Senior Soc Analyst Job at Arizona Department of Administration, New Mexico

ZVpBMjJGaHBaTTJhRklRSURZWnFaRi9JM0E9PQ==
  • Arizona Department of Administration
  • New Mexico

Job Description

ARIZONA DEPARTMENT OF HOMELAND SECURITY

The Arizona Department of Homeland Security was established in 2006 by the Arizona State Legislature to support the mission of providing strategic direction and access to federal homeland security grant program resources that will further enable the stakeholders collective goals to prevent protect mitigate respond to and recover from terrorist attacks and other critical hazards that affect the safety well-being and economic security of Arizona.

SENIOR SOC ANALYST

*This is a hybrid position with a combination of in-office & telecommutting*

Job Location:

16232 North 28th Avenue
Phoenix Arizona 85053

Posting Details:

Annual Salary Range: $75000 - $95000 Deepending on Experience
Grade: 24
This position will close Friday November28 2025

Job Summary:

This position plays an essential role in protecting the confidentiality integrity and availability of State of Arizona information and systems. This position ensures that the appropriate security monitoring and analysis controls standards and procedures are properly configured and utilized to protect confidential information used by the State from known and unknown internal or external threats.

These threats include but are not limited to identity theft data loss data damage unauthorized access and cyber-attacks. This position defends the State against attacks which disrupt destroy or threaten the delivery of essential services for the State.

Job Duties:

Conducts daily traffic analysis identifies and characterizes anomalous activity

Performs in-depth system and network forensics to identify and eradicate threats

T0023: Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources

Generates incident reports investigates suspicious network and system activity

T0164: Perform cyber defense trend analysis and reporting

T0290: Determine tactics techniques and procedures (TTPs) for intrusion sets

T0298: Reconstruct a malicious attack or activity based off network traffic

Proactively identifies threats to the enterprise initiates the distribution of enterprise wide alerts

T0043: Coordinate with enterprise-wide cyber defense staff to validate network alerts

T0258: Provide timely detection identification and alerting of possible attacks/intrusions anomalous activities and misuse activities and distinguish these incidents and events from benign activities

Monitors software patches security fixes and tests and validates modified systems

T0178: Perform security reviews and identify security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy

T0292: Recommend computing environment vulnerability corrections

Processes documents and coordinates resolution of cyber incidents with appropriate teams

T0332: Notify designated managers cyber incident responders and cybersecurity service provider team members of suspected cyber incidents and articulate the events history status and potential impact for further action in accordance with the organizations cyber incident response plan

Other duties as assigned as related to the position

Knowledge Skills & Abilities (KSAs):

Knowledge:

General working knowledge of information security technologies and best practices in the areas of risk assessment compliance and vulnerability management

K0001: Knowledge of computer networking concepts and protocols and network security methodologies

K0002: Knowledge of risk management processes

K0003: Knowledge of laws regulations policies and ethics as they relate to cybersecurity and privacy

K0005: Knowledge of cyber threats and vulnerabilities

K0006: Knowledge of specific operational impacts of cybersecurity lapses

K0013: Knowledge of cyber defense and vulnerability assessment tools and their capabilities

K0019: Knowledge of cryptography and cryptographic key management concepts

K0042: Knowledge of incident response and handling methodologies

K0046: Knowledge of intrusion detection methodologies and techniques for detecting host and network-based intrusions

K0049: Knowledge of information technology (IT) security principles and methods

K0058: Knowledge of network traffic analysis methods

K0059: Knowledge of new and emerging information technology (IT) and cybersecurity technologies

K0070: Knowledge of system and application security threats and vulnerabilities

K0106: Knowledge of what constitutes a network attack and a network attacks relationship to both threats and vulnerabilities

K0107: Knowledge of Insider Threat investigations reporting investigative tools and laws/regulations

K0110: Knowledge of adversarial tactics techniques and procedures

K0111: Knowledge of network tools

K0112: Knowledge of defense-in-depth principles and network security architecture

K0161: Knowledge of different classes of attack

K0162: Knowledge of cyber attackers

K0301: Knowledge of packet-level analysis using appropriate tools

K0324: Knowledge of Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications

K0342: Knowledge of penetration testing principles tools and techniques

K0177: Knowledge of cyber attack stages

Skills:

Excellent interpersonal written and oral communication skills

Collaboratively in teams and across organizations skills

Work balance prioritizing and multiple tasking skills

Develop and write technical documentation skills

Perform general security/audit functions skills

Troubleshooting and investigation skills

Strong customer service skills

Ability:

Responds promptly to customer needs; takes a customer-centric approach to problem solving; solicits customer feedback to improve service; responds to requests for service and assistance; meets commitments

Prioritizes and plans work activities; sets goals and objectives; uses time efficiently; communicates activities and results as appropriate

Focuses on solving conflict; maintains confidentiality; listens to others without interrupting; keeps emotions under control; remains open to others ideas and tries new things

A0010: Ability to analyze malware

A0015: Ability to conduct vulnerability scans and recognize vulnerabilities in security systems

A0066: Ability to accurately and completely source all data used in intelligence assessment and/or planning products

A0123: Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality integrity availability authentication non-repudiation)

A0128: Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies

A0159: Ability to interpret the information collected by network tools

Selective Preference(s):

Bachelors degree plus 3 or more years of experience in Information Security Analysis (or equivalent experience)

Experience working within a Information Security Operations Center Security Certification

Pre-Employment Requirements:

Employees who drive on state business are subject to driver license record checks required to maintain acceptable driving records and complete any required driver training (see Arizona Administrative Code R.11)

Requires possession of and ability to retain a current valid state-issued driver license appropriate to the assignment

Proof of U.S. Citizenship Required

If this position requires driving or the use of a vehicle as an essential function of the job to conduct State business then the following requirements apply: Drivers License Requirements.

Benefits:

The State of Arizona offers a comprehensive benefits package to include:

Optional employee benefits include short-term disability insurance deferred compensation plans and supplemental life insurance

Life insurance and long-term disability insurance

Vacation with 10 paid holidays per year

Health and dental insurance

Retirement plan

Sick leave

Learn more about the Paid Parental Leave pilot program here. For a complete list of benefits provided by The State of Arizona please visit our benefits page

Retirement :

Positions in this classification participate in the Arizona State Retirement System (ASRS)

Please note enrollment eligibility will become effective after 27 weeks of employment

Contact Us:

If you have any questions please feel free to contact Alexis Pagel at for assistance

Required Experience:

Senior IC

Job Tags

Full time, Temporary work, Work at office,

Similar Jobs

Firetrol Protection Systems

Fire Alarm Technician Job at Firetrol Protection Systems

 ...Founded in 1984, Firetrol is the national leader in fire protection & life safety services. We are currently seeking a Fire Alarm Technician to join our team of over 900 of the best fire protection professionals in the industry. This position is based in our Tyler, TX... 

Bedford Stuyvesant Family Health Center

Health and Wellness Coach Job at Bedford Stuyvesant Family Health Center

 ...Description We are looking for a passionate Health and Wellness Coach to join Bedford Stuyvesant Family Health Center in Brooklyn. As a Health and Wellness Coach, you will play a crucial role in promoting healthy lifestyles and empowering individuals to make positive... 

Statewide Remodeling

1099 Window Installer Job at Statewide Remodeling

 ...to clearly communicate with homeowners and team members ~ Worker's comp and Liabiity insurance The main duties include: Install home remodeling products according to Mad City's standards and procedures Apply finish work as needed for every application Communicate... 

Worldwide Flight Services

Air Cargo Ramp Agent PT (AUS) Job at Worldwide Flight Services

 ...mail, express,, and company material) on and off aircraft; the transporting of cargo between terminals and aircraft; the ramp transfers of...  ...Platform including gift cards and more!* Need quality medical care? Multiple options for both full and part-time employees!... 

DSV - Global Transport and Logistics

Freight Forwarder - Ocean Export Job at DSV - Global Transport and Logistics

 ...DSV - Global transport and logistics In 1976, ten independent hauliers joined forces and founded DSV in Denmark. Since then, DSV has...  ...and well-being of employees and their families.Benefits include medical, prescription, dental, vision, and life insurance, as well as...