Summary of this job:
A Level 1 SOC (Security Operations Centre) analyst is the entry-level role in a SOC, focusing on initial monitoring, triage, and investigation of security alerts. They are responsible for quickly assessing and determining the legitimacy of alerts, filtering out false positives, and escalating genuine incidents to higher tiers for deeper analysis. Level 1 analysts also document incident details and follow established procedures.
Key Responsibilities of this job:
- Monitor security event and incident alerts using various security tools and technologies, example SIEM, MDR and others.
- Analyse and investigate alerts to determine the nature and scope of the security event or incident.
- Adhere to predefined procedures and playbooks for responding to common security events
- Document and report security incidents to the appropriate teams and stakeholders.
- Work with other security analysts and stakeholders to triage security incidents and determine the appropriate course of action.
- Respond to security incidents according to established procedures and guidelines.
- Conduct initial investigations and perform data collection and analysis to determine the extent of a security incident.
- Provide support and guidance to end-users during security incidents.
- Create and maintain incident reports and other documentation related to security events and incidents.
- Assist in developing and improving SOC procedures and policies.
- Stay up to date with current and emerging security threats and vulnerabilities.
Qualification:
- Bachelor’s degree in computer science, Cybersecurity, or a related field
- 1-2 years of experience in a security operations role
- Relevant security certifications (e.g., CompTIA Security+, GIAC Security Essentials) are a plus
Minimum years of experience required to perform this job:
- Minimum 1 - 2 years of experience in a security operations role 1 – 2 years of experience using security technologies such as SIEM (Security Information and Event Management), IDS (Intrusion Detection System), and firewalls.
- 1 – 2 years of experience in Operating System knowledge, such as Microsoft Windows and Linux.
Required functional competencies:
- Capable of identifying vectors of threats and incidents, working with others to assist the education of security events and implications and develop documentation to support the incident response process.
- Must be competent to work at a high technical level of cyber security investigations.
- In-depth knowledge of security concepts such as security operations centre (SOC), cyber-attacks and techniques, threat vectors
- Hands on experience triaging security alerts, events, logs and artifacts.
Pay: RM3,000.00 - RM3,500.00 per month
Benefits:
- Free parking
- Health insurance
- Opportunities for promotion
Work Location: In person