root@thehacksparrow:~/writeups$ SYSTEM ONLINE
root@sparrow:~/writeups$ cat junior-security-analyst-intro.md
// Blue Team & SOC

Junior Security Analyst Intro

13 May 2024 · 6 min read · user access
Junior Security Analyst Intro is a theory-and-triage room that introduces the SOC Level 1 role. It defines what a Junior (Associate) Security Analyst does day to day, then drops you into a mock alert console to practice the core triage loop: spot the malicious indicator, verify its reputation, escalate to the right person, and contain it by blocking the offending IP.
PlatformTryHackMe
CategoryBlue Team & SOC
DifficultyEasy
RoomJunior Security Analyst Intro (SOC Level 1)

Task 1 — A career as a Junior (Associate) Security Analyst

The Junior Security Analyst sits at the front line of the SOC as a Triage Specialist. This is the L1 tier: the analyst who first lays eyes on incoming alerts, decides what is real versus noise, and pushes anything meaningful up the chain. Typical day-to-day responsibilities include:

  • Monitoring and investigating alerts from the SIEM and other sensors.
  • Managing and operating the SOC tooling.
  • Writing basic IDS/IPS signatures to catch known-bad activity.
  • Escalating to Tier 2 analysts or the Team Lead when an incident exceeds L1 scope.

Q: What will be your role as a Junior Security Analyst?
A: Triage Specialist

🔒 Free account required

This is USER ACCESS content — free to unlock, no payment. The rest of the write-up (and everything else at this level) opens up once you're signed in.

Create a free account