This is a remote position.
The Junior Security Operations Center (SOC) Analyst Internship Program at EncryptEdge Labs is designed to provide aspiring SOC analysts with hands-on experience in monitoring and defending against cyber threats. Throughout the eight-week program, interns will engage in practical tasks that cover everything from threat landscape understanding, data collection and analysis, incident response, to vulnerability management and compliance.
Participants will gain exposure to SOC tools, log analysis using the ELK stack, security monitoring with Wazuh, and will develop skills in advanced incident handling and forensic analysis. The program culminates in a capstone project and final presentation that will demonstrate the intern's proficiency in SOC operations.
Key Responsibilities:
- Learn and implement SOC techniques, including log management, security monitoring, and incident response.
- Conduct in-depth data collection, traffic analysis, and log file analysis using tools like ELK and Wazuh.
- Engage in threat intelligence, vulnerability management, and compliance reporting.
- Participate in advanced incident handling, forensic analysis, and SOC efficiency improvement.
- Complete a capstone project and present findings at the end of the internship.
RequirementsCore Attributes:
- Passion for cybersecurity, with a focus on security operations and threat monitoring.
- Consistency in meeting deadlines and completing tasks with attention to detail.
- Strong documentation skills to present findings in a clear, concise, and professional manner.
- Effective communication skills for working collaboratively with mentors and peers.
- A degree in Computer Science, Network Engineering, or a related field is preferred but not mandatory.
- Basic understanding of networking concepts (e.g., TCP/IP, DNS, firewall basics) and operating systems (Windows/Linux).
- Familiarity with SOC workflows, log analysis, and key cybersecurity concepts is a plus.
- Splunk Fundamentals 1
- TryHackMe SOC Level 1 Path
- AlienVault OSSIM Training
- Understanding of log analysis, including recognizing and interpreting security events.
- Familiarity with alert triaging and prioritization in incident response.
- Knowledge of common cyber threat vectors (e.g., phishing, malware, ransomware).
- Hands-on experience with SIEM platforms such as:
- Splunk, Graylog, or QRadar.
- Splunk, Graylog, or QRadar.
- Familiarity with endpoint monitoring tools like OSSEC and Wazuh.
- Exposure to threat intelligence platforms (e.g., Recorded Future, AlienVault OTX).
- Access to a computer and a reliable internet connection.
- Ability to set up and maintain a secure work environment (guidance will be provided).
- Completed courses or projects in SOC-related fields or security operations.
- Participation in security challenges or labs focusing on threat detection and incident response.
Benefits


