SOC Analyst

Binary Defense
United States
1 day ago
Apply on teamficient.zohorecruit.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$24,000.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Cyber Security Computer Networks Linux Domain Name System (DNS) Monitoring of Systems Hypertext Transfer Protocols (HTTP) Intrusion Detection and Prevention Intrusion Detection Systems Virtual Private Networks (VPN) Python (Programming Language) Log Analysis
+19 more
Network Protocols Windows PowerShell Phishing Security Information and Event Management TCP/IP Windows Desktop Scripting In-Plane Switching (IPS) Mitre Att&ck QRadar Malware Cyber Threat Analysis Firewalls (Computer Science) Information Technology Cybercrime Microsoft Sentinel Splunk Network Server SentinelOne Expertise

Job description

Be an Early Applicant Remote Hiring Remotely in USA 2K-2K Annually Entry level Remote Hiring Remotely in USA 2K-2K Annually Entry level Monitor and investigate security alerts across enterprise systems, networks, endpoints, and applications. Perform alert triage, incident validation, escalation, documentation, and support for containment and remediation. Analyze security logs and SIEM correlations, conduct basic threat intelligence investigations, assist with vulnerability monitoring, and improve detection rules and SOC processes. The summary above was generated by AI, We are looking for a skilled, motivated, and curious SOC Analyst to join our cybersecurity team. We are seeking someone who is detail-oriented, proactive, and passionate about cybersecurity, comfortable working under pressure, investigating ambiguous security events, and collaborating with IT and security teams to monitor events, investigate potential threats, and protect organizational assets.

The ideal candidate should have a strong understanding of cybersecurity concepts, security monitoring, incident response, and SIEM tools, with a keen eye for identifying suspicious activity and potential security threats., * Monitor security alerts and events across enterprise systems, networks, endpoints, and applications.

  • Analyze and investigate potential security incidents and suspicious activities.
  • Perform initial triage, validation, and classification of security alerts.
  • Escalate confirmed or high-severity incidents according to established procedures.
  • Support incident response, containment, and remediation activities.
  • Review and analyze logs from firewalls, IDS/IPS, EDR, servers, applications, and other security controls.
  • Work with SIEM platforms to identify threats, correlations, and unusual activity.
  • Conduct basic threat intelligence and investigation activities.
  • Document security incidents, investigations, findings, and recommended actions.
  • Assist with vulnerability and security monitoring activities where required.
  • Contribute to improving detection rules, alert tuning, and SOC processes.
  • Stay informed about emerging cybersecurity threats, attack techniques, and industry best practices., Serve as a client-facing Tier 2 SOC Analyst supporting detection strategy, alert tuning, threat detection, and attack surface reduction. Responsibilities include reducing alert fatigue, managing MDR provider feedback loops, implementing SentinelOne rules, mapping detections to security frameworks, coordinating remediation, prioritizing vulnerabilities, reporting metrics, and improving identity and privileged-account controls. The role requires AI tools, SIEM and EDR experience, knowledge of attacker tactics, and strong technical communication.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field, or equivalent practical experience.
  • Experience in a SOC, cybersecurity, IT security, or related role.
  • Good understanding of networking concepts, TCP/IP, DNS, HTTP/HTTPS, VPNs, firewalls, and common network protocols.
  • Knowledge of security monitoring and incident response processes.
  • Hands-on experience with SIEM, EDR, IDS/IPS, or other security monitoring technologies.
  • Familiarity with Windows and Linux operating systems and their security logs.
  • Understanding of common cyber threats, attack techniques, malware, phishing, and credential-based attacks.
  • Strong analytical, troubleshooting, and problem-solving skills.
  • Good written and verbal communication skills., * Experience with platforms such as Microsoft Sentinel, Splunk, IBM QRadar, Elastic, or similar SIEM solutions.
  • Familiarity with MITRE ATT&CK and common threat-hunting methodologies.
  • Relevant certifications such as Security+, CySA+, CEH, GCIH, or equivalent.
  • Experience with EDR/XDR solutions and endpoint investigations.
  • Basic scripting or automation knowledge using Python, PowerShell, or similar technologies.
  • Experience working in a 24/7 SOC environment is a plus.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on teamficient.zohorecruit.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

Videos

See all

Related articles

See all