SOCGuardians is seeking a SOC Analyst L1 Intern to join our Security Operations team. This internship is ideal for candidates with a solid foundation in cybersecurity, practical experience with Wazuh, and a basic understanding of SOC operations and networking. The role offers an excellent opportunity to develop hands-on skills in security monitoring and incident response within a dynamic environment.
Key Responsibilities
- Monitor and review security alerts and events using Wazuh SIEM.
- Perform initial analysis and triage of security alerts to determine their severity and relevance.
- Identify suspicious activities and escalate incidents following established procedures.
- Review logs and investigate basic security events to support threat detection efforts.
- Assist in documenting incidents and maintaining accurate security records.
- Support the team in monitoring endpoints, network activity, and security events to ensure continuous protection.
- Continuously enhance practical SOC and security monitoring skills through active learning and collaboration.
Required Qualifications
- Wazuh certification is mandatory.
- Hands-on experience with Wazuh gained through labs, projects, internships, or practical environments.
- Basic understanding of SOC operations, including alert monitoring, event analysis, incident triage, and escalation processes.
- Fundamental knowledge of networking concepts such as TCP/IP, DNS, HTTP/HTTPS, ports, protocols, and common network attacks.
- Basic familiarity with Linux and Windows operating systems.
- Understanding of logs, security events, and common cybersecurity threats.
- Strong interest in pursuing a career in Security Operations and Blue Teaming.
- Good analytical, problem-solving, and communication skills.
Preferred Qualifications and Benefits
- Exposure to other SIEM or security tools is advantageous.
- Experience with hands-on cybersecurity labs or Capture The Flag (CTF) challenges.
- Basic knowledge of incident response, threat detection, or endpoint security enhances candidacy.
Candidates will be primarily evaluated based on their Wazuh certification, practical hands-on experience, and their understanding of fundamental SOC and networking concepts. This internship provides a valuable platform to build expertise in security operations and contribute to protecting organizational assets.