SOC Analyst L1- 12x7

Devoteam
Madrid
Workplace: HybridFull timeFunction: CybersecuritySkills: ["Documentation","Incident triage","Threat analysis","Incident response support","Attention to procedures"]

Work in a dedicated SOC team as an L1 analyst, monitoring and triaging security alerts from SIEM, IDS/IPS, and EDR platforms. Validate alerts, document events and actions, and escalate verified incidents to L2 analysts following defined procedures. Assist in incident response under supervision, conduct basic IoC enrichment, and support threat hunting and post-incident reporting and knowledge-base contributions.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Devoteam
Devoteam
4 days ago

SOC Analyst L1- 12x7

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 1 hour agoStatus: Live

Job Summary

Work in a dedicated SOC team as an L1 analyst, monitoring and triaging security alerts from SIEM, IDS/IPS, and EDR platforms. Validate alerts, document events and actions, and escalate verified incidents to L2 analysts following defined procedures. Assist in incident response under supervision, conduct basic IoC enrichment, and support threat hunting and post-incident reporting and knowledge-base contributions.
Location: Madrid
Workplace: Hybrid
Employment Type: Full time · Permanent
Job Function: Cybersecurity
Seniority: Entry level

Key Responsibilities

  • •Monitor security and triage/manage alerts across SIEM, IDS/IPS, EDR, and other security platforms.
  • •Perform initial alert triage and identification based on established procedures.
  • •Escalate verified security incidents to L2 analysts following documented escalation processes.
  • •Assist with initial incident response under supervision and support evidence collection and preservation.
  • •Review and analyze alerts for legitimacy and potential impact, perform basic IoC enrichment, and maintain incident documentation and reporting.

Key Requirements

  • •B2–C1 English proficiency (oral, written, and reading).
  • •Experience with SIEM platforms such as Google SecOps, Microsoft Sentinel, PaloAlto XSIAM, and CrowdStrike NGSIEM.
  • •Knowledge of incident response methodologies and SOC procedures.
  • •Experience with EDR tools including CrowdStrike Falcon, Sophos Intercept X, SentinelOne, or Microsoft Defender ATP.
  • •Ability to triage and identify security alerts and escalate verified incidents to L2 using documented escalation procedures.
Experience:CybersecuritySOC
Skills:DocumentationIncident triageThreat analysisIncident response supportAttention to procedures
Languages:English
Tech Stack:SIEMGoogle SecOpsMicrosoft SentinelPaloAlto XSIAMCrowdStrike NGSIEMIDS/IPSEDRCrowdStrike FalconSophos Intercept XSentinelOneMicrosoft Defender ATPIoCThreat huntingSOPPlaybooks

Company Brief

Devoteam
Devoteam is an IT consulting firm specializing in digital transformation, cloud, cybersecurity, and data solutions for enterprise clients across Europe and the Middle East, combining technology partnerships with management consulting services.
Industry: Consulting
Company Size: Enterprise (1,001+ employees)
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Paris, France
Founded: 1995
WebsiteLinkedIn