Job Description

Kobalt is an equal opportunity employer looking for team members who have a real passion for security. The SOC Analyst is an engaged contributor role within Kobalt’s Security Operations Centre (SOC). This role is responsible for supporting the development of a SOC, geared towards mid sized organizations.

Kobalt’s back-end systems use industry-leading frameworks and tools to deliver a best-in-class solution that is able to log, monitor, and alert clients about security issues that may impact their business.

If you are ready for a new challenge and want to join a growing team, this is your opportunity. Kobalt is building a leading global SOC, and if you have want to be a part of this journey, we would love to hear from you.

Role Responsibilities

  • Identify areas for process improvement and aid in efforts to implement the recommendation as appropriate
  • Contribute to production of innovative technical solutions and creative automation opportunities
  • Generate operational playbooks and documentation
  • Provide concise and effective Tier-2 support as part of alert triage from other SOC team members
  • Participate in active threat hunting, alert tuning, and discovery of new tactics, techniques and procedures (TTP)
  • Operate and maintain in-house security systems providing insightful recommendations on improvements and opportunities for efficiencies
  • Comfortable and flexible in a fast changing environment
  • Ability to work independently as well collaboratively, asking for help when needed
  • Provide mentoring for junior members of the team
  • Capture regular metrics highlighting key activities, measurable accomplishment, and blockers

 

Ideal Qualifications

  • Bachelor’s degree in a related field or 3+ years of meaningful security operations related experience (including some SOC related)
  • 2+ years of experience as a security or network administrator
  • Familiar with major Open Source SIEM tools such as Elastic Stack, OSSIM, Apache Metron, OSSEC, Splunk, etc.
  • Able to interpret security logs and related information, and identify false positives

 

Apply Now