Security Analyst
Core
Monitor, triage, and investigate security alerts across enterprise customer environments to determine genuine incidents versus false positives.
Role type
SOC Analyst (Shift-based)
Builds
Continuous security monitoring and incident response for fully managed and hybrid SOC customers.
Domain
Cybersecurity / Security Operations
Deliverable
client delivery
Required skills
SIEM triage, EDR/XDR investigation, phishing analysis, network telemetry analysis, incident documentation, shift handover
Preferred skills
None stated
Technologies
Microsoft Sentinel, Splunk, QRadar, Microsoft Defender for Endpoint, CrowdStrike, Cortex XDR, SentinelOne
Responsibilities
Monitor and triage security alerts, analyze security events using SIEM/EDR, investigate suspicious activity across endpoints/identity/email/network, correlate log sources, escalate incidents per playbooks, maintain investigation notes, provide shift handovers
Seniority
Individual Contributor, entry-to-mid level (structured training provided)