Level 1 Security Analyst
Core
Front-line security analyst monitoring, triaging, and responding to security alerts and incidents for clients in financial services, government, health, and education.
Role type
Entry-level SOC analyst (MDR)
Builds
24x7x365 Managed Detection & Response service
Domain
Cybersecurity / Defensive Security
Deliverable
client delivery
Required skills
Analytical thinking, incident prioritization, log analysis, phishing triage, dark web monitoring, ticketing, shift handover documentation, change request management, KPI tracking, evidence gathering, process improvement, basic networking, Windows/Linux fundamentals, attack recognition (phishing, credential theft, suspicious sign-ins)
Preferred skills
SIEM exposure (Microsoft Sentinel, Splunk, Rapid7 InsightIDR, Elastic, Wazuh), EDR exposure (Microsoft Defender for Endpoint, CrowdStrike, SentinelOne), home lab experience, CTF participation, Blue Team Labs Online challenges
Responsibilities
Monitor alert queues and triage security events, perform incident prioritization, escalate alerts to senior tiers, triage phishing emails, conduct dark web monitoring, respond to hotline calls, resolve service desk tickets, perform daily health checks, attend shift handover meetings, create change request tickets, retrieve and assist in producing client reports, identify opportunities to tune event detection, improve internal SOPs
Seniority
Junior, entry-level IC