SOC Analyst
Role details
Job location
Tech stack
Job description
This is an excellent opportunity for a cyber security professional looking to further develop their experience within a mature Security Operations environment, gaining exposure to incident response, threat detection, vulnerability management and modern Microsoft security technologies.
Working within a highly regulated customer environment, you will help monitor, investigate and respond to security incidents while supporting the ongoing protection of critical business systems and infrastructure., As a SOC Analyst, you will be responsible for monitoring and responding to cyber security events, supporting incident investigations and helping to maintain a strong security posture across customer environments., * Monitor and investigate security alerts and events across cloud, endpoint, identity and network environments
- Support the management of security incidents through the incident response lifecycle
- Perform security investigations and root cause analysis
- Validate indicators of compromise and assess potential business impact
- Conduct proactive threat hunting activities
- Query and analyse security data using Microsoft Sentinel and KQL
- Support vulnerability management and remediation activities
- Work closely with technical teams to coordinate containment and recovery actions
- Produce incident reports, documentation and recommendations
- Contribute to the continuous improvement of security monitoring capabilities
Technology Environment
You'll gain exposure to a modern enterprise security stack including:
- Microsoft Sentinel
- Microsoft Defender XDR
- Defender for Endpoint
- Defender for Cloud
- Defender for Identity
- Defender for Cloud Apps
- Microsoft Intune
- Qualys
- AttackIQ
- XM Cyber
- Threat Intelligence Platforms
Requirements
We're interested in speaking with candidates who have experience in one or more of the following:
- Security Operations Centre (SOC) environments
- Security Monitoring
- Incident Response
- Cyber Security Analysis
- Threat Detection
- Threat Hunting
- Vulnerability Management
- Security Operations, * Experience monitoring and investigating security events
- Understanding of cyber security threats, attack techniques and security controls
- Exposure to SIEM technologies
- Strong analytical and problem-solving skills
- Experience working within a security operations environment
- Excellent communication and documentation skills
Desirable Skills
- Microsoft Sentinel experience
- KQL (Kusto Query Language)
- Microsoft Defender XDR technologies
- Threat Hunting experience
- Detection Engineering
- Security Automation
- Vulnerability Assessment platforms such as Qualys
- Knowledge of MITRE ATT&CK
- Exposure to NIST, ISO27001 or CIS Controls
- Experience supporting regulated environments
Benefits & conditions
Leeds (Hybrid) | £50,000 - £58,000 Package | 24/7 Shift Pattern | Permanent, * 25 days annual leave (rising with service)
- Birthday day off
- Hybrid working model
- Home-based night shifts
- Private Medical Insurance
- Life Assurance
- Enhanced Pension Scheme
- Income Protection
- Learning & Development support
- Dedicated certification programme
- Microsoft, AWS, Cisco and Fortinet training pathways
- Leadership development opportunities
- Employee wellbeing initiatives
- Cycle to Work scheme
- Retail discounts programme
- Modern office environment