L1 SOC Analyst - Sofia

Posted 21 Days Ago
Be an Early Applicant
Hiring Remotely in Sofia, Sofia-grad, BGR
Remote
Entry level
Security • Consulting • Cybersecurity
The Role
Monitor and triage security events using Microsoft Sentinel and Defender tools, perform initial investigations, identify IOCs and affected systems, document cases in ServiceNow, escalate actionable incidents, apply MITRE ATT&CK and NIST IR frameworks, and contribute to tuning and SLA-driven SOC operations.
Summary Generated by Built In

Title: Level 1 SOC Analyst

Location: Sofia, on site

Work Hours: Shift pattern

Job type: Full-Time Permanent

Salary: Negotiable / DOE

 

 

About Us

Integrity360 is a leading independent cybersecurity and PCI specialist operating across Europe, Africa, the Caribbean, and North America. The company has office locations in Ireland, the UK, Bulgaria, Italy, Sweden, Spain, Lithuania, Ukraine, Africa, the Caribbean, and Canada, supported by seven Security Operations Centres (SOCs) located in Dublin, Sofia, Madrid, Stockholm, Rome, Johannesburg and Cape Town.
With over 780 employees, including more than 585 dedicated cybersecurity professionals, Integrity360 delivers a full suite of professional, support, and managed security services. These span the complete cyber risk lifecycle, from identification and prevention to detection, response, and recovery. Integrity360 supports over 3000 mid-market and enterprise organisations across sectors including financial services, insurance, government, healthcare, retail, telecommunications, and utilities.
At Integrity360, people come first. We invest heavily in learning, development and progression, fostering a dynamic culture where innovation, collaboration and continuous growth are at the heart of what we do. If you're ready to take your cyber security career to the next level, we’d love to hear from you.

 

 

Job Role / Responsibilities

As a Level 1 SOC Analyst, you will act as the first line of defense, responsible for continuous monitoring, triage, and initial investigation of security events. This role is critical in maintaining security posture and ensuring only high-quality, actionable alerts progress through the SOC pipeline.

Primary Duties/Responsibilities include:

  • Monitor security events across our security ecosystem, including:
    • Microsoft Sentinel
    • Microsoft Defender for Endpoint
    • Defender for Identity
    • Defender for Office365
    • Defender for Cloud Apps
  • Perform alert triage with clear analytical judgement:
    • Validate alerts
    • Assign appropriate severity
    • Provide full investigative context before escalation
  • Conduct preliminary investigations:
    • Identify IOCs, affected systems, attack vectors and potential business impact
    • Apply frameworks such as MITRE ATT&CK, Cyber Kill Chain, and NIST IR lifecycle
  • Maintain high-quality documentation and case notes within ServiceNow SIR
  • Communicate effectively with internal teams and client stakeholders
  • Contribute to continuous improvement through feedback, tuning suggestions, and knowledge sharing
  • Demonstrate strong commitment to ongoing professional development
  • SLA handling/management - Aspire to manage security events in accordance with applicable (response and resolution) SLA’s.

Desired Skills

  • Demonstrable experience in IT or cybersecurity support, ideally within a SOC or monitoring environment
  • Solid understanding of cybersecurity fundamentals and CIA principles
  • Familiarity with SIEM, EDR/XDR, log analysis, and security monitoring workflows
  • Working knowledge of MITRE ATT&CK and NIST IR processes
  • Strong analytical and investigative thinking
  • Excellent written and verbal communication skills
  • Ability to operate independently within Tier 1 scope
  • Fluent in English
  • Ability to work effectively in a fast-paced environment and prioritize tasks accordingly

 

Certifications/Qualifications (preferred but not required)

  • CompTIA Security+, ISC2, ISACA, SANS or equivalent
  • GIAC Security essentials (GSEC)
  • Blueteam security level 1

#LI-JL1

Skills Required

  • Experience in IT or cybersecurity support, ideally within a SOC or monitoring environment
  • Solid understanding of cybersecurity fundamentals and CIA principles
  • Familiarity with SIEM, EDR/XDR, log analysis, and security monitoring workflows
  • Experience with Microsoft Sentinel
  • Experience with Microsoft Defender suite (Endpoint, Identity, Office365, Cloud Apps)
  • Working knowledge of MITRE ATT&CK and NIST incident response processes
  • Strong analytical and investigative thinking
  • Excellent written and verbal communication skills
  • Ability to operate independently within Tier 1 scope and manage SLAs
  • Maintain high-quality documentation and case notes in ServiceNow SIR
  • Fluent in English
  • Willingness to work shift pattern on-site in Sofia
  • CompTIA Security+, ISC2, ISACA, SANS, GSEC, or Blueteam Level 1 (preferred)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Dublin, County Dublin
358 Employees
Year Founded: 2005

What We Do

Integrity360 is one of Europe’s leading cyber security specialists operating from office locations in the UK, Ireland, Bulgaria and Sweden. The group provides a comprehensive range of professional, support and managed cyber security services that identify and assess, protect and prevent, detect and analyse and respond and recover cyber risks and threats. Working either independently or as an extension of a organisations own team Integrity360 strengthen security postures for both mid market and enterprise organisations across a wide range of sectors including financial services, insurance, government, healthcare, retail, telecoms and utilities. During June 2021 the company received a major strategic investment from leading London based private equity firm August Equity as part of a significant growth and expansion plan that will build the brand international With four Security Operation Centres, the company offers a complete end-to-end security services offering to its clients, covering their security from every angle. Its services include Managed Security, Cyber Security Testing, Incident Response, Security Integration and Cyber Risk & Assurance services. Its 300 clients can be found in all business verticals and include some of the largest and most well-known brands in the country. What sets Integrity360 apart is its excellent team of people that drive the business forward. The company was founded with a focus on technical expertise and that philosophy remains today. The skills and experience in the company are some of the greatest in the industry and clients remain with Integrity360 because they can rely on and trust them to go above and beyond to ensure their needs are met. Integrity360 is listed multiple time in the Gartner Market Guides for Managed Security Services.

Similar Jobs

Pfizer Logo Pfizer

Quality Assurance Manager

Artificial Intelligence • Healthtech • Machine Learning • Natural Language Processing • Biotech • Pharmaceutical
Remote or Hybrid
28 Locations
121990 Employees

DraftKings Logo DraftKings

Front-end Engineer

Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Remote or Hybrid
Sofia, Sofia-grad, BGR
6400 Employees

DraftKings Logo DraftKings

Senior Back-end Engineer

Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Remote or Hybrid
Bulgaria
6400 Employees

DraftKings Logo DraftKings

Full-stack Engineer

Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
Remote or Hybrid
Bulgaria
6400 Employees

Similar Companies Hiring

Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account