Cyber Security SOC Analyst (L1)

wavenet
Birstall, UK
21 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Job source

Tech stack

Microsoft Antivirus Microsoft Azure Cloud Computing Security Cyber Security Digital Assets Domain Name System (DNS) Intrusion Detection and Prevention Intrusion Detection Systems Virtual Private Networks (VPN) Network Security Log Analysis Kusto Query Language
+12 more
Security Information and Event Management TCP/IP Data Logging Cloud Platform System In-Plane Switching (IPS) Malware Cyber Threat Analysis Firewalls (Computer Science) Azure Security Center Information Technology Cybercrime Microsoft Sentinel

Job description

In this dynamic, client-facing role, you’ll monitor, investigate, and respond to security alerts using cutting-edge tools such as Microsoft Sentinel, Microsoft Defender for Endpoint, Microsoft Defender XDR, CrowdStrike Falcon, and Rapid7. You’ll collaborate closely with experienced analysts, benefit from mentorship, and gain valuable exposure to a wide range of cyber threats and diverse client environments., * Monitor and triage security alerts across multiple platforms and technologies (SIEM, EDR, XDR, etc.).

  • Investigate potential security incidents and escalate according to established protocols.
  • Collaborate with senior analysts and threat response teams to resolve incidents effectively.
  • Maintain comprehensive documentation of investigations, incidents, and actions taken.
  • Provide essential guidance and support to clients regarding incident handling and threat mitigation.
  • Assist in the development and fine-tuning of detection rules, threat-hunting queries, and analytics.
  • Stay informed about emerging threats, tactics, and technologies to enhance your expertise continually.

This role is perfect for those ready to contribute to our mission of safeguarding our clients’ digital assets while developing their own skills in a fast-paced, supportive environment.

Requirements

We’re seeking a driven and detail-oriented Level 1 SOC Analyst to become part of our expanding Security Operations Center. This is a fantastic opportunity for individuals with foundational knowledge in cybersecurity or IT support who are eager to advance their careers in threat detection, incident response, and real-time security monitoring., SIEM & Log Analysis

  • Experience with SIEM platforms, such as Microsoft Sentinel or Rapid7.
  • Proficient in querying and analyzing log data; familiarity with Kusto Query Language (KQL) is a plus.
  • Knowledge of alert tuning, correlation rules, and threat hunting methodologies.

Endpoint Security (EDR)

  • Hands-on experience with EDR tools, such as CrowdStrike Falcon, Microsoft Defender for Endpoint, or Carbon Black.
  • Ability to interpret endpoint logs and identify signs of compromise.

Malware Analysis (Basic)

  • Understanding of malware behaviour, Indicators of Compromise (IoCs), and basic sandboxing or analysis techniques.

Network Security

  • Knowledge of key protocols (TCP/IP, HTTP/S, DNS, SMB, RDP) and concepts such as IDS/IPS, VPNs, firewalls, and network-based threat detection.

Cloud Security

  • Familiarity with security monitoring in cloud environments, especially Microsoft Azure.
  • Basic understanding of cloud-native security tools and logging (e.g., Azure Security Center)., * Bachelor’s degree in Cybersecurity, Information Technology, or a related field-or equivalent hands-on experience.
  • Strong attention to detail and ability to follow structured processes and documentation.
  • Excellent communication skills-both written and verbal-for effective client interaction and team collaboration.
  • A security-focused, ethical mindset with a passion for continuous learning.
  • Comfortable working in a collaborative, 24/7 shift-based SOC environment.

Benefits & conditions

Pulled from the full job description

  • Annual leave
  • Employee assistance programme

About the company

Wavenet is a managed services provider offering cybersecurity, communications, and connectivity that grows with our customers’ businesses - no matter what the future holds.

Since 2000, we’ve been keeping businesses connected.

At Wavenet, we don’t just provide solutions for today but for tomorrow, too. We’re always thinking ahead of the technology curve, so our customers feel confident that when they work with us, we’re striving to make their business future-proof.

Customer success is our success. We go the extra mile in providing superior service quality and unparalleled customer experience, becoming an extension of your business, and always delivering on our promise to make their business brilliant., At Wavenet, we offer more than just a job - we provide an exceptional environment and a wide range of benefits to support your success from day one. With us, you’ll enjoy a generous starting annual leave allowance, private medical coverage, discounted health plans, an eye care scheme, and comprehensive health and wellbeing programs, all backed by a dedicated in-house Wellbeing Team.

We believe in a strong work-life balance, rewarding your commitment with an additional day of annual leave each year, reaching up to 28 days. Here’s a closer look at what we offer:

  • Annual Leave: Begin your journey with 25 days of leave, increasing by one day per year up to 28 days - our way of saying thank you for your dedication.
  • Health & Wellbeing: Your wellbeing is a priority. Enjoy private medical coverage, discounted health plans, virtual GP access, an eye care scheme, and a comprehensive employee assistance programme, all supported by our internal Wellbeing Team.

Ready to join the UK’s largest managed service provider?

Apply today or contact our friendly Talent Acquisition team for more information.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 Ā· LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner Ā· LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa Ā· LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif Ā· LIVE

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 Ā· WWC Europe 2026

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters Ā· WWC 2022

Videos

See all

Related articles

See all