Security Operations Center Analyst
פורסם אתמול · 76 מועמדים
- Graduate of a comprehensive cybersecurity / information security course, or practical background in monitoring and support (Help Desk / NOC / technical support)
- Basic familiarity with the Microsoft environment: Entra ID (Azure AD), Active Directory, Microsoft 365, Windows
- Basic understanding of networking and protocols (TCP/IP, DNS, DHCP, VPN)
- Experience working with AI tools (Copilot / ChatGPT / Claude)
- Good English – reading, writing, and the ability to communicate verbally with customers
- Familiarity with Microsoft Sentinel / Defender XDR / Defender for Endpoint
- Basic KQL query writing
- Familiarity with the MITRE ATT&CK framework and Threat Intelligence concepts
- Experience with ticketing systems (monday.com, Jira, ServiceNow)
- Basic scripting knowledge – PowerShell / Python
חולץ מתיאור המשרה · מתעדכן אוטומטית
תיאור המשרה המלא
המשרה המקורית · נשמר לעיוןSOC Analyst - Night & Weekend Shifts
Part-Time | Holon, On-Site | Ideal for Students & Cybersecurity Course Graduates
Your Way Into Cybersecurity - Real Experience, Not a Simulation
Just finished a cybersecurity course and looking for your first role in the field? This is the position you've been waiting for.
Direct Expert (DEX) is a Microsoft Cloud Tier 1 Managed Service Provider and Systems Integrator, empowering enterprises, startups, and digital natives with cutting-edge cloud, data, AI, and security solutions. Our SOC/NOC operates 24/7, monitoring the security and infrastructure environments of enterprise customers in real time built on Microsoft Sentinel and Defender XDR.
We're hiring an Analyst for night and weekend shifts - a genuine entry-level role where you'll gain hands-on experience in a live enterprise security operations center, working with the most in-demand technologies in the market.
What You'll Do
• Monitor security alerts and events in real time across SIEM/EDR platforms (Microsoft Sentinel, Defender XDR)
• Triage and prioritize alerts – distinguishing false positives from real incidents
• Perform initial investigations: verifying sources, correlating events, collecting evidence, and documenting findings
• Monitor the availability and performance of customer infrastructure and cloud services (NOC), flagging faults and degradations
• Open, update, and close incident tickets in line with SLA commitments
• Execute defined Playbooks and response procedures, escalating to Tier 2 teams as needed
• Communicate directly with customers – providing updates, reports, and professional, courteous service
• Use AI tools daily (Copilot, Claude, ChatGPT) to accelerate investigations, summarize incidents, and build queries
• Conduct structured shift handovers to the incoming team
What We're Looking For (Requirements)
• Graduate of a comprehensive cybersecurity / information security course, or practical background in monitoring and support (Help Desk / NOC / technical support) – no prior SOC experience required
• Basic familiarity with the Microsoft environment: Entra ID (Azure AD), Active Directory, Microsoft 365, Windows
• Basic understanding of networking and protocols (TCP/IP, DNS, DHCP, VPN)
• Experience working with AI tools (Copilot / ChatGPT / Claude) and enthusiasm for integrating them into daily work
• Good English – reading, writing, and the ability to communicate verbally with customers
• Strong service orientation and excellent verbal communication skills – the role involves direct contact with external customers
• Genuine availability for night and weekend shifts
• High personal responsibility and maturity – some shifts are worked independently, alone at our Holon offices, with professional backup available remotely.
Significant Advantages
• Familiarity with Microsoft Sentinel / Defender XDR / Defender for Endpoint
• Basic KQL query writing
• Familiarity with the MITRE ATT&CK framework and Threat Intelligence concepts
• Experience with ticketing systems (monday.com, Jira, ServiceNow)
• Basic scripting knowledge – PowerShell / Python
• Student of Computer Science / Information Systems / Cybersecurity
• Relevant technological military background
What You'll Get
• Real experience that counts in the market – working in an active enterprise SOC of a Microsoft Tier 1 partner, not a lab or a simulation
• An in-demand technology stack – Microsoft Sentinel, Defender XDR, KQL – exactly the tools employers are looking for
• An AI-First work environment – advanced AI tools embedded in daily investigation workflows
• Professional mentorship and a growth path – structured onboarding, clear procedures, and a development track toward Tier 2 and security roles
• A job that fits around your studies – night and weekend shifts.
שאלות על המשרה
- המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
- Graduate of a comprehensive cybersecurity / information security course, or practical background in monitoring and support (Help Desk / NOC / technical support), Basic familiarity with the Microsoft environment: Entra ID (Azure AD), Active Directory, Microsoft 365, Windows, Basic understanding of networking and protocols (TCP/IP, DNS, DHCP, VPN), Experience working with AI tools (Copilot / ChatGPT / Claude), Good English – reading, writing, and the ability to communicate verbally with customers