business disrupting events.We were founded on the premise that if you can't find a solution, you build it.Entrepreneurship and innovation are in our DNA.Our culture is based on transparency, teamwork, and continuous innovation.As the authority in Managed Detection and...


  • Cork, Cork, Ireland Trellix Full time

    Foster meaningful work in cybersecurity at Trellix, a trusted ally to CISOs.Our comprehensive platform empowers organizations against advanced threats, leveraging GenAI technology to provide confidence in their operational protection and resilience.We collaborate with an extensive partner ecosystem to accelerate innovation through AI, automation, and...

  • SOC Analyst I

    2 weeks ago


    Cork, Cork, Ireland eSentire Full time

    eSentire is on a mission to hunt, investigate and stop cyber threats before they become business disrupting events. We were founded on the premise that if you can't find a solution, you build it. Entrepreneurship and innovation are in our DNA. Our culture is based on transparency, teamwork, and continuous innovation.As the authority in Managed Detection and...


  • Cork, Cork, Ireland Complete Laboratory Solutions Full time

    OverviewWe are seeking a committed and motivated Chemist II to join our team. This role involves overseeing the day-to-day operation of the laboratory, scheduling testing and analysts, and carrying out testing as required. The Chemist II will be the first point of contact for analysts on technical issues, coordinate stability testing, and provide support in...


  • Cork, Cork, Ireland Bluevoyant Full time

    About the JobAt BlueVoyant, we're seeking an experienced SOC Security Analyst L3 to join our team of cybersecurity experts. This is a unique opportunity to work with a fast-paced team that helps customers manage their IT security and reduce the impact of security incidents.