onsite
Security Operations Center Analyst I - City of Phoenix
Systems Engineer
Entry‑level SOC Analyst responsible for real‑time monitoring, investigation, and response to security events using SIEM tools, incident response processes, and basic scripting to protect enterprise IT assets.
About the role
Key Responsibilities
- Monitor security alerts and events across the enterprise using SIEM platforms and dashboards.
- Investigate and triage potential incidents, performing initial analysis and escalation as needed.
- Execute incident response procedures, including containment, eradication, and documentation.
- Conduct basic threat‑hunting activities and contribute to the development of detection rules.
- Collaborate with IT teams to remediate vulnerabilities and improve security posture.
Requirements
- Fundamental knowledge of networking concepts, Windows and Linux operating systems.
- Experience with SIEM tools (e.g., Splunk, QRadar, ArcSight) and log analysis.
- Understanding of incident response lifecycle and basic threat‑hunting techniques.
- Proficiency in scripting or automation using Python or similar languages.
- Strong analytical, communication, and documentation skills.