Fevrok logo
SOC Analyst II (DDOS)
3 years ago

At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation.

Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.


The F5 Security Operations Center is the epicenter of dynamic security events; clients under siege daily, with new attacks and attack vectors, evolving continuously.

As a SOC Analyst, you will work collaboratively with seasoned engineers & analysts to keep our customers safe and stop attackers cold, around the clock. As part of a Global SOC team, you will be responsible for managing cloud-based security systems on behalf of F5 clients, providing real-time protection, detection, mitigation and resolution of security events.The SOC DDoS Analyst is a master of DDoS and, a skilled security defender.

When not unravelling security issues, you may spend time mentoring, developing tools and training to improve organization and troubleshooting processes and spread security knowledge throughout the business, or investigating new attacks and defenses.

A contender for this role possesses a passion for information security, enjoys solving problems and sharing knowledge with others, excels under pressure, and is continuously looking for opportunities for personal and team improvement.

Attractions of the Job

The F5 Security Operations Center is a critical component of the F5aaS (as a Service) Security Portfolio. Our expert security analysts defend a wide spectrum of companies from online fraud, DDoS (Distributed Denial of Service), Application layer, and other security threats.

You will work side-by-side with some of the finest security analysts in the world, leveraging the best security products available, defending against attacks in real-time, analyzing industry trends, and innovating new protections against a variety of evolving threats and vulnerabilities.

**This position is a remote opportunity!**

Responsibilities

  • Take proactive and reactive steps to mitigate Layer 4-7 security threats against F5 clients

  • Directly contact with F5 clients who are under attack via phone, chat, email and/or ticketing systems

  • Provide proactive and real-time mentorship to customers on network configuration, security protocols, and defensive security response

  • Document activities are taken in incident management systems, knowledgebase, or ticketing systems, as the need arises

  • Establish yourself as a trusted security advisor internally and externally

  • Assist F5 clients with onboarding and provisioning

  • Engage and support multi-functional teams

  • Investigate new attacks and vulnerabilities

  • Appropriately manage time and customer issues based on issue severity and business needs

  • Collaborate with Product Management and Development on requirements and product release activities

  • Identify, define, and implement process and procedure improvements

  • Ensures detailed processes and procedures are relevant and up to date

Secondary Responsibilities

  • Responsible for upholding F5s Business Code of Ethics and promptly reporting violations of the Code or other company policies

  • Align with F5s information security policies and protect information assets from unauthorized access, disclosure, modification, destruction or interference

  • Responsible for promptly reporting actual, or potential, security concerns to F5

  • Perform other related duties and projects as assigned

Minimum Qualifications

  • 2+ years experience in the Information Security field

  • Ability to excel in a dynamic, challenging, security-oriented operations environment

  • Undaunted by, and quickly capable of, coming up to speed on new and developing technologies

  • Must be able to communicate technical and operational details fluently in English (written and oral)

  • Excellent customer service skills

  • Robust troubleshooting and problem-solving ability including, analytical thinking and strong attention to detail

  • Must be able to relay technical information to customers with different levels of technical competence

  • Experience supporting corporate customers in production environments, working with relevant technologies

  • Experience working with Customer Support and Service Management portals, including provisioning, reporting, and configuration

  • Skilled understanding of HTTP

  • Fundamental Linux skills

  • Ability to perform log file analysis

  • Knowledge of Layer 7 DDoS attack mitigation

  • Comfortable working with moderate supervision

  • Ability to develop creative, efficient solutions to complex problems

  • Ability to define, configure and manage (in real-time, on production networks) security policies encouraging RFC compliance, signature-based protection, and defending against bots, SQL injection, cross-site scripting, web scraping, CSRF, brute force, cookie manipulation, parameter tampering, and other emerging Layer 4-7 attacks/vulnerabilities

Preferred Qualifications

  • Prior SOC or NOC experience

  • Background in Security Incident Response

  • Information Security/Computer Science degree, or equivalent experience

  • Familiarity with a programming or scripting language

  • F5 ASM Specialist certification

  • Fluency in additional languages

  • Experience in leading web application security

  • Experience working in an enterprise web application environment

  • Experience with F5 hardware and software (Big-IP, TMOS, iRules, iApps, iControl, etc.)

#LI-EM1

#LI-Remote
#LI-Hybrid

The Job Description is intended to be a general representation of the responsibilities and requirements of the job. However, the description may not be all-inclusive, and responsibilities and requirements are subject to change.

Please note that F5 only contacts candidates through F5 email address (ending with @f5.com) or auto email notification from Yello/Workday (ending with f5.com or @myworkday.com).

Equal Employment Opportunity

It is the policy of F5 to provide equal employment opportunities to all employees and employment applicants without regard to unlawful considerations of race, religion, color, national origin, sex, sexual orientation, gender identity or expression, age, sensory, physical, or mental disability, marital status, veteran or military status, genetic information, or any other classification protected by applicable local, state, or federal laws. This policy applies to all aspects of employment, including, but not limited to, hiring, job assignment, compensation, promotion, benefits, training, discipline, and termination. F5 offers a variety of reasonable accommodations for candidates. Requesting an accommodation is completely voluntary. F5 will assess the need for accommodations in the application process separately from those that may be needed to perform the job. Request by contacting accommodations@f5.com.








©2025 Fevrok. All Rights Reserved.