Key Responsibilities
- Security Monitoring & Incident Response
- Monitor SIEM alerts and security logs to identify potential threats and suspicious activity.
- Investigate and triage security incidents, escalating critical events to Level 2 or 3 analysts.
- Support root cause analysis and help implement corrective actions.
- Assist in proactive threat hunting to uncover hidden threats.
- Maintain detailed incident documentation and reporting.
- Collaboration & Support
- Work closely with SOC L2, Incident Response, and Threat Intelligence teams to enrich context around threats.
- Generate actionable reports for technical and non-technical stakeholders.
- Maintain internal documentation and contribute to knowledge base growth.
- Audit & Continuous Improvement
- Participate in regular SOC reviews, post-incident analysis, and service improvement initiatives.
- Help assess detection gaps and suggest improvements to security visibility and response.
- Track SOC metrics and contribute to performance evaluations.
- Availability & Responsiveness
- Willing to work on rotational shifts to support 24x7 SOC operations.
- Available to assist during critical security incidents outside of office hours.
- Proactively contribute to team success, including supporting tasks beyond assigned responsibilities.
Required Qualifications
- Educational Background
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field.
- Fresh graduates are highly encouraged to apply – especially those with strong academic projects, internships, or certifications in cybersecurity.
- Technical Skills
- Familiarity with SIEM platforms such as Microsoft Sentinel, IBM QRadar, or Splunk.
- Exposure to endpoint detection & response (EDR/XDR), IDS/IPS, and basic malware analysis.
- Knowledge of cybersecurity frameworks such as MITRE ATT&CK, Kill Chain, Diamond Model.
- Understanding of incident response procedures and threat classification.
- Soft Skills
- Strong analytical and critical thinking abilities.
- Clear communication skills for technical and business audiences.
- Ability to work well independently and within a team under pressure.
- Passion for cybersecurity and continuous learning.
Preferred Certifications
- CompTIA CySA+, CEH v11/v12, or equivalent.
- Microsoft Sentinel, IBM QRadar, or Google Chronicle SIEM certifications.
Why join us
- Career growth opportunities
- Friendly work environment
Benefits
Medical Card, Birthday Leave, Team Building, Sport Activities and many more!
We’re a growing team that values teamwork, learning, and respect. If you’re eager to improve and try new things, we’d love to meet you!