Careers
Interested in joining us on our mission for a safer digital world? View our available positions below.
Position: SOC Analyst L2
Role Type: Remote
Location: India/Nepal
Join StickmanCyber: Pioneers in Cybersecurity as a Service and AI driven Cybersecurity Platform
At StickmanCyber, our mission is more than a commitment – it's a guiding light: "We do everything in our power to protect our customers from cyber threats"
Established in 2006, we've carved a niche in the cybersecurity landscape, demonstrating a remarkable business growth. Our success story is built on a foundation of trust and commitment that the staff at StickmanCyber have created with our clientele, which includes several prestigious public listed companies.
We have:
- No Investors, No Debt, No Greed
- No Inflated Valuations, No Unrealistic Targets
- Just Pure, Uncomplicated Commitment
We are accountable only to our staff and clients. This unique focus sets us apart.
We're not just running a business; we're nurturing a philosophy. Every day, we're committed to ensuring the security of our customers and the welfare of our staff. Growth is not our primary goal; our aim is to maintain fairness in pricing, pay our staff well, and reinvest profits for our staff training, new technology, innovations that is targeted for our customers' success.
We pride ourselves on being the trailblazers in the Cybersecurity as a Service (CSaaS) domain, a testament to our innovative spirit and commitment to excellence. Our business model not only generates robust recurring revenue but also ensures profitability, showcasing our operational strength and market resilience.
Our most ambitious project yet is the development of an industry-first AI-based Cybersecurity platform. This cutting-edge technology is a game-changer, poised to revolutionize how we safeguard businesses from cyber threats. By joining our team, you'll be at the forefront of this exciting venture, leveraging AI to enhance our capabilities and deliver unparalleled protection to our clients.
We're looking for passionate individuals who are eager to contribute to a larger global cybersecurity product/platform company. If you're driven by innovation, excellence, and a desire to make a significant impact in the cybersecurity world, StickmanCyber is your destination.
Summary
We are looking for active and responsive candidates who can work in a shared SOC environment and manage all the MSS customers by proactive monitoring of their environment to keep it secure from any cyber-attacks. The role of the SOC L2 Analyst includes monitoring and analyzing security solutions, triaging and validating security alerts, categorizing threats, and assisting with incident response. Managing security rules and policies, maintaining incident documentation, contributing to process improvement, collaborating with the SOC team, and staying updated on cybersecurity developments. L2 analysts are crucial in identifying and addressing security incidents to maintain an organization’s security.
Responsibilities
- Incident Analysis: Review and analyze security alerts and incidents processed and escalated from Level 1 analysts to identify potential security incidents.
- SLA Adherence: Ensure no SLA breaches and all Shared SOC team emails, incidents and alerts are promptly addressed.
- Threat Hunting: Conduct in-depth threat hunting and investigations, providing detailed reports with hypothesis & analysis and a walkthrough to the client.
- Incident Documentation: Maintain accurate and detailed records of incident investigations and findings. Perform 3-step follow up with the client or concern team on all the open cases and resolve them within the SLA.
- Incident Response: Contain and remediate security incidents efficiently and effectively. Handle the advance incident response cases which requires the end to end ownership and share the RCA with clients. Be the POC for the customers and help them achieving the higher level of security.
- Playbook Maintenance: Follow and maintain incident response playbooks, guiding Level 1 analysts in response activities. Identify the errors and suggest the solutions to the engineering to improve the processes overall. Prepare the SOPs for the detection rules and SOC processes.
- Mentorship: Provide technical guidance and mentoring to Level 1 analysts to enhance their skills and capabilities. Perform the audit on their Incidents and suggest them the tips to handle and updating the cases in a better way, bring the first line of defense in the best shape.
- Client Collaboration: Work with clients to identify and address security risks related to their systems and networks. Lead the client’s monthly cadence and help them by suggesting the further steps about open risks and security cases.
- Threat Intelligence: Be aware about the client’s environment and latest vulnerabilities and provide regular updates to clients on the latest security threats and vulnerabilities and fixing steps.
- Vulnerability Management: Conduct in-depth vulnerability assessments and work on mitigating identified vulnerabilities by collaborating with internal teams. Additionally, you will perform comprehensive dark web monitoring, analyzing findings to provide actionable intelligence and ensuring the security of client assets.
- Security Training: Participate in regular security awareness training to stay current with the latest threats and best practices. Improve your analytics skills to perform better in advance in-depth investigation.
- Tabletop Exercises: Present the SOC team in client’s tabletop exercises. Test the current IR procedures and identify areas for improvement, prepare a report and submit.
- Shift Lead and Handover: Lead the shift handover calls and ensure SLA compliance and quality service delivery.
- Reporting: Prepare and share weekly and monthly reports with clients for respective projects. Track that we are delivering all the promised services on time for all the clients.
- Client Meetings: Attend client meetings to understand requirements, address issues, and distribute work accordingly.
Requirements
- 3-6 years of SOC Operations experience.
- Minimum 3 years as a SOC Analyst or 24x7 Security Operations Centre (SOC)
- Strong understanding of the threat landscape in terms of the tools, tactics, and techniques of threats.
- Knowledge of SOC processes, SOPs, Security policies, process, and standards.
- Relevant security certification will be a plus such as CYSA+, Security+, etc.
- Knowledge of AWS, Azure and GCP environment
- Knowledge of current security threats, techniques, and landscape.
- Security events, incident review and triage experience with Endpoint Detection and Response (EDR) tools
- Experience and knowledge related to the configuration and maintenance of security monitoring and reporting platforms.
- Ability to conduct detailed analysis of various security related events like Phishing, Spoofing, Ransomware and SQL Injections etc.
- Incident Response experience (identifying, investigating, and responding to complex attacks)
- Experience with threat hunting and preparing the report of hypothesis and analysis.
Please submit your application to careers (@) stickmancyber.com, mentioning the position you applied for in the subject line.
APPLY NOW
Please submit your application to careers (@) stickmancyber.com mentioning the position applied for in the subject line.