Job Title : Security Operations Center (SOC) Analyst
Job Purpose :L1 SOC Analyst XDR Platform - L1 SOC Analyst to provide 24x7 security monitoring and support for Extended Detection and Response (XDR) platform. This role is the first line of defense in identifying triaging and escalating potential security incidents ensuring threats are addressed quickly and effectively.
Certification :
Responsibilities:
Security Monitoring & Incident Handling
Triage and investigate escalated alerts from SIEM XDR (CrowdStrike) EDR email and network security tools.
Perform log correlation and in-depth investigations using Splunk/Elastic dashboards and queries.
Handle incidents across endpoints cloud (Azure/OCI/GCP) email DLP and network layers.
Respond to phishing malware unauthorized access and insider threat alerts.
Support forensic triage using EDR tools and sandbox results (e.g. Falcon Sandbox).
SOC Engineering & SIEM Operations
Create fine-tune and optimize detection rules and dashboards in Splunk.
Maintain and troubleshoot Splunk forwarders heavy forwarders and dashboards under guidance.
Participate in log onboarding and validation for new sources (e.g. CSPM EDR DLP Cloud tools).
Support automation workflows and enrichment via playbooks.
Tool Proficiency & Admin Support
Hands-on knowledge of:
EDR/XDR: CrowdStrike
SIEM: Splunk Elastic (optional)
Email Security: Mimecast
DLP: Forcepoint (Web/Email) Netskope (CASB/ZTNA)
Vulnerability Management: Nessus Qualys
Threat Intel Tools: IOC lookups sandboxing tools OSINT
Documentation & Compliance
Continuous Improvement
Mandatory :
Certifications such as CompTIA CySA CEH Splunk Core/User or AZ-500 preferred.
Required Experience:
Manager
Intertec Systems is an IT services company headquarters in Dubai. We specialize in Retail, Banking, Insurance, and Healthcare organizations across Middle East and India. Intertec’s key capabilities include Digitalization of Business Operations, IT Services and Operations, Hybrid IT, S ... View more