Cyber Security Analyst – CSOC Analysis
Job Summary
The energy of a newsroom the pace of a trading floor the buzz of a recent tech breakthrough; we work hard and we work fast while keeping up the quality and accuracy we are known for. It is what keeps us inventing and reinventing all the time. Our culture is wide open just like our spaces. We bring out the best in each other through collaboration. Through our countless volunteer projects we also help network with the communities around us. You can do amazing work here. Work you could not do anywhere else. It is up to you to make it happen.
About the Role
We are hiring aCyber Security Analyst Analysisto support a global 24x7 Cyber Security Operations Center (CSOC). This role focuses onfrontline security event analysis and decisionmaking acting as the initial responder to alerts while independently resolvingsecurityevents using established playbooks and sound professional judgment.
This position is wellsuited for analysts who enjoy handson investigation can confidently move beyond basic alert review and know when and how to escalate issues with clear context. The role does not require full incident response ownership but plays a critical role in determining what requires deeper investigationandescalation.
What You Will Do
- Act as theinitial responderto security alerts and events across enterprise systems endpoints networks and cloud environments
- Performeventanalysisand analysisusing documented playbooks runbooks and standard operating procedures
- Apply experiencebased judgment when alerts are unclear incomplete or fall outside existing procedures
- Validate alerts identify false positives and assess severity scope and potential business impact
- Conduct initial investigation and contextual analysis to support accurate decisionmaking
- Independently resolve and closesecurity events requesting assistance as needed
- Escalate confirmed or highrisk incidents withclear detailed and actionable case notes
- Analyze logs and telemetry from multiple sources including SIEM endpoint network identity and cloud platforms
- Collaborate with internal technical and business teams to support remediation and resolution
- Maintain highquality documentation including investigation notes and shift handovers
- Contribute feedback to improve detection logic playbooks andanalysisworkflows
- Stay current on emerging cyber threats attacker techniques and defensive best practices
Required Experience & Skills
- Experience inaSecurityOperations SOC CSOC or securityanalysisrole
- Minimum 1 yearofexperience
- Strong proficiency inlog analysisacross multiple data sources (SIEM experience required; Splunk preferred)
- Solid understanding of:
- Enterprise networking concepts and the TCP/IP stack
- Endpoint and network security controls
- Windows Linux and macOS operating systems
- Familiarity with security technologies such as EDR antivirus firewalls VPNs and identity systems
- Ability tofollow playbooks while adapting confidentlywhen procedures are incomplete or unavailable
- Comfortable workingindependently prioritizing alerts and making escalation decisions
- Clear written and verbal communication skills particularly for investigation documentation
- A professional customerfocused approach when working with internal stakeholders
Preferred Qualifications
- Experience working in a24x7 SOC or CSOC environment
- Exposure tocloud platformssuch as AWS Azure or GCP
- Experience with event correlation enrichment or alert tuning
- Familiarity with scripting or automation (e.g. Python PowerShell Bash)
- Relevant security certifications (e.g. Security GCIH GCED or similar)
- Degree or formal training in information security computer science or a related field
Required Experience:
IC
About Company
Bloomberg is the world's primary distributor of financial data and a top news provider of the 21st century. A global information and technology company, we use our dynamic network of data, ideas and analysis to solve difficult problems every day. Our customers around the world rely on ... View more