Senior Security Operations Analyst

Efci Group Ltd
Charing Cross, United Kingdom
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Charing Cross, United Kingdom

Tech stack

Software System Penetration Testing
Azure
Cloud Computing
Computer Security
Performance Tuning
Systems Development Life Cycle
Azure
Phishing
Security Information and Event Management
Software Vulnerability Management
Devsecops

Job description

Are you a hands-on cybersecurity expert looking to lead and evolve security operations across cutting-edge cloud environments? We are seeking a Senior Security Analyst to bridge the gap between deep technical security ops and Governance, Risk, and Compliance (GRC). Working closely with our CTO, you will play a pivotal role in protecting our infrastructure, leading incident responses, and embedding security best practices across our entire product suite. The Role As our Senior Security Analyst, you will own the evolution of our security posture. You'll be the driving force behind our SIEM/SOAR capabilities and the guardian of our SOC 2 Type II and ISO 27001 standards. Key Responsibilities:

  • Security Operations: Lead monitoring, detection, and incident response for internal and client-facing systems.
  • SIEM/SOAR Ownership: Enhance and automate our Azure Sentinel capabilities.
  • Incident Response: Investigate real-world threats (malware, phishing, cloud misconfigurations) and ensure rapid remediation.
  • Vulnerability Management: Conduct regular assessments, penetration testing, and risk analysis.
  • Compliance & GRC: Maintain SOC 2 Type II accreditation and lead ISO 27001 readiness. Administer compliance platforms like Drata.
  • DevSecOps: Collaborate with Engineering and IT to integrate security into SDLC and CI/CD pipelines.

Requirements

The ideal candidate is a technical powerhouse who understands that security is as much about people and processes as it is about code.

  • Experience: 6-8 years in cybersecurity with at least 3-4 years specifically in Microsoft Azure cloud security.
  • Technical Depth: Deep expertise in Azure AD, Sentinel, and Microsoft Defender.
  • SIEM Mastery: Proven experience tuning SIEM platforms and implementing SOAR automation.
  • Compliance Knowledge: A solid understanding of GRC frameworks, specifically SOC 2 and ISO 27001.
  • Communication: Ability to provide expert guidance to internal teams and clients alike.

Apply for this position