SOC Analyst
- غير محدد
نُشرت أمس
عن الوظيفة
About Accenture
Accenture is a leading global professional services company helping the world's leading enterprises reinvent — building their digital core, unleashing the power of AI, and creating value at speed and scale. We bring together deep industry expertise, cutting-edge technology, and bold thinking to deliver outcomes that matter.
You'll be on the front line of 24x7 SOC operations protecting enterprise clients against active threats. This isn't a passive monitoring role — you'll be triaging, investigating, and responding to real incidents, working within a high-performing global delivery team where speed, accuracy, and judgment all matter.
Monitor and analyze security alerts from SIEM, SOAR, EDR, and other security tools to identify potential threats across client environments
Perform timely triage, validation, and investigation of alerts in line with SLA requirements and prioritization frameworks (P1–P4)
Execute containment, response, and remediation actions using established SOC runbooks
Manage incidents through the full case lifecycle — accurate documentation, status updates, and closure in the case management system
Monitor SOC communication channels and ensure timely response to inquiries, escalations, and stakeholder coordination
Escalate high-severity and complex incidents in line with SLAs, including immediate notification for potential P1/P2 cases
Conduct effective shift handovers, ensuring active and critical cases are transferred with full context
Identify and report operational gaps, anomalies, or delays within the same shift to relevant leads
Contribute to continuous improvement by surfacing gaps in detection, logging, automation, and case handling processes
What You'll Need
Strong understanding of cybersecurity fundamentals — threat types, attack vectors, the CIA triad, and incident response principles
Working knowledge of operating systems (Windows, Linux/Unix) and networking concepts (TCP/IP, OSI model, DNS, HTTP/S)
Hands-on experience or familiarity with SIEM/SOAR platforms, endpoint protection, firewalls, and security monitoring tools
Ability to analyze logs, network traffic, and endpoint telemetry to identify malicious activity
Disciplined and process-oriented — able to work effectively in a shift-based, SLA-driven environment
Clear communicator with strong documentation habits and the ability to coordinate across internal and external stakeholders
Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or a related field
Bonus Points
Familiarity with the MITRE ATT&CK framework for threat identification and mapping
Exposure to cloud security concepts across Azure, AWS, or GCP
Relevant certifications such as CompTIA Security+, BTL1, or CEH