> Markdown version of [/jobs/ext/2992505-it-security-analyst](https://www.wearedevelopers.com/jobs/ext/2992505-it-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Analyst - **Company:** Cooper parry - **Location:** Castle Donington, UK (Remote available) - **Salary:** £49,081.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Microsoft Azure, Cyber Security, Microsoft Security Essentials, Windows PowerShell, Phishing, Kusto Query Language, Vulnerability Analysis - **Published:** September 19, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5889647012 ## About the Role We're not expecting a finished product here - but we do want someone who's comfortable in a security operations role and keen to take ownership of their space. You'll already have; * Experience working with tools like Defender and Sentinel * Understanding of how to investigate alerts properly rather than just clearing queues * Knowledge of Microsoft 365 & Azure from a security point of view * A grasp of how incident response should actually work in practice. From a technical angle, it would be ideal if you've had some exposure to things like KQL, PowerShell, or similar - nothing too niche, just enough to show you can dig into data and automate where it makes sense. It would also be great if you've touched Purview, DLP, or anything around data protection. More broadly, we're looking for someone who's naturally curious. Someone who doesn't just accept alerts at face value, but wants to understand what actually happened and why. You should be comfortable working across teams, explaining things in plain English when needed, and managing your own workload without constant direction. You don't need to tick every box - but you do need to be someone who takes ownership, thinks things through properly, and wants to get better over time. ## Description We're looking for an IT Security Analyst to join our growing tech function. This is very much a doer role where you'll be in the detail - monitoring alerts, investigating incidents, tuning detections - but also stepping back to help us get better over time. That might be improving how we use Sentinel, tightening up controls in Defender, or getting more value out of Purview. You'll work closely with our internal teams and our SOC, and you'll have genuine ownership over parts of the security operation. It's not just about reacting to issues - it's about helping us spot them earlier, reduce noise, and build something more proactive. There's also room to expand your experience - alongside core SecOps work, you'll get involved in how we protect data (Purview, DLP, labelling), and how we support compliance and assurance across the business. This is the perfect role for someone who wants to: * Get properly hands-on in a working security operations environment * Build deeper expertise in Microsoft security tooling (Defender, Sentinel, Purview) * Start broadening into data protection and governance, not just core SecOps * Have a say in how things are done, not just follow a runbook We're not trying to build something overly complicated - we just want it to be solid, sensible, and continuously improving. You'll be part of that. You'll be getting up to a range of tasks and responsibilities, including; Security Operations & Incident Response * Monitoring and triaging alerts across Microsoft Defender and Sentinel * Investigating incidents properly - getting to root cause, not just fixing the symptom * Working with our SOC to improve detections and cut down false positives * Documenting what happened and feeding that back into better processes and playbooks Vulnerability & Threat Management * Supporting vulnerability scanning and making sure issues are actually getting fixed * Helping prioritise what matters vs what's just noise * Using threat intel and trends to strengthen how we detect and respond * Supporting patch validation and general configuration hygiene across endpoints and cloud Data Protection & Information Security * Working with Microsoft Purview, particularly around DLP and data visibility * Supporting sensitivity labelling (and improving how it's used in practice) * Helping us identify where sensitive data lives and how it's being used * Contributing to making data protection part of the day-to-day-not just a policy document Risk, Compliance & General Security Hygiene * Supporting ISO 27001 and Cyber Essentials Plus activities * Helping with audits, evidence, and keeping documentation current * Getting involved in control reviews and basic assurance work * Supporting supplier/security checks where needed Working With Others * Partnering with Infrastructure, Service Desk, GRC, and the wider Tech team * Being someone people can come to with security questions (and getting them sensible answers) * Supporting user awareness - phishing simulations, guidance, that kind of thing * Chipping in with ideas on how we improve, not just maintain At Cooper Parry, we're in it together. All we ask of our people is that they play all in. You'll continuously strive to keep learning - whether you're a trainee or a Partner - and you'll be brave, stepping out of your comfort zone to tackle new challenges. Above all, be nice. A simple notion, but an irreplaceable part of what makes CP, CP. ## Related Videos - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Developer Tools for Microsoft Azure](https://www.wearedevelopers.com/videos/450-developer-tools-for-microsoft-azure) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Passkeys: Truly Phishing-Resistant? Implementation and Pitfalls](https://www.wearedevelopers.com/videos/100156-passkeys-truly-phishing-resistant-implementation-and-pitfalls) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Building Security Champions](https://www.wearedevelopers.com/magazine/87-building-security-champions)