The Role
Job Title: SOC Analyst (L2)
Location: Hybrid Worker – Staines
Job Type: Full-Time
Reporting To: SOC Manager
Job Summary
As a Level 2 SOC Analyst, you will play a key role in the detection and response lifecycle within our Security Operations Centre. You will be responsible for triaging, investigating, and responding to cybersecurity incidents across customer environments using tools such as Microsoft Sentinel and Defender XDR. The role requires strong analytical skills, attention to detail, and the ability to execute response actions such as endpoint isolation, IOC blocking, malware scans, and user containment.
Note: Experience working in an MSSP/MSP setting supporting multiple clients is essential
Key Responsibilities
Threat Monitoring and Detection:
- Monitor security alerts and events from SIEM platforms, EDR solutions, and other security tools.
- Analyse logs, network traffic, and endpoint data to identify potential security incidents.
- Tune and optimize detection rules to reduce false positives and improve threat detection accuracy.
Threat Intelligence and Hunting:
- Leverage threat intelligence feeds and platforms to stay informed about emerging threats and attack techniques.
- Proactively hunt for threats and anomalies within client environments using advanced tools and techniques.
- Develop and share actionable threat intelligence with clients and internal teams.
SOAR and Automation:
- Create/update SOAR workflows for common incidents.
- Recommend automation improvements.
Platform Administration:
- Maintain and fine-tune Sentinel and Defender components.
- Ensure consistent log ingestion and rule coverage.
Required Skills and Qualifications
- Hands-on experience with Microsoft Sentinel, Defender for Endpoint, and other XDR platforms.
- Strong proficiency in KQL for threat hunting and detection tuning.
- Solid understanding of the MITRE ATT&CK framework and common threat actor behaviours.
- Preferred – Microsoft Certified: Security Operations Analyst Associate (SC-200)
- Preferred – CompTIA Security+, CySA+
Required Experience
- Minimum of 2 years of experience in a SOC environment.
- Experience working in an MSSP/MSP setting supporting multiple clients.
Required Soft Skills
- Strong communicator and collaborator.
- Comfortable working in fast-paced, dynamic environments.
- Desire to learn and grow in the cybersecurity field.
#J-18808-Ljbffr…
