What you'll actually do
- Monitor SIEM dashboards and triage alerts
- Investigate security incidents and escalate as needed
- Conduct vulnerability assessments
- Maintain and update security policies and documentation
- Coordinate with IT teams on remediation
- Produce security metrics and reports for management
Skills you need
Network fundamentals (TCP/IP, DNS, HTTP)SIEM platforms (Splunk, Microsoft Sentinel, QRadar)Vulnerability scanning (Nessus, Qualys)Incident response fundamentalsLog analysis and correlationBasic scripting (Python or PowerShell)
Tools & platforms
Splunk / Microsoft SentinelNessus / QualysWiresharkCrowdStrike / SentinelOneJira / ServiceNow (ticketing)
Certifications to Target
1CompTIA Security+
2CompTIA CySA+
3Certified in Cybersecurity (ISC2 CC)
4Google Cybersecurity Certificate
Who Is a Good Fit?
- → IT Support / Helpdesk
- → Network Administrator
- → Fresh IT/CS graduates
- → System Administrator
Career Growth Path
1
Security Analyst → Senior Security Analyst2
→ SOC Team Lead / Manager3
→ Threat Intelligence Analyst4
→ Security Architect (with additional experience)