Security Analyst L1

7 hours, 15 minutes ago
Full-time
Junior
Cybersecurity
ProArch

ProArch

At ProArch, we help our clients accelerate growth and mitigate risk with IT services, cybersecurity services, application development, cloud computing, and data analytics. ProArch was founded on the belief that a future where change is ‘business as usu...

Internet Software & Services
251-1K
Founded 2006

Description

  • Monitor SOC dashboards and security alerts generated from SIEM/SOAR tools.
  • Perform first response, preliminary triage, and incident verification using enriched SOAR data.
  • Escalate likely true-positive incidents through the defined escalation workflow.
  • Notify clients about medium- and lower-priority alerts that may be false positives or benign events.
  • Assist senior analysts with triage, evidence collection, and incident documentation.
  • Report shift activity, alert handling, and downtime or tool outages to shift leads.
  • Develop, test, and fine-tune detection rules, use cases, thresholds, and alert logic.
  • Analyze security logs and telemetry for compromise, anomalies, and malicious behavior.
  • Collaborate with IT, Cloud Operations, and Application Development teams to reduce security risk.
  • Contribute to SOC process improvements, including SOPs, playbooks, runbooks, and escalation procedures.
  • Participate in red/blue team exercises and share threat knowledge with the SOC team.

Requirements

  • 2-3 years of experience in cybersecurity or a minimum of 2 years in a Cyber Security Operations Center.
  • Bachelor’s degree in computer science, engineering, IT, Computer Applications, or equivalent demonstrable IT security experience.
  • Strong understanding of cybersecurity principles and best practices.
  • Experience with SIEM systems, preferably Microsoft Sentinel.
  • Familiarity with SOAR workflows and incident response frameworks and methodologies.
  • Knowledge of Microsoft 365 Defender/Defender XDR, Defender for Endpoint, Defender for Office 365, and Entra ID Protection is preferred.
  • Knowledge of Microsoft Sentinel KQL for custom queries and rule creation is preferred.
  • Knowledge of security frameworks such as MITRE ATT&CK.
  • Experience or familiarity with CrowdStrike EDR and/or IDP is highly desirable.
  • Knowledge of ITIL Foundation Framework, vulnerability management tools, security awareness training tools such as KnowBe4, OT security alerts, or privacy compliance frameworks such as HIPAA, GDPR, and SHIELD is desirable.
  • Excellent analytical, problem-solving, written, verbal, and presentation skills.
  • Strong English communication skills are required, especially for a client base that is primarily in the USA.
  • Self-directed and able to prioritize alert inflow and SOC operations effectively.
  • Preferred certifications include Microsoft SC-200, SC-900, AZ-500, SC-300, SC-400, CompTIA Security+, CISSP, or CEH.
  • Ability to work effectively in a team environment with attention to detail and a proactive approach.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Sr. Cybersecurity Analyst I (6624)

MetroStar 251-1K IT Services

MetroStar is hiring a Sr. Cybersecurity Analyst I to lead Authorization to Operate efforts for federal systems, managing compliance documentation and authorization activities from start to finish.

AWS Azure Cybersecurity
4 hours, 14 minutes ago

Cyber Threat Intelligence (CTI) Analyst

AI2CYBER Internet Software & Services

AI2CYBER is seeking a Senior/Expert Cyber Threat Intelligence Analyst in Greece to analyze adversary activity and deliver intelligence that supports detection engineering, incident response, and security decision-making.

Machine Learning Python SIEM Splunk
5 hours, 35 minutes ago

Manager, Information Security, CX

Nice Côte d'Azur Hotels, Restaurants & Leisure

NiCE is hiring a Manager, Information Security, CX to lead security operations and compliance activities for regulated environments, with ownership of vulnerability management, continuous monitoring, audit support, and remediation coordination.

AWS Azure Cybersecurity
6 hours ago

German Speaking Digital Trust and Safety Analyst - Work In Sofia, Bulgaria

Mercier Consultancy Professional Services

Mercier Consultancy MD is hiring a German Speaking Digital Trust and Safety Analyst in Sofia, Bulgaria to help monitor, investigate, and reduce online risks across its digital platforms.

7 hours, 45 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers