Cyber Security Analyst – L1 (Level 1)
Work Experience : 1-2 years
Job Summary
The L1 Analyst is responsible for first-level monitoring, triage, and escalation of security incidents within the Security Operations Center (SOC).
Responsibilities
- Monitor SIEM dashboards and security alerts.
- Perform initial investigation and triage of incidents.
- Escalate validated threats to higher-level analysts.
- Monitor endpoint security, firewall, and IDS/IPS alerts.
- Generate daily security reports.
- Maintain incident tickets and documentation.
- Follow incident response procedures.
Required Skills
- 1–2 years of cybersecurity or SOC experience.
- Knowledge of:
- SIEM platforms
- Firewalls
- IDS/IPS
- EDR/XDR solutions
- Understanding of:
- MITRE ATT&CK Framework
- Cyber Kill Chain
- Security monitoring concepts
- Basic scripting (PowerShell, Bash, Python).
Key Tools
- Splunk
- Microsoft Sentinel
- QRadar
- Wireshark
Work Location: In person