Typical SOC roles
The SOC uses a tiered system to assign responsibilities. Each tier represents a specific level of expertise and involvement in security tasks, creating a clear hierarchy for managing and responding to potential threats.
The common roles and responsibilities of a SOC team are:
- SOC Analyst (T1) – Leverages security monitoring tools to identify vulnerabilities, assesses potential incidents, and escalates critical threats for further investigation.
- SOC Analyst (T2) – Proactively investigates and resolves security incidents, ensuring swift and effective recovery to minimize disruptions.
- Threat Hunters (T3) – Leverages cutting-edge threat intelligence to assess and improve the effectiveness of IT security controls against emerging and stealthy hacking techniques.
- SOC Manager (T4) – Drives the team’s response to security incidents and vulnerabilities, keeping the CISO informed of progress and potential risks through...