1

L1 Analyst Jobs (NOW HIRING)

TECHNICAL LEAD L1

Los Angeles, CA · On-site

$60K - $148K/yr

TECHNICAL LEAD L1 City: Los Angeles State/Province: California Posting Start Date: 7/28/26 Wipro ... Perform root cause analysis to resolve production issues. * Diagnose and troubleshoot DSD & ACN ...

Role Overview The Regulatory Compliance Analyst will support the US Regulatory Compliance function ... This role will work closely with L1 team leads and managers to triage and resolve escalations ...

Business Analyst Location: Remote (EST) Note : Candidates need to have strong Experience in FAIR ... Expertise in: • Requirements elicitation and documentation • Workflow and process modeling (L1 ...

Role Overview The Regulatory Compliance Analyst will support the US Regulatory Compliance function ... This role will work closely with L1 team leads and managers to triage and resolve escalations ...

LEAD ADMINISTRATOR L1

Irving, NY · On-site

$60K - $135K/yr

Analysis of problems with the existing infrastructure and work with the vendor support for RCA and ... Mentor L1/L2 support teams and document troubleshooting guides. Required Skills & Qualifications ...

Analyst

Cleveland, OH · On-site

$60K - $70K/yr

Security Support Analyst 1. Experience with technical Voice support with end customer with strong verbal communication. 2. Provide L1/L1.5 support for migration from Transmit BindiD to Passkey ...

Showing results 21-40

L1 Analyst information

What is an L1 analyst?

L1 Analysts, or Level 1 Analysts, are entry-level professionals typically found in IT support or cybersecurity teams. Their primary responsibility is to monitor systems, triage alerts, and handle basic incidents or issues according to established procedures. They serve as the first line of defense, escalating more complex problems to higher-level analysts. L1 Analysts play a crucial role in maintaining system security and uptime by promptly responding to and documenting incidents.

What does a typical workday look like for an L1 analyst in a Security Operations Center (SOC)?

As an L1 Analyst in a Security Operations Center, your day typically involves monitoring security alerts, investigating potential threats, and escalating incidents to higher-level analysts when needed. You’ll use various security tools and dashboards to analyze data for signs of suspicious activity. Collaboration with your team is essential, as you’ll often discuss findings during daily briefings and assist with incident documentation. The role is fast-paced and requires strong attention to detail, as you are the first line of defense in identifying and responding to security events.

What are the key skills and qualifications needed to thrive as an L1 analyst, and why are they important?

To thrive as an L1 Analyst, you need a foundational understanding of cybersecurity concepts, basic networking, and troubleshooting skills, often supported by a degree in IT or relevant certifications like CompTIA Security+. Familiarity with security information and event management (SIEM) tools, ticketing systems, and incident response protocols is typically required. Strong attention to detail, effective communication, and a proactive approach to problem-solving are essential soft skills in this role. These skills enable an L1 Analyst to efficiently identify, escalate, and document security incidents, ensuring organizational protection and timely response.
More about L1 Analyst jobs
What cities are hiring for L1 Analyst jobs? Cities with the most L1 Analyst job openings:
What states have the most L1 Analyst jobs? States with the most job openings for L1 Analyst jobs include:

Digital Service Management Support Analyst

Central Business Solutions

Dallas, TX • On-site

Other

Posted 20 days ago


Job description

Job Description: Digital Support Analyst (Level 1.5/Level 2)

Digital Service Management & Operations

Position Overview

We are seeking a highly motivated Digital Support Analyst (Level 1.5/Level 2) to help establish a modern, structured digital support and services model. This role will serve as a critical triage and diagnostic layer between the service desk (L1) and engineering teams (L3), transforming support from a reactive intake function into a proactive, insight-driven operations capability.

Reporting to the Director, Digital Service Management & Operations, this role will focus on incident triage, monitoring, troubleshooting, and release-aware diagnostics across a complex, integrated application and cloud environment.

---

Context & Mission

The current support model operates as a broad, centralized intake layer covering end-user support, applications, and cloud infrastructure, but lacks:

· Dedicated monitoring (“eyes-on-glass”)

· Structured triage and diagnostic capability

· Deep technical ownership at the L1/L2 layers

This role is designed to:

· Introduce structured L1.5/L2 triage and investigation

· Improve incident quality and escalation effectiveness

· Enable proactive monitoring and operational stability

· Support a high-frequency release environment

---

Key Responsibilities

1. Incident Triage & Technical Investigation (Core Focus)

· Act as the primary L1.5/L2 triage layer, analyzing alerts, incidents, and system anomalies.

· Perform initial troubleshooting and diagnostics before escalation to L3 teams.

· Develop structured problem statements with actionable insights for engineering teams.

· Interpret and analyze:

o API responses and endpoint behavior

o Application errors (e.g., HTTP 500s)

o Latency and performance degradation

o Infrastructure and database indicators (CPU, memory, query performance)

· Participate in incident bridge calls, providing real-time technical insights.

---

2. Monitoring & “Eyes-on-Glass” Operations

· Support the development of a dedicated monitoring capability.

· Continuously monitor systems using observability/APM tools (e.g., Datadog, Google Cloud Platform, Idera).

· Correlate alerts and identify patterns, anomalies, and early warning signals.

· Shift operations from reactive escalation → proactive issue detection and prevention.

---

3. Cross-Functional Troubleshooting

· Investigate issues across integrated front-end, back-end, and cloud platforms (e.g., Google Cloud Platform environments).

· Perform cross-stack analysis, recognizing that issues may span multiple systems.

· Provide context-aware insights (e.g., dependency-related failures like external platform issues).

---

4. Release-Aware Support & QA Mindset

· Collaborate with the Release Manager and DevOps teams on frequent (multi-weekly) releases.

· Correlate incidents with:

o Recent deployments

o Configuration changes

o Feature rollouts

· Apply a QA-oriented mindset to validate system behavior post-release.

· Support hypercare and post-release monitoring activities.

---

5. Runbooks, Knowledge & Process Maturity

· Execute and continuously improve runbooks and standard operating procedures (SOPs).

· Document:

o Troubleshooting steps

o Known issues

o Root cause indicators

· Drive standardization of triage and escalation processes.

· Contribute to problem management lifecycle and post-incident reviews (PIRs).

---

6. Service Management & ITIL Alignment

· Operate within ServiceNow (incident, change, and problem management) and Atlassian (JIRA, Confluence, Bitbucket).

· Improve:

o Ticket quality

o Categorization and prioritization

o Escalation readiness

· Support CAB readiness activities by providing operational insights.

· Contribute to defining an L1–L2–L3 escalation framework.

---

7. Automation, AI & Continuous Improvement

· Leverage emerging AIOps and automation capabilities for:

o Alert correlation

o Root cause identification

· Identify opportunities to reduce manual triage effort.

· Collaborate on improving integration between:

o ITSM (ServiceNow)

o Monitoring/observability tools

---

Required Qualifications

· 3–6 years of experience in application support, production support, or digital operations.

· Strong troubleshooting experience in complex, integrated environments.

· Hands-on experience with:

o Monitoring/APM tools (Datadog, Dynatrace, Splunk, etc.)

o Incident management platforms (ServiceNow preferred)

· Ability to interpret:

o Logs, APIs, and system metrics

o Performance and error patterns

· Solid understanding of ITIL processes (Incident, Problem, Change).

---

Preferred Qualifications

· Experience in cloud environments (Google Cloud Platform, Azure, or AWS).

· Exposure to CI/CD pipelines and DevOps practices.

· Familiarity with:

o CRM platforms (e.g., Salesforce, Dynamics)

o Job orchestration/batch processing tools

· Experience in high-availability, customer-facing digital systems.

---

Key Competencies

· Strong analytical and diagnostic mindset

· Ability to move beyond escalation to true problem investigation

· Curiosity and ownership in understanding root causes

· Effective communication in high-pressure incident scenarios

· Ability to work across applications, infrastructure, and QA domains

---

Team Structure & Operating Model

· Reports to: Director, Digital Service Management & Operations (Javier Mercado)

· Works alongside:

o DevOps & Engineering teams (CI/CD, releases, platform ownership)

o Release Manager (new role)

o Service Desk (L1) and Engineering (L3)

· Part of building a dedicated L1–L2–L3 support model

---

Location

· Preferred: Texas (Dallas / Frisco area)

---