XTN-3DFE178 SOC ANALYST
Perform in-depth computer security investigations and incident response with advanced knowledge of SIEM tools, log analysis, and threat detection techniques.
The SOC Analyst performs in-depth computer security investigations and contributes to incident response with greater independence.
This role requires 1–3 years of SOC or security-related experience, with advanced knowledge of SIEM tools, log analysis, and threat detection techniques.
As a SOC Analyst, you will investigate alerts, perform triage, and distinguish between false positives and true incidents. You will apply knowledge of MITRE ATT&CK, TTPs, and endpoint/network behaviors, while also contributing to playbook updates and automation improvements.
In addition, you will provide input for tool optimization and process updates, while continuing to build analytical skills and effective documentation practices.
Information Security
Support implementation of required security measures, such as firewalls or message encryption, monitoring performance to notify security experts of any problems.
Customer Service
Carry out a range of customer service activities, including handling customer cases and inquiries that are more complex or outside the norm.
Collaboration and Communication
Work closely with teammates and clients to communicate clearly about threats, risks, and mitigation efforts. Mentor and guide SOC Analyst I team members in investigative techniques.
Compliance and Reporting
Ensure incidents and responses are properly documented for auditing and compliance. Generate reports on SOC activities, threat trends, and metrics.
Support regulatory requirements such as PCI-DSS, HIPAA, or GDPR depending on the organization.
Threat Detection and Monitoring
Actively monitor security information and event management (SIEM) tools for alert s and anomalies. Investigate potential threats, intrusions, and suspicious activities in real-time. Perform correlation of events across multiple systems to identify malicious activity.
Incident Handling and Analysis
Triage and prioritize incidents based on severity and business impact. Lead initial containment, eradication, and recovery efforts during security incidents.
Escalate critical incidents to senior analysts or incident response teams as needed.
Mentoring
Perform basic mentoring tasks, such as answering questions, providing examples, and generally supporting junior colleagues and interns.
Documentation and Backup
Draft and maintain basic technical and/or user documentation to a high standard, and create backup files to ensure instant recovery if problems occur.
Personal Capability Building
Develop and maintain excellent process or technical skills by particip
Posted June 6, 2026