Jobs Companies CallTek SOC Analyst L1

À propos de ce poste SOC Analyst L1 chez CallTek

CallTek · Télétravail · Philippines

As a SOC Analyst L1, you will monitor and triage cybersecurity alerts from multiple sources (SIEM/EDR/network), determine whether activity is benign or suspicious, document evidence clearly, and escalate confirmed or potentially high-risk cases following playbooks and SLAs.

Responsibilities:

  • Monitor security events and alerts in SIEM and defensive tools; perform initial triage and classification (benign / false positive / suspicious / incident).
  • Collect and review basic evidence: endpoint telemetry, Windows/Linux logs, firewall/IDS, DNS/proxy; perform initial correlation (host/user/IP/IOC/process).
  • Execute runbooks/playbooks (e.g., password reset request, IOC block request, host isolation request) when authorized and aligned with procedures.
  • Create and maintain high-quality tickets with a clear narrative: what happened, supporting evidence, potential impact, actions taken, recommended next steps.
  • Escalate to L2/L3/IR when there is evidence of compromise, material risk, lateral movement, or uncertainty that requires deeper investigation.
  • Deliver structured shift handovers (case status, findings, hypotheses, next steps, blockers).
  • Meet operational SLAs and documentation of quality standards.

Requirements

  • 0–2 years in SOC/NOC/IT Security operations or equivalent hands-on experience demonstrated via labs/casework.
  • Solid fundamentals in networking: TCP/IP, DNS, HTTP/S, VPN, NAT.
  • Basic working knowledge of Windows and Linux (processes, authentication, logging concepts).
  • Ability to interpret log fields (source/destination, user, process, hash, URL, action, result).
  • Strong spoken and written English (minimum B2) — must be able to join technical calls and write clear tickets and summaries in English.
  • Strong attention to detail, structured thinking, prioritization, and ability to work under pressure and repetitive workflows without quality loss.
  • Experience with SIEM/EDR/IDS tools (e.g., Wazuh, Splunk, Sentinel, QRadar; Defender/CrowdStrike; Suricata/Snort). (Nice to have )
  • Basic query skills (KQL/SPL/Lucene/DQL) and familiarity with MITRE ATT&CK concepts. (Nice to have )
  • Entry-level certifications (e.g., Security+, BTL1, CySA+) or equivalent proof of competence. (Nice to have )
Prêt à postuler chez CallTek ?
Postuler chez CallTek

À propos de CallTek

CallTek is a leading provider of comprehensive back-office support services, empowering businesses to thrive in today’s dynamic market. With over 20 years of experience and a global workforce of 8,000 professionals; we specialize in offering tailored solutions that drive efficiency, innovation, and growth.

Voir tous les emplois chez CallTek →

Emplois similaires

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez CallTek

Voir tous les emplois chez CallTek →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit