RSM US LLP logo
Security Operations Center Analyst
full-timeHarrisburg$56k - $67k

Summary

Location

Harrisburg

Salary

$56k - $67k

Type

full-time

Explore Jobs

About this role

We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, culture and talent experience and our ability to be compelling to our clients. You’ll find an environment that inspires and empowers you to thrive both personally and professionally. There’s no one like you and that’s why there’s nowhere like RSM.

In order to address the most critical needs of our clients, RSM US LLP established the Cyber Risk and Data Protection group, comprised of more than 170 professionals dedicated exclusively to serving the cybersecurity needs of our clients. This group includes experienced consultants located throughout the United States and Canada dedicated to helping clients with preventing, detecting, responding and recovering to security threats that may affect their critical systems and data. We serve a diverse client base within a variety of industries, and we are relied upon to provide expertise across the full suite of security and privacy capabilities including managing the daily activities associated with our clients’ security operations.

We are seeking individuals with an interest in working in the field of cybersecurity and a desire to help organizations improve their operations to join our team and help run the ongoing security operations for RSM clients in a variety of industries and geographic locations. Successful candidates will have working knowledge in some or all of these areas – IT operations, security monitoring, Active Directory, Cloud technologies.

At RSM, analysts work with large and small companies in variety of industries. They develop strong working relationships with their peers within the security operations center (SOC) while learning their clients’ businesses and challenges facing their organizations. Analysts work as part of a broader team under the direction of more senior analysts, shift leads and SOC managers in support of multiple clients. Working in a mutually respectful team environment helps our analysts perform at their best and integrate their career with their personal life. You will have the opportunity to:

  • Investigate security incidents using SIEM tools, automation and other cybersecurity technologies (i.e ServiceNow, Stellar Cyber, SentinelOne, Microsoft Defender for Endpoint, ELK Stack, Virustotal, Passive DNS)
  • Analyze, escalate, and assist in remediation of critical information security incidents
  • Improve and challenge existing processes and procedures in a very agile and fast-moving information security environment
  • Process IDS alerts and identifying incidents and events in customer data.
  • Setup and execution of vulnerability scans (Tenable/Nessus)
  • Read/interpret outputs from vulnerability scans
  • Perform initial analysis and investigation into alerts as they are seen
  • Performing initial basic malware analysis utilizing automated means (static and dynamic sandbox analysis or other available tools)
  • Incident intake, ticket updates and reporting of cyber events and threat intelligence
  • Understanding, identifying and researching indicators of compromise (IOCs) from a variety of sources such as threat intelligence reports and feeds
  • Writing incident reports, process documentation, and interact with customers if needed.
  • Transcribe and implement atomic indicators into a monitoring environment.
  • Consume policy documentation and determine applicability in a network.
  • Work with protocols at layers 2 and higher in the OSI model, to include ARP TCP, UDP, ICMP, DNS, Telnet, SSH, HTTP, SSL, SNMP, SMTP, and other common protocols that use well-known ports.
  • Open to working shifts in a 24x7 operations environment

Basic qualifications for an associate-level position include:

  • Minimum A.S or A.A.S. degree or equivalent from an accredited university by the time employment commences or prior relevant military / law enforcement experience
  • Computer science, information technology, information systems management, or other similar degrees preferably with a focus on information security
  • 0-2 years’ experience working in a security operations center or networking operations center capacity
  • Must have a naturally curious mindset and approach to solving problems
  • Basic understanding of cloud technologies and operations
  • Experience supporting various operating systems such as Windows/Linux
  • Understanding of network protocols
  • Motivated self-starter with strong written and verbal communication skills
  • Strong analytical and troubleshooting skills.

Beneficial, but not required, qualifications for an associate-level position include:

  • Security incident and event management (SIEM/Data) tools such as Splunk, LogRhythm, Devo, Elasticsearch etc.
  • Common cloud platforms – Amazon Web Services (AWS), Microsoft Azure, Google Cloud Platform
  • Security orchestration and automated response (SOAR) tools such as: Shuffle SOAR and other open source security tools, etc.
  • Vulnerability tools such as: Kenna, Tenable, Qualys, etc.
  • Threat intelligence tools such as Recorded Future and MISP
  • Endpoint/HIDS detection and response tools such as: CarbonBlack, Crowdstrike, Wazuh etc.
  • Cloud access service brokers such as Netskope, ZScaler, McAfee, Forcepoint
  • Technical understanding of core current cybersecurity technologies and threats as well as emerging capabilities.
  • Hands-on cybersecurity experience within a Computer Incident Response organization.
  • Demonstrated understanding of the life cycle of cybersecurity threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).

At RSM, we offer a competitive benefits and compensation package for all our people. We offer flexibility in your schedule, empowering you to balance life’s demands, while also maintaining your ability to serve clients. Learn more about our total rewards at https://rsmus.com/careers/working-at-rsm/benefits.

All applicants will receive consideration for employment as RSM does not tolerate discrimination and/or harassment based on race; color; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender; sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the US uniformed service; US Military/Veteran status; pre-disposing genetic characteristics or any other characteristic protected under applicable federal, state or local law. 

Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership. RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please call us at 800-274-3978 or send us an email at [email protected].

RSM does not intend to hire entry-level candidates who require sponsorship now or in the future. This includes individuals who will one day request or require RSM to file or complete immigration-related forms or prepare letters on their behalf in order for them to obtain or continue their work authorization.

RSM will consider for employment qualified applicants with arrest or conviction records. For those living in California or applying to a position in California, please click here for additional information.

At RSM, an employee’s pay at any point in their career is intended to reflect their experiences, performance, and skills for their current role. The salary range (or starting rate for interns and associates) for this role represents numerous factors considered in the hiring decisions including, but not limited to, education, skills, work experience, certifications, location, etc. As such, pay for the successful candidate(s) could fall anywhere within the stated range.

Compensation Range: $56,320 - $67,200

Other facts

Tech stack
Cybersecurity,Security Monitoring,Incident Response,Vulnerability Scanning,Malware Analysis,Cloud Technologies,Network Protocols,SIEM Tools,Analytical Skills,Troubleshooting Skills,Communication Skills,IT Operations,Active Directory,Customer Interaction,Process Improvement

About RSM US LLP

Stay Alert: Avoid Recruitment Scams

Across industries, cybercriminals are posing as company recruiters using fake job postings and employment offers to trick people into providing personal information or payment. Be alert and never provide personal/financial information or payment to anyone claiming to offer a job opportunity. During the recruiting process, RSM US will never:

• Ask you for payment to process documents, purchase equipment, or for any other reason.
• Request your banking or credit card information
• Send you a check to purchase your own equipment

If you believe you are a victim of a job scam, it’s recommended that you report it to law enforcement, contact your financial institution and notify the website in which the job was listed.

---

RSM is the leading provider of assurance, tax and consulting services to the middle market. With over 17,000 professionals across the U.S. and Canada and a global presence in 120 countries, our purpose is to deliver the power of being understood to our clients, colleagues and communities. As first-choice advisors, we are focused on developing leading professionals and innovative services to meet our clients’ evolving needs in today’s ever-changing business environment.

At RSM, we strive to deeply understand the full picture of an employee’s individual skills and passions. Our culture empowers you to own your career to reach your goals and make a meaningful impact on the world around you. Gain limitless opportunities to grow forward personally and professionally. Don’t just go forward. #GrowForwardatRSM

For more information, visit rsmus.com
Learn how you can #GrowForwardatRSM visit www.rsmus.com/careers

Team size: 10,001+ employees
LinkedIn: Visit
Industry: Accounting
Founding Year: 1926

What you'll do

  • The Security Operations Center Analyst will investigate security incidents using various cybersecurity technologies and assist in the remediation of critical information security incidents. They will also analyze alerts, perform vulnerability scans, and write incident reports.

Ready to join RSM US LLP?

Take the next step in your career journey

Frequently Asked Questions

What does RSM US LLP pay for a Security Operations Center Analyst?

RSM US LLP offers a competitive compensation package for the Security Operations Center Analyst role. The salary range is USD 56k - 67k per year. Apply through Clera to learn more about the full compensation details.

What does a Security Operations Center Analyst do at RSM US LLP?

As a Security Operations Center Analyst at RSM US LLP, you will: the Security Operations Center Analyst will investigate security incidents using various cybersecurity technologies and assist in the remediation of critical information security incidents. They will also analyze alerts, perform vulnerability scans, and write incident reports..

Why join RSM US LLP as a Security Operations Center Analyst?

RSM US LLP is a leading Accounting company. The Security Operations Center Analyst role offers competitive compensation.

Is the Security Operations Center Analyst position at RSM US LLP remote?

The Security Operations Center Analyst position at RSM US LLP is based in Harrisburg, Pennsylvania, United States. Contact the company through Clera for specific work arrangement details.

How do I apply for the Security Operations Center Analyst position at RSM US LLP?

You can apply for the Security Operations Center Analyst position at RSM US LLP directly through Clera. Click the "Apply Now" button above to start your application. Clera's AI-powered platform will help match your profile with this opportunity and guide you through the application process. You can also learn more about RSM US LLP on their website.