Securance Consulting · 4 hours ago
IT Professional – Security / Tier 1 Analyst
Securance Consulting is seeking an IT Professional – Security / Tier 1 Analyst to join their Security Operations Center. This entry-level role is responsible for monitoring security alerts, performing initial investigations, executing basic containment actions, and escalating incidents to Tier 2 analysts as necessary.
Cyber SecurityInformation ServicesInformation Technology
Responsibilities
Monitor security alerts from SIEM, IDS/IPS, EDR, and related security platforms
Validate alerts and identify false positives through initial analysis
Classify alerts based on severity and potential impact
Perform Tier-1 level investigation of security events using logs, telemetry, and contextual data
Enrich alerts with host, user, network, and threat intelligence context
Identify basic indicators of compromise and suspicious behaviors
Escalate confirmed or complex incidents to Tier 2 analysts following SOC procedures
Provide complete investigation notes and supporting evidence to ensure smooth handoff
Execute approved Tier-1 containment actions such as endpoint isolation, account disabling, or temporary network blocks under established playbooks
Validate containment effectiveness and document actions
Maintain accurate case records within SOC case management or ticketing systems
Ensure documentation meets quality and timeliness standards
Track recurring alert patterns and support continuous improvement
Assist with basic tuning of security monitoring tools to reduce false positives
Report detection gaps and improvement opportunities to Tier 2 or engineering teams
Qualification
Required
Associate's degree in Computer Science, Management and Information Systems (MIS), Business, or a related field
System-specific technical certifications may substitute for the Associate degree
Experience in IT security, infrastructure, or application support may substitute for education on a year-for-year basis
Minimum of 24 months of technology experience in IT security or in supporting security aspects of IT infrastructure or application teams
CompTIA Security+
GIAC GSEC
CompTIA CySA+
Security alert triage
Tier-1 incident investigation
Log and telemetry analysis
Threat indicator recognition
Incident escalation coordination
Documentation and reporting
Attention to detail
Ability to follow structured procedures
Preferred
Familiarity with SIEM, EDR, IDS/IPS platforms
Understanding of basic networking concepts (TCP/IP, UDP)
Familiarity with Windows, Linux, and macOS environments
Awareness of common attack techniques and threat vectors