CallTek

CallTek

CallTek provides Technology as a Service (TaaS) solutions, offering support services that empower technology operators and service providers to enhance their operations with comprehensive infrastructure, procurement, and lifecycle support tailored to v...

Internet Software & Services
51-250
Founded 2004

Description

  • Monitor security events and alerts in SIEM and related defensive tools, and perform initial triage and classification.
  • Collect and review basic evidence from endpoints, Windows/Linux logs, firewall and IDS data, DNS, and proxy sources.
  • Correlate indicators across host, user, IP, IOC, and process data to support initial analysis.
  • Execute approved runbooks and playbooks such as password reset, IOC blocking, and host isolation requests.
  • Create and maintain detailed tickets with clear narratives, evidence, impact assessment, actions taken, and next steps.
  • Escalate cases to L2, L3, or incident response teams when compromise, material risk, lateral movement, or uncertainty is identified.
  • Deliver structured shift handovers covering case status, findings, hypotheses, blockers, and next steps.
  • Meet operational SLAs and documentation quality standards.

Requirements

  • 0–2 years of experience in SOC, NOC, IT security operations, or equivalent hands-on lab/casework experience.
  • Solid fundamentals in networking, including TCP/IP, DNS, HTTP/S, VPN, and NAT.
  • Basic working knowledge of Windows and Linux, including processes, authentication, and logging concepts.
  • Ability to interpret log fields such as source, destination, user, process, hash, URL, action, and result.
  • Strong spoken and written English at a minimum B2 level for technical calls and clear documentation.
  • Strong attention to detail, structured thinking, prioritization, and the ability to work under pressure in repetitive workflows without quality loss.
  • Experience with SIEM, EDR, and IDS tools such as Wazuh, Splunk, Sentinel, QRadar, Defender, CrowdStrike, Suricata, or Snort is preferred.
  • Basic query skills in KQL, SPL, Lucene, or DQL and familiarity with MITRE ATT&CK concepts are preferred.
  • Entry-level certifications such as Security+, BTL1, or CySA+ are preferred, or equivalent proof of competence.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Cyber Security Operations Specialist Tier 3

D2 Technical Services 11-50 IT services and consulting

D2 Technical Services is hiring a CSOC Tier 3 Cybersecurity Incident Responder to support incident response operations protecting critical infrastructure under an active TS/SCI clearance.

Cybersecurity
19 hours, 6 minutes ago

Intelligence Analyst

ZeroFox 251-1K Internet Software & Services

ZeroFox is hiring an intelligence analyst for its ZTAC team to turn noisy online activity into actionable threat intelligence across physical, cyber, geopolitical, and reputational risk.

CRM Cybersecurity
19 hours, 37 minutes ago

Information Security Governance, Risk & Compliance (GRC) Analyst

Assyst Tecnologia 1-10 Wireless Telecommunication Services

ASSYST is hiring an Information Security GRC Analyst to support a client’s enterprise governance, risk, and compliance program by managing policy exceptions and maintaining the information security risk register in ServiceNow IRM.

HIPAA
19 hours, 52 minutes ago

RASP Cyber Force | Професійна програма для ветеранів у сфері кібербезпеки

Raiffeisen Bank’s RASP Cyber Force is a six-month cybersecurity development program for veterans and service members, combining training and part-time work in one of the bank’s information security teams.

Cybersecurity Encryption Network Security Penetration Testing SOC
1 day, 19 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers