Job Summary
We are seeking a Security Operations Center (SOC) Tier 1 Analyst to join our Cybersecurity Operations team. This role serves as the first line of defense against cyber threats by monitoring, triaging, investigating, documenting, and escalating security events across enterprise endpoints, networks, cloud environments, and data protection systems.
The ideal candidate has hands-on SOC experience, strong cybersecurity fundamentals, and experience working with SIEM platforms and endpoint security tools. Strong analytical, troubleshooting, documentation, and communication skills are essential.
Required Skills
-
2+ years of IT or Cybersecurity experience
-
Security Operations Center (SOC) experience
-
SIEM monitoring and alert investigation
-
Security incident triage
-
Windows administration fundamentals
-
Basic Linux knowledge
-
Networking fundamentals (TCP/IP, DNS, HTTP, HTTPS)
-
Endpoint Detection & Response (EDR)
-
IT ticketing systems
-
Phishing investigation
-
Malware identification fundamentals
-
Strong analytical and troubleshooting skills
-
Excellent written communication
-
Incident documentation and escalation
Preferred Skills
-
Microsoft Sentinel
-
Splunk
-
IBM QRadar
-
CrowdStrike Falcon
-
Microsoft Defender
-
SentinelOne
-
Carbon Black
-
Palo Alto Cortex
-
Proofpoint
-
Mimecast
-
Microsoft Defender for Office 365
-
Microsoft Defender XDR
-
Microsoft Purview DLP
-
Azure Security
-
AWS Security
-
Google Cloud Security
-
Active Directory
-
Microsoft Entra ID (Azure AD)
-
VirusTotal
-
Any.Run
-
Hybrid Analysis
-
MITRE ATT&CK Framework
-
NIST Cybersecurity Framework
-
CompTIA Security+
-
CompTIA Network+
-
CompTIA CySA+
-
GCIH
-
GCIA
Responsibilities
-
Monitor security alerts using SIEM platforms.
-
Investigate and triage security incidents.
-
Escalate incidents according to established procedures.
-
Analyze phishing emails and malware-related events.
-
Monitor endpoint security solutions.
-
Document investigations, findings, and response activities.
-
Work with senior analysts during incident response.
-
Create and update incident tickets.
-
Follow documented security operations procedures.
-
Support continuous monitoring of enterprise security environments.
Mandatory Requirements
-
2+ years of IT or Cybersecurity experience
-
Hands-on SOC experience
-
SIEM monitoring experience
-
Security incident triage experience
-
Windows administration knowledge
-
Basic Linux knowledge
-
Networking fundamentals
-
Endpoint Detection & Response (EDR) experience
-
IT ticketing system experience
-
Phishing investigation experience
-
Malware analysis fundamentals
-
Strong documentation and communication skills
-
Willingness to work the required shifts