L1 SOC Security Analyst (SIEM / SOAR / UEBA) 1 to 2 Years

Open 36d reposted 6× · 4 open copies

Summary

Monitor and triage security alerts 24/7 using SIEM, SOAR, and UEBA tools, escalate incidents, and maintain incident records in a security operations center.

  • Monitor SIEM, SOAR, and UEBA platforms on a 24×7 basis for security events and alerts.
  • Perform initial triage, validate security incidents, and classify alerts based on SOPs.
  • Monitor log collection, platform health, automation workflows, and data ingestion status.
  • Create and update incident tickets, maintain investigation records, and prepare operational reports.
  • Escalate confirmed security incidents, failed automation workflows, and anomalous user activities to the L2 team.
  • Coordinate with IT and security teams during incident response and service restoration.
  • Verify the successful execution of automated playbooks and security workflows.
  • Adhere to SOC processes, SLAs, escalation matrix, and documentation standards.

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available