About This Role
<div><div><div><div><p><b>About Us</b> </p><p>As a Fortune 50 company with more than 400,000 team members worldwide, Target is an iconic brand and one of America's leading retailers. Joining Target means promoting a culture of mutual care and respect and striving to make the most meaningful and positive impact. Becoming a Target team member means joining a community that values different voices and lifts each other up. Here, we believe your unique perspective is important, and you'll build relationships by being authentic and respectful. </p><p> </p><div><div><p><span><span>As a Security Operations Support Agent,You </span><span>are responsible for</span><span> the </span><span>initial</span><span> triage and validation of security alerts, ensuring that environment </span><span>remains</span><span> secure while minimizing noise for system owners. You will work closely with our automated systems to </span><span>identify</span><span> true/false positives, apply initial containment measures, and act as a critical escalation point when high-severity threats are </span><span>detected.</span><span> </span></span><b><span>Responsibilities</span></b><span> </span></p></div><div><ul><li><p><b><span>Automated Triage & </span><span>Validation:</span><span> </span></b><span><span>Execute</span><span> first-level triage on security alerts triggered by our centralized SIEM (Google SecOps). Validate true/false positives and apply initial containment actions (e.g., isolating containers, locking service accounts) using established playbooks.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Incident Response Support:</span></b><span><span> Assist the SOC team during high-severity incidents by providing initial investigative data, helping with containment, and documenting actions in our incident management platform (</span><span>FireHydrant</span><span>).</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Operational Health </span><span>Monitoring:</span></b><span><span>Use</span><span> Capability Dashboards to </span><span>monitor</span><span> the security health of your assigned service areas, identifying and reporting on potential policy drifts or misconfigurations.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Playbook Management:</span></b><span><span> Assist in the ongoing maintenance and optimization of automated response playbooks.</span><span> Help </span><span>identify</span><span> gaps in current detections and contribute feedback to the SOC engineering team for continuous improvement.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Collaboration & </span><span>Communication:</span></b><span><span>Act</span><span> as a bridge between the SOC and system owners. Communicate findings clearly, provide contextual </span><span>assistance</span><span> for Tier 2/3 escalations, and </span><span>participate</span><span> in post-incident reviews to drive long-term resilience.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Knowledge Sharing:</span></b><span><span> Create and </span><span>maintain</span><span> documentation for common alert types, triage workflows, and escalation procedures to promote operational consistency and efficiency.</span></span><span> </span></p></li></ul></div><div><p><b><span>Requirements</span></b><span> </span></p></div><div><ul><li><p><b><span>Experience:</span></b><span><span> 1+ years of experience in IT, Security Operations, Help Desk, or a similar technical support role.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Technical Troubleshooting:</span></b><span><span> Strong analytical skills with </span><span>experience</span><span> troubleshooting hardware, software, and access issues.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Security Mindset:</span></b><span><span> </span><span>Understanding of</span><span> core security concepts, including IAM, endpoint protection, and the OSI model. Familiarity with SIEM/SOAR platforms (e.g., Google SecOps) is a plus.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Communication:</span></b><span><span> Ability to communicate complex security concepts simply and concisely, especially when coordinating with system owners or during incident response.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Problem Solving:</span></b><span><span> A keen ability to multitask, apply critical thinking to triage, and solve problems under pressure.</span></span><span> </span></p></li></ul></div><div><ul><li><p><b><span>Collaborative Spirit:</span></b><span><span> You value shared accountability, attention to detail, and a team-oriented approach to security.</span></span><span> </span></p></li></ul></div><div><p><b><span>Nice to Haves</span></b><span> </span></p></div><div><ul><li><p><span><span>Experience with cloud environments (GCP preferred) and infrastructure-as-code principles.</span></span><span> </span></p></li></ul></div><div><ul><li><p><span><span>Familiarity with scripting (e.g., Python, Bash) or detection-as-code workflows.</span></span><span> </span></p></li></ul></div><div><ul><li><p><span><span>Experience with common security tools like CrowdStrike Falcon, Okta, or Zscaler.</span></span><span> </span></p></li></ul></div></div><div><div><ul><li><p><span><span>Understanding of</span><span> retail-specific security threats and compliance standards (e.g., PCI-DSS).</span></span><span> </span></p></li></ul></div></div><p></p></div></div></div></div><h3></h3><p></p><p></p><p></p>