Company Overview:
When it comes to IT solution providers there are a lot of choices. But when it comes to providers with innovative and differentiating end-to-end service offerings theresonlyone: Zones First Choice for IT.TM
Zones is a global Solution Provider of end-to-end IT solutions with an unmatched supply chain. Positioned to be the IT partner you need Zones a Minority Business Enterprise (MBE) in business for over 35 years specializes in Digital Workplace cloud & Data Center Networking Security and Managed/Professional/Staffing services. Operating in more than 120 countries leveraging a robust portfolio and utilizing the highest certification levels from key partners including Microsoft Apple Cisco Lenovo Adobe and more Zones has mastered the science of building digital infrastructures that change the way business does business ensuring whatever they need they can Consider IT Done. Follow Zones LLC on Twitter (Zones) LinkedIn and Facebook.
Position Overview:
The SOC Level 1 Analyst is the first line of defense in monitoring detecting and responding to security threats within an organization. The L1 analyst is primarily responsible for continuously monitoring the organizations SIEM (e.g. Microsoft Sentinel) security tools and alerting systems to identify potential security incidents.
They act as the initial triage point analyzing alerts validating threats escalating issues as necessary and ensuring timely documentation and communication. This role requires strong analytical skills attention to detail and the ability to follow established Standard Operating Procedures (SOPs) and Runbooks.
The Analyst will be responsible for conducting Vulnerability Assessments supporting Vulnerability Management activities and providing threat intelligencedriven recommendations. They will also assist in implementing remediation measures to strengthen the organizations overall security posture.
What youll do as the SOC Analyst L1:
- Monitor threats to an organizations IT infrastructure.
- Utilize and adhere to defined workflow and processes driving the response and mitigation efforts
Collect relevant artifacts in support of incident response activities. - Conduct technical analysis on impacted systems to determine impact scope and recovery from active and potential cyber incidents.
- Validate findings reported by SIEM.
- Take ownership of cases escalated by SIEM Analysts (Tier I).
- Assess security systems and measures for weaknesses and possible improvements.
- Threat and vulnerability analysis.
- Share and document your knowledge with teammates and guide them in the resolution of complex technical problems.
- Troubleshoot incidents identify root cause fix and document problems and implement preventive measures.
- Ensure accurate and timely resolution of all assigned issues confirming to a strict SLA.
- Experience coordinating support issue resolution and handling escalations.
- Designing and preparing technical reports charts and graphs to record results.
- Lead junior staff members on assigned shift provide guidance and training on best practice operations SLA communications.
- Work with partners vendors and business stakeholders to develop and interpret security policies and procedures.
- Architect design implement support and evaluate security-focused tools and services.
- Handle SIEM Configuration administration log sources integrations.
What you will bring to the team:
Required Skills:
- Solid communication (Verbal Written) and interpersonal skills.
- Team player collaborator.
- Ability to work independently and provide guidance to new staff on the team.
- Knowledge of information risk and security policies standards and regulations related to information security data confidentiality (PCI-DSS etc.) and desktop server application database and network security principles.
- Sound knowledge of threats and cybersecurity trends.
- Sound knowledge in areas like networking malware analysis incident response and cyber etiquette.
- Good to have experience with scripting languages such as Python PowerShell and JavaScript
- Good to have hands on KQL Queries and automation.
- Must be able to perform hands-on support for a wide range of security technologies Azure Sentinel SIEM IDS/IPS malware analysis and protection identity and access management data loss prevention content filtering technologies vulnerability scanners etc.).
- Experience executing incident handling procedures.
- Microsoft Office 365 Azure Windows Active Directory Windows Server.
- Customer experience with cloud and hybrid infrastructures broad experience with Microsoft 365
Security Azure Security. - Strong client-facing communication skills (verbal and written) with the ability to engage across all organizational levels.
- Experience 2 to 4 Years
- Education BE BTech bachelors in computer science.
Nice to have:
- Microsoft security stack Sentinel SIEM XDR Defender CrowdStrike Sentinel One other EDR Cisco Palo Alto
- Experience with ticketing systems such as Service-Now Zendesk Jira Freshdesk etc.
- Ability to work independently in a fast-paced environment where technology and customers
requirements can change regularly. - Knowledge of Vulnerability Assessment & Vulnerability Management.
- Microsoft Certifications related to Cyber Security CEH.
Zones offers a comprehensive Benefits package:
While were committed to providing top-tier solutions were just as committed to supporting our own
teams. We offer a competitive compensation package where our team members are rewarded based on
their performance and recognized for the value they bring into our business. Our team members enjoy a
variety of comprehensive benefits including Medical Insurance Coverage Group Term Life and Personal
Accident Cover to handle the uncertainties of life flexible leave policy to balance their work life.
At Zones work is more than a job its an exciting career SOC Analyst L1 immersed in an inventive collaborative culture. If youre interested in working on the cutting edge of IT innovation sales engineering operations administration and more Zones is the place for you!
All qualified applicants will receive consideration for employment without regard to race colour religion
sex sexual orientation gender identity national origin veteran status or on the basis of disability.