Cyber Security Analyst

Sapphire

Glasgow

On-site

GBP 42,000 - 60,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Sapphire in Glasgow is seeking a Tier 1 Security Analyst to join our state-of-the-art SOC in Glasgow City Centre. The role focuses on triaging security alerts, following playbooks, and escalating or resolving incidents as needed. You will work with SIEM/EDR tools and threat intelligence to support client environments.

The role requires readiness to attend office daytime shifts and to develop expertise in cybersecurity through on-the-job training and team support.

Qualifications

  • Relevant security certifications (e.g., security operations, incident response) preferred.
  • Experience with security incident handling, triage and escalation.
  • Familiarity with SIEM/EDR tools and best practices in SOC environments.

Responsibilities

  • Monitor and respond to security alerts within SLA using SIEM/EDR and related tools.
  • Perform triage, analysis and investigation guided by playbooks and processes.
  • Leverage threat intelligence as part of investigations.
  • Conduct investigations using diverse data sets across multiple customer environments.
  • Develop relationships with client IT and information security teams.
  • Attend the office on daytime shifts in Glasgow.

Skills

Threat intelligence
Incident response
SIEM
EDR
Vulnerability management
Cloud security
Network security
Automation
SOAR
Endpoint security
XDR

Tools

Microsoft Sentinel
Threat Intelligence Platforms
Vulnerability Management tools
SOAR platforms
XDR tooling

Job description

We have an exciting opportunity to join our Scottish office in Glasgow City Centre as a Tier 1 Security Analyst (T1SA) based in a state-of-the-art Security Operations Centre (SOC).

Description

The role of a T1SA is responsible for the first point of contact with security alerts. The primary responsibility is triaging security alerts following security playbooks and processes as part of initial incident investigations. Resolving or escalating Security Incidents as required and partaking in incident response tasks to assist with post-incident reviews will be central to the role.

T1SAs are responsible for being resourceful, adaptive and creative with the ability to work under pressure, including but not limited to working to mitigate the impact of live and ongoing security incidents.

This role encompasses building experience while leveraging the team’s expertise to accelerate learning and understanding of the Managed Services that are being delivered. This includes building expertise in cybersecurity and making use of the training resources that will be provided.

Key Activities & Responsibilities

  • Monitor and respond to security alerts generated by technologies such as SIEM, EDR, Microsoft Sentinel, vulnerability management, phishing and threat intelligence solutions within a given SLA.
  • Performing triage, in-depth analysis and investigation as guided by processes and playbooks.
  • Use sophisticated threat intelligence as part of investigations.
  • Conduct security investigations using historical data.
  • Conduct investigations with a wide range of data sets across multiple customer environments.
  • Develop and maintain a strong relationship with the client IT and Information Security team.

Successful candidates will have a strong awareness of the cyber security industry and demonstrate knowledge with relevant certifications where appropriate for solutions, including XDR, SIEM solutions, Threat Intelligence, EDR, vulnerability management, network, cloud, Artificial Intelligence/Machine learning, SOAR, automation and endpoint security technologies.

You are required to attend the office on your daytime shifts.

We’re Committed to Inclusion

Sapphire is proud to be an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees

Ready to make a difference?

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Tier 1 Security Analyst: Incident Triage & Response
SOC Tier 1 Security Analyst: Incident Triage & Response

Sapphire • Glasgow

On-site
GBP 42,000 - 60,000
Hybrid SOC Cyber Security Analyst (Tier 1) Threat Detection
Hybrid SOC Cyber Security Analyst (Tier 1) Threat Detection

Gamma • Glasgow

Hybrid
GBP 45,000 - 65,000
25 days annual leave + birthday
Subsidised private medical insurance
5.1% matched pension contributions
+6
Cyber Security Analyst - Enterprise Markets
Cyber Security Analyst - Enterprise Markets

Gamma Communications plc • Glasgow

Hybrid
GBP 40,000 - 65,000
25 days annual leave + birthday
Private medical insurance
5.1% pension matching
+6
Level 1 SOC Analyst - MSP
Level 1 SOC Analyst - MSP

Hamilton Barnes Associates Limited • West Yorkshire

On-site
GBP 29,250 - 35,750
Career progression pathways
Hands-on experience with industry-leading security tools
Mentorship from experienced analysts
+2
Cyber Security Analyst
Cyber Security Analyst

Netcompany Group • Leeds

On-site
GBP 40,000 - 60,000
Private Medical Health care via Vitality
Pension contribution
Life Assurance
+2
Cyber SOC Lead
Cyber SOC Lead

Skills Development Scotland • Glasgow

Hybrid
GBP 70,000 - 100,000
Manager, Security Operations
Manager, Security Operations

N-able • Dundee

Hybrid
GBP 60,000 - 85,000
Medical, dental and vision coverage
Generous PTO and observed holidays
2 Paid Volunteer Days per year
+3
Security Operations Center Analyst
Security Operations Center Analyst

TRIA • City of Edinburgh

Hybrid
GBP 50,000 - 62,000
Hybrid work arrangement
On-call allowance
Cyber Security Analyst
Cyber Security Analyst

Synapri • Greater London

Hybrid
GBP 50,000 - 70,000
Cyber SOC Lead Ref No: 3594
Cyber SOC Lead Ref No: 3594

Skills Development Scotland • Glasgow

Hybrid
GBP 90,000 - 120,000
Flexible working
Wellbeing program