The SENIOR EXPOSURE ANALYST will be primarily responsible for the consistent day to day activities of the Hershey OT Security SOC and serving as an elevated technical point of contact to other OT SOC analysts.
The analyst will engage in evaluating and triaging the daily ticket volume, design/develop/implement detection use cases, and engage in tuning activities in collaboration with other stakeholders.
The Analyst will escalate critical tickets to their manager with supporting documentation and forensics work and participate in Incident Response with other stakeholders.
The security analyst must be willing to engage with different manufacturing environments while providing excellent information security knowledge and balance activities between the IT and OT environments.
The Senior Analyst will also have opportunities to interact with other attack surfaces related projects and technologies.
The analyst invests in analyst growth, and also engages with management, peers, and stakeholders to ensure the quality of the services.
The analyst ensures that services are aligned with overall threat management strategies and business objectives.
Requirements
6-9 years of experience in Food Processing, Confectionery, Pharmaceutical or related industries preferred.
Strong knowledge of threat management technologies.
Strong knowledge of cybersecurity principles and practices.
Strong knowledge of manufacturing, including manufacturing security practices.
Strong knowledge of industrial control protocols and technologies.
Experience with attack surface management practices and technologies.
Demonstrated ability to lead and mentor a team
Excellent communication skills
Excellent analytical and problem-solving skills
Ability to work in a fast-paced, dynamic environment and manage multiple tasks
Experience with programming languages such as Python or PowerShell
Experience with industrial attack surface platforms such as Dragos.
Experience with threat hunting tools such as Splunk or Elastic
Experience with data analysis of Splunk, Crowdstrike, or ICS platform records.
Experience with automation such as Service Now, or Phantom.
Willingness to explore automation activities and safe/responsible AI growth opportunities