
Confused on my role as a SOC Analyst
CybersecuritySOCIncident ResponseThreat Hunting
The author of the post describes their daily responsibilities as a SOC analyst, which include responding to alerts generated by their SIEM, conducting investigations, isolating affected systems, and writing detailed reports including root cause analysis (RCA). Additionally, they perform threat hunting, validate detections, and coordinate with various business teams to confirm and address potential security issues. The author wonders if these responsibilities still fall under the typical tasks of a SOC analyst or if they are more aligned with the role of an Incident Responder.