Cybersecurity Analyst - L1
Summary
Entry-level (L1) cybersecurity analyst on the day-to-day security operations side: monitoring alerts across endpoint, identity, and cloud security tools, triaging and escalating threats, assisting incident response, and maintaining audit evidence for compliance. Works with SIEM, EDR/SOC tooling, and Microsoft security tools like Defender and Entra ID.
- Key Responsibilities
- Monitor security alerts across endpoint, identity, and cloud security tools
- Perform initial triage and escalate suspicious or confirmed threats
- Assist in incident response investigations and documentation
- Collect and maintain audit evidence for compliance requirements
- Support endpoint and identity security monitoring activities
- Assist with security awareness initiatives and internal communication
- Bachelor’s degree in Cybersecurity, IT, or related field (or equivalent experience)
- 0–2 years of IT or cybersecurity experience
- Fundamental understanding of cybersecurity concepts
- Strong analytical and communication skills
- Familiarity with Microsoft security tools (Defender, Entra ID)
- Basic understanding of incident response processes
- Entry-level certifications (Security+, SC-900)