Hospitality

Soc Analyst At Eko Maintenance Limited

Eko Maintenance Limited·Lagos, nigeria·Full Time·Onsite
HospitalityFull TimeOnsite
-

Role Summary

  • We are seeking a SOC Analyst to monitor, investigate, and respond to cybersecurity threats across the organization's IT environment.
  • The analyst will work with SIEM, EDR, network security, and other security tools to identify suspicious activity, investigate incidents, and support timely remediation.

Key Responsibilities

  • Monitor security alerts and events using SIEM platforms.
  • Investigate and triage suspected security incidents.
  • Analyze logs from endpoints, servers, firewalls, IDS/IPS, cloud environments, and applications.
  • Perform alert correlation, threat analysis, and incident investigation.
  • Identify indicators of compromise (IOCs), including malicious IPs, domains, hashes, and suspicious processes.
  • Escalate confirmed or complex incidents to senior analysts or incident-response teams.
  • Support incident response, containment, eradication, and recovery activities.
  • Conduct basic threat hunting and identify suspicious patterns or anomalous behavior.
  • Analyze phishing emails and investigate potentially compromised accounts.
  • Document incidents, investigations, findings, and remediation actions.
  • Maintain and improve security monitoring rules, detection logic, and dashboards.
  • Assist with vulnerability management and security assessments where required.
  • Stay informed about emerging threats, attack techniques, and MITRE ATT&CK techniques.
  • Follow established security policies, procedures, and incident-response playbooks.

Key Performance Indicators

  • Alert triage and response time
  • False-positive reduction
  • Incident detection and escalation accuracy
  • Mean Time to Detect (MTTD)
  • Mean Time to Respond (MTTR)
  • Quality and completeness of investigation documentation
  • Effectiveness of detection rules and threat-hunting activities.

Qualifications

  • Degree or diploma in Cybersecurity, Computer Science, Information Technology, or a related field.
  • Relevant certifications are an advantage, such as:
  • CompTIA Security+
  • CompTIA CySA+
  • Blue Team Level 1 (BTL1)
  • GIAC certifications
  • Microsoft security certifications
  • Splunk certifications

Typical Experience:

  • Junior SOC Analyst: 0 - 2 years
  • SOC Analyst: 2 - 4 years
  • Senior SOC Analyst: 4+ years

Required Skills:

  • Understanding of SOC operations and incident response.
  • Knowledge of SIEM technologies such as Microsoft Sentinel, Splunk, QRadar, or Elastic.
  • Experience with EDR/XDR platforms.
  • Strong understanding of:
  • TCP/IP and networking
  • DNS, HTTP/HTTPS, SMTP
  • Windows and Linux
  • Active Directory
  • Firewalls and IDS/IPS
  • Authentication and access controls
  • Ability to analyze security logs and correlate events.
  • Knowledge of common attacks such as phishing, malware, credential theft, brute force, ransomware, and web attacks.
  • Familiarity with MITRE ATT&CK, Cyber Kill Chain, and IOC analysis.
  • Basic scripting knowledge, particularly PowerShell or Python, is advantageous.

Key skills

BA/BSc/HND
Apply Now
Send your CV along with a cover letter torecruitment2@ekomaintenance.com

Please use the job title as the subject line of your email.

At a glance

Company

Eko Maintenance Limited

Location

Lagos, nigeria

Employment

Full Time

Work style

Onsite

Experience

Valid until

Not specified

Created

October 5, 2026

More opportunities

Similar roles you might like

Soc Analyst Ii At Erecruiter Nigeria

eRecruiter Nigeria

Lagos, nigeria

full-time

Job Summary The ideal candidate will spend each day investigating security alerts that have escalated beyond the initial triage layer, distinguishing genuine threats from false positives, and driving confirmed incidents through containment, remediation, and resolution. The ideal candidate will operate in a fast-paced, telemetry-rich environment spanning cloud and on-premises infrastructure, thousands of endpoints, and a modern security stack that includes SIEM, EDR, and email security platforms. Beyond day-to-day monitoring, the ideal candidate will take ownership of improving the effectiveness of the security operations function. The ideal candidate will contribute to maturing detection content, reducing alert fatigue by tuning false positives, and enhancing incident response runbooks and playbooks to ensure consistent handling across shifts. Working closely with senior SOC analysts, threat hunters, and detection engineers, the ideal candidate will have the opportunity to strengthen technical expertise and progress toward a Tier 3 SOC Analyst or specialized Security Engineering career path. This is a fully remote opportunity available on either a full-time or contract basis. Key Responsibilities Monitor, triage, and investigate security alerts across SIEM, EDR, identity, and email security platforms Own Tier 2 investigation, containment, eradication, and escalation of confirmed security incidents Analyze logs, network traffic, endpoint telemetry, and user activity to identify indicators of compromise Conduct root cause analysis and document incidents, findings, and response actions per established runbooks Tune detection rules, suppress false positives, and recommend new detection logic in partnership with engineering Participate in proactive threat hunting based on current threat intelligence and emerging tactics Support and contribute to post-incident reviews, lessons learned, and continuous improvement of response playbooks Maintain shift handoff notes and ensure continuity of monitoring across a 24/7 coverage model Required Qualifications 2 to 4 years of hands-on SOC, incident response, or security analyst experience Working knowledge of SIEM platforms such as Splunk, Microsoft Sentinel, or QRadar Familiarity with EDR tooling including CrowdStrike, SentinelOne, or Microsoft Defender Solid grounding in networking fundamentals, TCP/IP, DNS, and common attack techniques Ability to interpret logs and telemetry to reconstruct an attack timeline Strong written documentation and clear communication under time pressure Preferred Qualifications Security+, CySA+, GCIH, or equivalent certification Experience with SOAR platforms and automation scripting in Python or PowerShell Working familiarity with the MITRE ATT&CK framework and threat-informed defense Exposure to cloud security monitoring in AWS or Azure

2 months ago

Security Engineer At Kredete

Kredete

Lagos, nigeria

full-time

About The Role We are seeking a seasoned Security Engineer to safeguard our critical digital assets and infrastructure from evolving cyber threats. In this role, you will be the frontline defender, responsible for implementing robust security measures, proactively hunting for vulnerabilities, and rapidly responding to security incidents to ensure the integrity, confidentiality, and availability of our systems. What You'll Do Defend & Monitor: Continuously monitor security alerts from our SIEM, EDR, firewalls, and other security systems to detect and investigate malicious activity. Respond & Recover: Lead the response to security incidents, performing containment, eradication, and forensic analysis to identify root cause and prevent recurrence. Identify Weaknesses: Conduct regular vulnerability assessments and penetration tests on our networks, applications, and cloud environments to find security gaps before attackers do. Harden Defenses: Configure, manage, and optimize our security infrastructure, including firewalls, WAF (Web Application Firewall), IDS/IPS, and endpoint protection tools. Automate Security: Develop scripts (e.g., in Python, Bash, or PowerShell) to automate repetitive security tasks and improve our operational efficiency. Enforce Policy: Help implement and enforce IT security policies and controls, ensuring compliance with relevant standards like ISO 27001 or the NDPA. Promote Awareness: Contribute to company-wide security training initiatives to foster a strong culture of security awareness. Qualifications You hold a Bachelor's degree in Computer Science, Cybersecurity, or a related field. You have 3-5 years of hands-on experience in a cybersecurity role such as Security Engineer, SOC Analyst, or Network Security Administrator. You possess proven, practical experience with: Core security tools: Firewalls (Palo Alto, Fortinet), SIEM (Splunk, Elastic, Sentinel), and EDR (CrowdStrike, SentinelOne). Networking fundamentals: Deep understanding of TCP/IP, DNS, VPNs, and network segmentation. Cloud security: Hands-on experience securing cloud platforms, preferably AWS or Azure. Operating Systems: Strong administration skills for both Windows and Linux environments. You have a strong grasp of common cyber threats, attack vectors, and vulnerability management lifecycles. You are a proactive problem-solver with excellent analytical skills and the ability to remain calm under pressure during incidents. You can communicate complex security concepts clearly to both technical and non-technical colleagues. Nice To Have Professional cybersecurity certifications such as CEH, CompTIA Security+, CySA+, or CISSP (Associate). Experience with scripting for automation using Python, PowerShell, or Bash. Knowledge of securing containerized environments (Docker, Kubernetes). Experience participating in internal or external security audits. A passion for continuous learning and staying updated with the latest security trends and threats.

4 days ago

Security Engineer At Kredete

Kredete

Lagos, nigeria

full-time

About The Role We are seeking a seasoned Security Engineer to safeguard our critical digital assets and infrastructure from evolving cyber threats. In this role, you will be the frontline defender, responsible for implementing robust security measures, proactively hunting for vulnerabilities, and rapidly responding to security incidents to ensure the integrity, confidentiality, and availability of our systems. What You'll Do Defend & Monitor: Continuously monitor security alerts from our SIEM, EDR, firewalls, and other security systems to detect and investigate malicious activity. Respond & Recover: Lead the response to security incidents, performing containment, eradication, and forensic analysis to identify root cause and prevent recurrence. Identify Weaknesses: Conduct regular vulnerability assessments and penetration tests on our networks, applications, and cloud environments to find security gaps before attackers do. Harden Defenses: Configure, manage, and optimize our security infrastructure, including firewalls, WAF (Web Application Firewall), IDS/IPS, and endpoint protection tools. Automate Security: Develop scripts (e.g., in Python, Bash, or PowerShell) to automate repetitive security tasks and improve our operational efficiency. Enforce Policy: Help implement and enforce IT security policies and controls, ensuring compliance with relevant standards like ISO 27001 or the NDPA. Promote Awareness: Contribute to company-wide security training initiatives to foster a strong culture of security awareness. Qualifications You hold a Bachelor's degree in Computer Science, Cybersecurity, or a related field. You have 3-5 years of hands-on experience in a cybersecurity role such as Security Engineer, SOC Analyst, or Network Security Administrator. You possess proven, practical experience with: Core security tools: Firewalls (Palo Alto, Fortinet), SIEM (Splunk, Elastic, Sentinel), and EDR (CrowdStrike, SentinelOne). Networking fundamentals: Deep understanding of TCP/IP, DNS, VPNs, and network segmentation. Cloud security: Hands-on experience securing cloud platforms, preferably AWS or Azure. Operating Systems: Strong administration skills for both Windows and Linux environments. You have a strong grasp of common cyber threats, attack vectors, and vulnerability management lifecycles. You are a proactive problem-solver with excellent analytical skills and the ability to remain calm under pressure during incidents. You can communicate complex security concepts clearly to both technical and non-technical colleagues. Nice To Have Professional cybersecurity certifications such as CEH, CompTIA Security+, CySA+, or CISSP (Associate). Experience with scripting for automation using Python, PowerShell, or Bash. Knowledge of securing containerized environments (Docker, Kubernetes). Experience participating in internal or external security audits. A passion for continuous learning and staying updated with the latest security trends and threats.

a month ago