Location
Arlington Heights
Posted
June 03, 2026
Commute
Local Area
Local Opportunity Near You!
This job is in your area. Enjoy a short commute and work close to home.
Job Description
Job Description
The SOC Analyst I is a junior/associate level, customer facing role responsible for 24ร7 monitoring, initial triage, and escalation of security events. The analyst helps protect the organization by reviewing alerts, investigating suspicious activity, executing documented playbooks, and supporting incident response activities. This role focuses on day to day security operations across multiple domains such as network, endpoint, email, and application security, while contributing to the continuous improvement of SOC processes, documentation, and incident handling practices.
โขโSecurity Monitoring & Triage (60%)
oโMonitor SIEM/SOAR and security tool queues for alerts; perform initial triage, enrichment, and severity classification.
oโInvestigate email borne threats (phishing, malware, BEC indicators) using consoles and reports; quarantine/contain per playbooks.
oโReview WAF events (rules, thresholds, bot activity, anomalies), validate true/false positives, an...
The SOC Analyst I is a junior/associate level, customer facing role responsible for 24ร7 monitoring, initial triage, and escalation of security events. The analyst helps protect the organization by reviewing alerts, investigating suspicious activity, executing documented playbooks, and supporting incident response activities. This role focuses on day to day security operations across multiple domains such as network, endpoint, email, and application security, while contributing to the continuous improvement of SOC processes, documentation, and incident handling practices.
โขโSecurity Monitoring & Triage (60%)
oโMonitor SIEM/SOAR and security tool queues for alerts; perform initial triage, enrichment, and severity classification.
oโInvestigate email borne threats (phishing, malware, BEC indicators) using consoles and reports; quarantine/contain per playbooks.
oโReview WAF events (rules, thresholds, bot activity, anomalies), validate true/false positives, an...