NKAI
AI generated · 3 hours ago
Where You Stand
You are in a solid position. You have 4+ years of IT Support experience, which is highly relevant—SOC teams value people who understand troubleshooting, Active Directory, and networking basics. Your Security+ and Fortinet NSE 1-3 certifications show a strong security foundation. Your hands-on labs in Splunk, Sentinel, and CrowdStrike are exactly what recruiters look for.
Your non-tech education background is not the main blocker. The issue is likely how your resume positions your IT Support experience and lab work for a SOC role.
Why You Might Not Be Getting Calls
- Resume keyword mismatch: Your resume may highlight "troubleshooting" and "support" rather than "security monitoring," "incident response," and "log analysis."
- Lack of professional SOC experience: Recruiters often filter for titles like "SOC Analyst" or "Security Analyst." Without that exact title, you need to bridge the gap with a strong summary and project descriptions.
- Certifications listed but not contextualized: You have great certs, but if your resume doesn't show how you applied them, they look like checkboxes.
Recommended Next Steps
1. Rewrite Your Resume for SOC
- Use a summary like: "IT Support professional with 4+ years of experience, transitioning to SOC. Skilled in SIEM operations, EDR investigation, and incident triage."
- In your experience section, reframe tasks: "Monitored system logs for anomalies" instead of "Fixed user issues."
- Create a dedicated "Security Projects" section listing your Splunk/Sentinel labs with specific actions (e.g., "Created detection rules for brute-force attacks in Sentinel").
2. Bridge the Experience Gap
- Apply for SOC L1 / Junior SOC Analyst / Security Operations Center Technician roles, not just "SOC Analyst."
- Also target MSSP (Managed Security Service Provider) roles—they hire more entry-level analysts.
- Consider NOC to SOC transition roles if available.
3. Keep Building Practical Skills
- Practice writing incident reports and triage notes—this is a key SOC deliverable.
- Learn basic networking (TCP/IP, DNS, HTTP) deeply if you haven't already—it's tested in interviews.
Certifications & Learning Path
- Your current stack is good. CySA+ or BTL1 (Blue Team Level 1) would add strong blue-team credibility.
- Continue with Splunk Core Certified User or Sentinel training to formalize your SIEM skills.
Realistic Expectations
- The transition typically takes 3–6 months of focused applications and skill-building.
- You may need to accept a slight title downgrade (e.g., L1 Analyst) to get your foot in the door.
- Interview calls increase once your resume is tailored and you apply to the right job titles.
Next Step
- Rewrite your resume today using the SOC-focused language above.
- Apply to 10–15 roles per week targeting L1/Junior SOC positions.
- Join SOC-focused communities (e.g., Blue Team Discord, r/SOC) for resume reviews and referrals.
For structured training options, check nwkings.com for SOC Analyst tracks that align with your goals. You are close—the right resume and job targeting will unlock those interviews.
