SOC Analyst
Core
Initial triage and alert review for security events, conducting investigations, threat analysis, and attack containment for a global client base.
Role type
SOC Analyst 1 (Incident Response)
Builds
Security monitoring and incident response capabilities for 65,000+ organizations
Domain
Cybersecurity / SOC Operations (via careerplan.io/jobs/12823-soc-analyst-at-taskus)
Required skills
Security event investigation, SIEM platforms (Microsoft Sentinel, Splunk, QRadar, LogRhythm), EDR solutions (Microsoft Defender, CrowdStrike, SentinelOne, Carbon Black), cybersecurity frameworks (NIST, MITRE ATT&CK, CIS Controls, Cyber Kill Chain), networking protocols, cloud security concepts
Preferred skills
Security certifications (Security+, CySA+, GCIH, GCIA, GCFA, SC-200, CISSP), Microsoft security technologies (Defender XDR, Entra ID, M365 security), scripting/automation (PowerShell, Python, KQL), digital forensics, cloud environments (Azure, AWS, GCP)
Responsibilities
Investigate security alerts and suspicious activities from client security stacks and cloud platforms; Perform detailed investigations into attacker techniques and emerging threats; Correlate events from multiple security tools to determine risk and remediation; Assist with developing detection rules, use cases, playbooks, and response procedures; Validate security events and reduce false positives through tool tuning; Prepare post-event reports and executive summaries; Stay current on threat intelligence and TTPs
Seniority
Junior, hands-on IC