
Security Analyst
Responsibilities
Qualifications & Requirements
Experience Level: Mid Level
Full Job Description
Security Analyst - Incident Response
Join Interactive Brokers' Security Operations Center (SOC) as a Security Analyst specializing in incident response and threat detection. In this role, you will be instrumental in safeguarding our global trading infrastructure by leveraging enterprise SIEM and EDR solutions, alongside advanced incident management tools.
Key Responsibilities:
- Triage and investigate security alerts using SIEM/EDR tools.
- Execute predefined incident response playbooks to manage security events effectively.
- Perform in-depth malware analysis and identify Indicators of Compromise (IOCs).
- Create and maintain detailed incident tickets and documentation.
- Conduct initial forensic data collection for investigations.
- Support the correlation and analysis of security events.
- Monitor for suspicious activities on endpoints.
- Participate in a 24x7 incident response rotation to ensure continuous security coverage.
Required Technical Skills:
- Proficiency with SIEM platforms such as Splunk or QRadar.
- Experience with EDR solutions including CrowdStrike or Carbon Black.
- Familiarity with incident ticketing systems like ServiceNow or JIRA.
- Strong skills in Windows and Linux log analysis.
- Expertise in network traffic analysis.
- Experience with malware detection tools and methodologies.
- Ability to collect and analyze IOCs.
- Working knowledge of basic forensic tools.
Required Experience:
- 2-3 years of experience in a SOC or Incident Response (IR) role.
- Background in L1/L2 alert analysis.
- Demonstrated experience working with incident playbooks.
- Exposure to the MITRE ATT&CK framework.
- Understanding of the cyber kill chain methodology.
- Basic experience utilizing threat intelligence.
Technical Environment:
You will work with a comprehensive set of security tools including SIEM platforms, EDR solutions, Threat Intelligence Platforms (TIP), forensic tools, network monitoring tools, vulnerability scanners, and incident management systems.
Work Requirements:
- Ability to work rotating shifts as part of a 24x7 SOC.
- Dedication to effective incident response handling.
- Skilled in alert triage and escalation procedures.
- Commitment to thorough documentation and reporting.
- Ability to collaborate effectively within a team environment.
Growth Path:
This role offers significant opportunities for professional development, including support for advanced IR certifications, training in threat hunting, exposure to digital forensics, continuous technical skill development, and a clear path for progression to a Senior Analyst role.
Company
Interactive Brokers
Interactive Brokers is a leading global financial services firm known for its innovative technology and commitment to providing exceptional trading experiences. The company operates a robust and secur...