Coretek Services Logo

Coretek Services

SOC Analyst - Level 1

Posted 24 Days Ago
In-Office or Remote
Hiring Remotely in Farmington Hills, MI
Entry level
In-Office or Remote
Hiring Remotely in Farmington Hills, MI
Entry level
Monitor and respond to security alerts, triage incidents, escalate when necessary, and collaborate with Level 2 analysts within a SOC team.
The summary above was generated by AI
Description

Join a highly skilled and motivated team of Cyber Security Professionals tasked with protecting Coretek and its customers. The Cyber Security Analyst Level 1 (SOC Analyst L1) is an entry-level role responsible for the initial detection, triage, and response to security alerts. This includes monitoring security tools, performing basic analysis to identify false positives, following predefined playbooks for initial response, and escalating complex or high-priority incidents to Level 2 analysts with detailed documentation. Analysts will leverage SIEM/SOAR platforms, cyber case management, and supplementary tools to investigate, contain, and remediate cyber security incidents. The role requires a drive to learn and grow as the industry and Coretek evolve rapidly.

Coretek recognizes candidates may lack some skills for this unique service provider role and will train and develop the right fit. Desire to learn and collaborate within a team is essential. Skills from other disciplines demonstrate adaptability and are welcome. Formal education or self-taught backgrounds are valued. Structured training and on-the-job experience will prepare analysts for the complex requirements and fast-paced environment of a service provider. Analysts must adapt to industry changes.


ESSENTIAL FUNCTIONS:

· Monitor alerts from SIEM, firewalls, IDS/IPS, and other systems to spot incidents

· Triage alerts by severity, impact, and urgency using set criteria

· Collect initial alert details like source, target, timestamp, and logs

· Use playbooks and SOPs for preliminary analysis to check for false positives or escalation needs

· Perform containment actions per playbooks, such as blocking IPs or isolating systems

· Verify remediation effectiveness and document actions with timestamps

· Collaborate with teams to solve blockers innovatively

· Escalate advanced incidents based on severity, impact, or complexity thresholds

· Provide detailed logs, analysis, and context for smooth handoff to Level 2

· Notify Level 2 or response teams quickly, noting urgency and risks

· Document incidents accurately per SOC standards, including alerts and outcomes

· Keep records organized, timestamped, and accessible for audits

· Update supervisors and Level 2 on status, key findings, and actions needed

Requirements

· Familiarity with SIEM (e.g., Elastic, Splunk, QRadar), firewalls, IDS/IPS, and endpoint tools

· Basic knowledge of networking like TCP/IP, DNS, VPN, and protocols (HTTP, FTP)

· Awareness of common threats (phishing, malware, DDoS) and attack vectors

· Ability to triage alerts, separating false positives from real threats

· Skill in following playbooks and SOPs for initial response and remediation

· Strong attention to detail for monitoring events and spotting anomalies

· Clear documentation of incidents, timestamped for audits or escalations

· Effective communication to report findings and escalate to Level 2

· Team collaboration, especially in incident scenarios

· Handle multiple tasks in a high-pressure, dynamic environment

· Willingness for 24/7 shifts, including nights and weekends

· Sense of urgency and duty in incident response

· Composure under pressure during active incidents


EDUCATION and TRAINING:

· Degree in cybersecurity, IT, related field preferred, or equivalent experience

· Entry-level certs like CompTIA Security+, Cisco CCNA, or equivalent experience

· Security certifications desired

Top Skills

Dns
Elastic
Firewalls
Ftp
HTTP
Ids
Ips
Qradar
SIEM
Soar
Splunk
Tcp/Ip
Vpn

Similar Jobs

An Hour Ago
Easy Apply
Remote
USA
Easy Apply
122K-179K
Senior level
122K-179K
Senior level
Consumer Web • Healthtech • Professional Services • Social Impact • Software
The Associate Principal, Launch (Care Partnerships) will launch new care partners, deepen relationships, and collaborate with internal teams to drive strategy.
3 Hours Ago
Remote or Hybrid
2 Locations
Senior level
Senior level
Logistics • Mobile • Productivity • Software • Transportation
Develop, test, and deliver new AI-focused features for the Zello iOS app while improving existing code and addressing app issues.
Top Skills: C++CoreaudioIos SdkObjective-CSwiftSwiftuiUikit
3 Hours Ago
Remote
United States
130K-150K Annually
Mid level
130K-150K Annually
Mid level
Social Impact • Software
The Product Manager will drive the full product lifecycle for AI-driven products, translating strategies into actionable requirements and collaborating across teams to ensure successful launches.
Top Skills: AI

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account