Cybersecurity Operations Engineer

Summary

Monitors and triages security alerts using SIEM tools like Microsoft Sentinel, manages privileged access with CyberArk, and tracks endpoint threats with Trend Micro. Generates reports, updates incident tickets, and follows SOPs for basic cybersecurity operations.

Job Title: Security Operations Engineer (L1.5)

Key Responsibilities:

  • Monitor and respond to security alerts using Microsoft Sentinel and other security tools
  • Perform basic investigation and triage of incidents before escalation to L2/L3 teams
  • Manage privileged access activities using CyberArk
  • Monitor endpoint and threat alerts from Trend Micro
  • Generate daily, weekly, and monthly security reports
  • Track incidents, update tickets, and ensure SLA compliance
  • Assist in vulnerability and patch monitoring activities
  • Follow SOPs and support incident response processes


Requirements:

  • Basic experience in Security Operations / SOC environment
  • Hands-on exposure to SIEM tools (preferably Sentinel)
  • Familiarity with CyberArk or any PAM tool
  • Knowledge of endpoint security tools like Trend Micro
  • Understanding of security incidents, alerts, and escalation workflows
  • Good communication and documentation skills
  • Level: L1.5 (Initial triage + basic analysis, with escalation support)

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available