SOC Analyst

Anson McCade
London, UK
3 days ago
Apply on www.totaljobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
ÂŁ70,000.0 - ÂŁ84,900.0
Working hours
Regular working hours

Tech stack

Data Analysis Microsoft Antivirus Cyber Security Intrusion Detection and Prevention Security Information and Event Management AI Infrastructure Falcon Platform Microsoft Sentinel Splunk

Job description

As a SOC Shift Lead, you’ll be the senior technical escalation point on your shift, taking ownership of complex and high-severity security incidents.

You’ll investigate incidents, identify attack vectors and impact, lead containment and remediation, and provide technical guidance to L1 analysts.

You’ll be responsible for:

  • Leading investigations into medium and high-severity security incidents
  • Analysing and correlating data across SIEM, EDR and other security sources
  • Leading containment, eradication and recovery activities
  • Conducting root-cause analysis and producing incident reports
  • Supporting detection rule and threshold tuning
  • Identifying gaps in detection coverage and response processes
  • Mentoring and supporting SOC Analysts
  • Acting as the senior escalation point during your shift
  • Supporting SOC exercises and incident response simulations, This isn’t simply a SOC monitoring role. You’ll be leading incident investigations, making decisions during high-severity events and providing technical leadership across your shift.

You’ll also be working within a highly secure, next-generation AI infrastructure environment, giving you exposure to some of the latest technology and security challenges.

Please note: This is a 24/7 shift-based position with a shift premium. The role is subject to BPSS and the required level of security clearance, including 10 years’ continuous UK address history.

Requirements

We’re particularly interested in candidates with:

  • 5-10 years’ experience across SOC, Incident Response or Threat Analysis
  • Strong experience with SIEM and EDR technologies
  • Hands-on experience investigating and responding to security incidents
  • Knowledge of threat detection, containment and remediation
  • Experience acting as a technical escalation point or mentoring junior analysts
  • Strong analytical and investigative skills

Experience with Splunk, Microsoft Sentinel, Microsoft Defender, CrowdStrike or similar would be beneficial.

Relevant certifications such as GCIH, GCIA, CySA+, SC-200 or Splunk certifications are desirable but not essential.

About the company

A leading global consultancy is looking for a SOC Shift Lead to join a new 24/7 security operation supporting next-generation AI compute infrastructure in the UK.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:23 min

Boosting security operations center productivity with intelligent data analysis

Chris Wysopal Chris Wysopal +2 ¡ World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman ¡ World Congress 2022

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella ¡ World Congress 2023

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 ¡ LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler ¡ LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger ¡ LIVE

Videos

See all

Related articles

See all