SOC Analyst
Mandatory Must-Have Foundational understanding of Security Operations Center (SOC) structure and incident response lifecycle (detection → analysis → containment → recovery → reporting) Basic hands-on exposure to SIEM tools (e.g., LogRhythm, ELK, Splunk equivalent) – log monitoring, alert review, dashboard usage Basic knowledge of log analysis and threat detection concepts (Windows logs, firewall logs, authentication logs, etc.) Understanding of cybersecurity technologies such as PAM, EDR, XDR, SOAR, IDS/IPS, WAF, DLP (conceptual knowledge acceptable) Understanding of networking fundamentals (TCP/IP, DNS, HTTP, ports, firewalls) Exposure to cloud or platform security concepts (AWS/Azure/GCP basics acceptable) Ability to perform research on cybersecurity best practices and produce process/procedural documentation Willingness to support rostered weekend/night operations