L1 Security Analyst (AL-FRC250214 007/01)
Core
L1 Security Analyst performing 24/7 triage, analysis, and escalation of real-time security alerts and incidents for a telecommunications service provider's infrastructure.
Role type
L1 SOC Analyst
Builds
Incident response and remediation for SOCaS infrastructure, IT/OT security devices, and web defacement alerts
Domain
Telecommunications / Cybersecurity
Deliverable
client delivery
Required skills
TCP/IP, HTTP, SSL, DNS, OWASP Top10, web servers (Apache, IIS, Nginx), firewalls, EDR, IDS/IPS, WAF, ticket generation, escalation management, SLA adherence, customer liaison, network security remediation
Preferred skills
scripting (shell, PHP, Perl, Java), regular expressions, TCP/IP packet analysis, web application firewall, exploit/vulnerability signature writing, SOC team experience
Technologies
Apache, IIS, Nginx, tcp dump
Responsibilities
24/7 triage and short-turn analysis of real-time security alerts; 24/7 escalation to L2 analysts or resolvers for infrastructure and device health incidents; manage problems to closure ensuring SLA compliance; liaise with customers regarding security incidents; provision and perform remedial actions to enhance network security posture
Seniority
Junior, hands-on IC