Junior SOC Analyst Internship
Job Summary
This is a remote position.
The Junior Security Operations Center (SOC) Analyst Internship Program at EncryptEdge Labs is designed to provide aspiring SOC analysts with hands-on experience in monitoring and defending against cyber threats. Throughout the eight-week program interns will engage in practical tasks that cover everything from threat landscape understanding data collection and analysis incident response to vulnerability management and compliance.
Participants will gain exposure to SOC tools log analysis using the ELK stack security monitoring with Wazuh and will develop skills in advanced incident handling and forensic analysis. The program culminates in a capstone project and final presentation that will demonstrate the interns proficiency in SOC operations.
Key Responsibilities:
- Learn and implement SOC techniques including log management security monitoring and incident response.
- Conduct in-depth data collection traffic analysis and log file analysis using tools like ELK and Wazuh.
- Engage in threat intelligence vulnerability management and compliance reporting.
- Participate in advanced incident handling forensic analysis and SOC efficiency improvement.
- Complete a capstone project and present findings at the end of the internship.
- Passion for cybersecurity with a focus on security operations and threat monitoring.
- Consistency in meeting deadlines and completing tasks with attention to detail.
- Strong documentation skills to present findings in a clear concise and professional manner.
- Effective communication skills for working collaboratively with mentors and peers.
- A degree in Computer Science Network Engineering or a related field is preferred but not mandatory.
- Basic understanding of networking concepts (e.g. TCP/IP DNS firewall basics) and operating systems (Windows/Linux).
- Familiarity with SOC workflows log analysis and key cybersecurity concepts is a plus.
- Splunk Fundamentals 1
- TryHackMe SOC Level 1 Path
- AlienVault OSSIM Training
- Understanding of log analysis including recognizing and interpreting security events.
- Familiarity with alert triaging and prioritization in incident response.
- Knowledge of common cyber threat vectors (e.g. phishing malware ransomware).
- Hands-on experience with SIEM platforms such as:
- Splunk Graylog or QRadar.
- Splunk Graylog or QRadar.
- Familiarity with endpoint monitoring tools like OSSEC and Wazuh.
- Exposure to threat intelligence platforms (e.g. Recorded Future AlienVault OTX).
- Access to a computer and a reliable internet connection.
- Ability to set up and maintain a secure work environment (guidance will be provided).
- Completed courses or projects in SOC-related fields or security operations.
- Participation in security challenges or labs focusing on threat detection and incident response.
Required Skills:
Core Attributes: Passion for cybersecurity with a focus on security operations and threat monitoring. Consistency in meeting deadlines and completing tasks with attention to detail. Strong documentation skills to present findings in a clear concise and professional manner. Effective communication skills for working collaboratively with mentors and peers. Educational Background: A degree in Computer Science Network Engineering or a related field is preferred but not mandatory. Foundational Knowledge: Basic understanding of networking concepts (e.g. TCP/IP DNS firewall basics) and operating systems (Windows/Linux). Familiarity with SOC workflows log analysis and key cybersecurity concepts is a plus. Certifications (Preferred): Splunk Fundamentals 1 TryHackMe SOC Level 1 Path AlienVault OSSIM Training Key Skillset: Understanding of log analysis including recognizing and interpreting security events. Familiarity with alert triaging and prioritization in incident response. Knowledge of common cyber threat vectors (e.g. phishing malware ransomware). Tool Proficiency: Hands-on experience with SIEM platforms such as: Splunk Graylog or QRadar. Familiarity with endpoint monitoring tools like OSSEC and Wazuh. Exposure to threat intelligence platforms (e.g. Recorded Future AlienVault OTX). Logistical Requirements: Access to a computer and a reliable internet connection. Ability to set up and maintain a secure work environment (guidance will be provided). Preferred Experience: Completed courses or projects in SOC-related fields or security operations. Participation in security challenges or labs focusing on threat detection and incident response.