Specialist - L1 SOC Analyst
Core
Monitoring and analyzing an organization's security posture 24/7 to detect, respond to, and mitigate security incidents as the first line of defense.
Role type
L1 SOC Analyst
Builds
Security incident response and threat mitigation for client organizations
Domain
Cybersecurity / SOC Operations
Deliverable
client delivery
Required skills
Alert triage, log analysis, incident investigation, shift handover coordination, SIEM monitoring, OS administration (Windows/Linux), ticket management, escalation procedures
Preferred skills
Threat hunting, offensive mindset, networking concepts (TCP/IP, DNS, HTTP)
Technologies
Wazuh, Splunk, MDE, Cortex, CrowdStrike, Sophos, Jira
Responsibilities
Monitor newly triggered alerts and unmarked alerts, correlate alerts with security devices, investigate alert impact, conduct shift handovers and reports, manage Jira tickets, escalate potential incidents to L2/L3
Seniority
Entry-level (0-1 years experience)