Junior SOC Analyst
Core
Junior SOC Analyst responsible for routine security investigations, alert analysis, evidence correlation, and case documentation within a shift-based live operations environment.
Role type
Junior SOC Analyst (Level 1)
Builds
Security operations workflows and incident resolution outcomes
Domain
Cybersecurity operations (SOC/MDR)
Deliverable
client delivery
Required skills
alert analysis, evidence collection and correlation, endpoint/identity/email/cloud/network security concepts, case-handling and escalation workflows, English communication, documentation, shift work adaptability, AI tool usage for productivity and decision support
Preferred skills
1-4 years cybersecurity operations experience, Microsoft Sentinel/Defender XDR/Cortex XSOAR/Elastic Security/Vectra NDR familiarity, KQL or equivalent query language, security framework/ATT&CK analysis, operational security certifications (CompTIA Security+/CySA+/SC-200), German language proficiency
Technologies
Microsoft Sentinel, Microsoft Defender XDR, Cortex XSOAR, Elastic Security, Vectra NDR, KQL, AI tools
Responsibilities
Review and analyze security alerts, collect and validate evidence across multiple data sources, document cases clearly, escalate complex incidents, utilize AI tools to automate repetitive tasks and improve investigation quality, maintain shift continuity and handover discipline
Seniority
Junior, hands-on IC