About the job SOC Analyst
Our US Partner is looking for a highly motivated and detail-oriented SOC Analyst (Security Operations) to join their IT department. This role will be responsible for monitoring, triaging, and responding to security alerts across endpoints, identity systems, and cloud environments.
As a SOC Analyst, you will work closely with the company's Managed Security Service Provider (MSSP) and internal IT teams to validate alerts, contain threats, resolve security tickets, and recommend improvements to security controls and policies.
This is a full-time role, on a US shift and on a Work From Home set-up.
If you have the right skill set, this may be your opportunity to join a fast-growing organization.
DUTIES AND RESPONSIBILITIES:
Monitor, triage, and respond to security alerts from MSSPs, XDR platforms, and other security tools.
Validate alerts and determine whether they are false positives or legitimate threats.
Manage security tickets including categorization, prioritization, escalation, and closure.
Coordinate containment actions with IT teams (e.g., endpoint isolation, account actions, blocking indicators).
Track trends in alerts and incidents and recommend improvements to security controls and detection rules.
Maintain SOC playbooks and response documentation.
Prepare weekly and monthly security reports including incident summaries, alert trends, and remediation updates.
Support continuous improvement initiatives related to monitoring, detection, and response workflows.
QUALIFICATIONS:
Minimum 2+ years of experience in SOC operations, security monitoring, or incident response.
Experience triaging security alerts and managing incident tickets.
Knowledge of SIEM, EDR, firewall, and network security technologies.
Familiarity with endpoint detection and response (EDR) concepts and common attack patterns.
Strong analytical skills and attention to detail.
Excellent written documentation and reporting skills.
CERTIFICATIONS (REQUIRED):
At least one of the following certifications:
CompTIA Security+
CompTIA CySA+
Microsoft SC-200 (Security Operations Analyst)
GIAC certification or equivalent