We're looking for an eager, detail-oriented individual to join our SOC team — whether you're a fresh graduate ready to kickstart your cybersecurity career or someone with up to two years of IT experience looking to specialize in security operations.
As an SOC L1 Analyst, you will serve as the first line of defense in our Security Operations Center — continuously monitoring, triaging, and performing initial analysis of security alerts. You'll filter out false positives, execute standard incident response procedures, and escalate complex threats to the L2 team, helping maintain a strong baseline security posture for our clients.
Key responsibilities
Monitor SIEM, EDR, IDS/IPS, firewalls, and email security dashboards in real-time during shifts.
Assess incoming security alerts to determine severity and validity, distinguishing false positives from true threats.
Execute documented initial response actions per SOPs — including endpoint isolation, IP/URL blocking, and credential resets.
Record all findings, analysis steps, and actions in the ticketing system (Jira, ServiceNow) accurately and promptly.
Escalate complex or high-risk incidents to the L2 team within SLA, with all relevant context and initial findings.
Prior hands-on experience with monitoring tools, log analysis, or basic incident response
Data lowongan bersumber dari jobstreet. Tombol “Lamar” mengarahkan Anda ke halaman aslinya.