Job Summary
As a Security Operations Center Intern, you will serve alongside trained cybersecurity professionals as a frontline defender focusing on IT security incident response, threat detection, and comprehensive security investigations. Operating within our IT Operations and Support department alongside the Network Operations Center and IT Support teams, you'll collaborate closely with our IT Security department for escalations and advanced troubleshooting while proactively investigating security alerts from multiple platforms. Using industry recognized tools such as EDR, SIEM, DSPM, and SEG, you’ll analyze threats and implement response measures to protect our organization's digital assets.
Remote Work Qualifications
- Access to a reliable and secure high-speed internet connection. Cable or fiber internet connections (at least 75mbps download/10mbps upload) are preferred, as satellite connections often cannot support the technologies used to perform day-to-day tasks.
- Access to a home router and modem.
- A dedicated home office space that is noise- and distraction-free. The space should have strong wireless connection or a wired Ethernet connection (wired connection is preferred, if possible).
- A valid, physical address (apartment, suite, etc.). PO Boxes are not supported, as a physical address is required for you to receive your computer equipment.
- The desire and ability to work and communicate with other team members via chat, webcam, etc.
- Legal residents of one of the following states: (AK, AL, AR, AZ, CT, DE, FL, GA, IA, ID, IN, KS, KY, LA, MD, ME, MI, MN, MO, MS, MT, NC, ND, NE, NH, NM, NV, OH, OK, PA, SC, SD, TN, TX, UT, VA, VT, WI, WV, and WY).
We only accept W-2 candidates, H-1B sponsorship is not available.
Responsibilities
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Investigate potentially malicious messages to assess threat level.
- Perform threat remediation and end-user follow-up actions for people and systems impacted by IT Security events.
- Respond to active IT Security alerts with urgency.
- Monitor observability platforms for trends and implement proactive measures.
- Participate in security incident response as a member of the CIRT (Cyber Incident Response Team).
- Complete various project work as assigned.
Physical Requirements
- Work is performed while sitting/standing and interfacing with a personal computer.
- Requires the ability to communicate effectively using speech, vision, and hearing.
- Requires the regular use of hands for simple grasping and fine manipulations.
- Requires occasional bending, squatting, crawling, climbing, and reaching.
- Requires the ability to occasionally lift, carry, push, or pull medium weights, up to 50lbs.
Qualifications
Experience
- Prior experience is welcome but not required.
- Currently pursuing or recently completed a degree in an IT related field or equivalent combination of experience and IT certifications (CompTIA A+, Security+, CySA+).
Education
This role does not require a degree. We value relevant skills and experience and alignment with our core values above all else.
Desired Traits & Skills
Soft Skills
- Strong verbal and written communication skills
- Strong problem-solving skills
- Drive and initiative, the desire to constantly improve upon skillset and knowledge base
- Ability to work well in a collaborative team environment
- Ability to multi-task and address tasks and issues in order of priority
- Ability to self-manage and self-motivate while working from home or in the office
Technical Skills (Required)
- Experience with Microsoft Office suite of software
- Understanding Windows OS and Linux OS system processes, services, and file systems.
- Strong knowledge of network infrastructure and how different network components function as parts of a whole.
- Basic understanding of security frameworks (NIST, MITRE ATT&CK, etc)
Technical Skills (Preferred)
- Experience with ticketing systems.
- Experience with IT Security tools such as SIEM, DSPM, PAM, EDR, etc.
- Experience with security orchestration and automated response (SOAR) tools.
- Experience with email gateway administration.
- Experience investigating potentially malicious emails, links, attachments etc.
- Experience with data observability platforms and trend monitoring.
- Experience with email gateway investigation and research.
- Experience with scripting languages (Python, PowerShell etc.).
- Experience with network security products such as Cloudflare, CheckPoint Firewalls, Wireless Access Portals, etc.