About the Role
As a Level 1 SOC Analyst, you will be at the forefront of the organization's cybersecurity defenses, responsible for monitoring and analyzing security alerts to detect and respond to potential threats. Utilizing advanced tools such as Microsoft Sentinel, you will triage security events, investigate anomalies, and collaborate with senior analysts to safeguard digital assets. This role provides an excellent foundation for aspiring cybersecurity professionals, offering hands-on experience in a dynamic and fast-paced environment.
Responsibilities
Monitoring and Threat Detection:
- Actively monitor Microsoft Sentinel for security alerts and identify potential threats to the organization's environment.
- Evaluate and prioritize security events based on severity and potential impact.
- Detect suspicious behaviors and patterns using event logs, network data, and other security tools.
Incident Investigation:
- Investigate alerts to identify indicators of compromise (IOCs) such as unauthorized access, malware activity, or phishing attempts.
- Correlate data from multiple sources to build a comprehensive picture of potential security incidents.
- Document findings and maintain detailed records of all events and actions taken.
Escalation and Collaboration:
- Escalate verified security incidents to Level 2 analysts or the Incident Response team, providing detailed contextual information.
- Collaborate with cross-functional teams to mitigate security risks effectively.
- Maintain communication with stakeholders to ensure timely updates during incidents.
Initial Response and Remediation:
- Perform basic response actions under supervision, such as disabling compromised accounts, blocking malicious IPs, or containing suspicious activities.
- Support efforts to reduce false positives by fine-tuning detection rules and alert configurations.
- Participate in 24/7 shift rotations, including weekends and public holidays, to ensure continuous monitoring coverage.
- Ensure timely triage and escalation of alerts in accordance with defined SLA/OLA timelines.
Continuous Learning and Improvement:
- Stay informed on cybersecurity trends, vulnerabilities, and emerging threats.
- Participate in training programs to deepen your understanding of tools, techniques, and best practices.
- Contribute to the refinement of SOC processes and playbooks.
Qualifications
- Bachelor's Degree in Computer Science, Information Security, or a related field (or equivalent experience).
- 0–2 years of experience in a cybersecurity, IT support, or related technical role.
- Hands-on experience with basic troubleshooting and security tools is a plus.
- Familiarity with Microsoft Sentinel and other SIEM tools.
- Utilize integrated tools such as Defender for Endpoint, JIRA Service Management, and SOAR platforms to support alert triage and response workflows.
- Basic understanding of networking protocols (TCP/IP, DNS, VPNs) and operating system fundamentals.
- Knowledge of cybersecurity principles, common threat types, and attack methods.
- Ability to analyze log data, correlate events, and identify suspicious activities.
- Strong analytical thinking and attention to detail.
- Effective written and verbal communication skills to convey findings clearly.
- Ability to multitask and adapt in a fast-paced environment.
- Team-oriented mindset with a willingness to learn and grow.
- Proven English communication skills supported by professional certifications such as IELTS, TOEIC, or BEC.
Preferred Skills
- CompTIA Security+, Microsoft Certified: Security Operations Analyst Associate, or equivalent entry-level cybersecurity certifications.
Why Join Us
- Career Growth Without Boundaries: Advance in a fast-growing Microsoft partner organization with opportunities to contribute to a rapidly expanding regional team.
- Global Exposure: Work across ASEAN markets and collaborate with leading international technology partners.
- Cutting-Edge Microsoft Solutions: Shape customer conversations around Modern Work, Security, Compliance, Copilot, Azure and digital transformation.
- High-Performance Culture: Join a team that values collaboration, innovation, customer credibility and professional excellence.
- Continuous Learning: Access advanced training, certifications and real-world customer challenges to sharpen your technical and consulting capability.
To apply, please submit your CV to Thinh Truong (Mr) at [Confidential Information] or 0386729007 (Telegram/Zalo). We regret that only shortlisted candidates will be notified soon!