The Security Analyst will be required to work a 4x4 shift pattern which is 4 days on and 4 days off and will include weekend work. Within the role you will be responsible for performing the day-to-day maintenance of the Security Operations Centre. These responsibilities will include proactive monitoring of customer's security posture as well as reactive actions to control a breach should this occur. Typical tasks will include triage and remediation of SIEM (Microsoft Sentinel) incidents and alerts, threat intelligence and research, system hardening, and documenting customer's infrastructure and assets. Technical product and process knowledge needs to be accompanied by excellent customer service skills, and meticulous attention to detail.
What you'll be delivering
Perform forensic analysis, triage security incidents, and apply proactive remediation.
Proactive monitoring and threat hunting.
Proactive threat intelligence and research.
Vulnerability assessment and management.
Provide technical support and guidance for 1st Line SOC Security Analysts and Service Delivery Manager.
Ownership of security incidents and breaches, as well as escalated issues from 1st Line SOC Analysts through to resolution.
Documenting and articulating issues ready for escalation to the 3rd Line Security Analysts.
Work closely with the Service Desk team for security related escalations.
Provide feedback and be part of the continuous improvement program.
Ensure excellent customer satisfaction is achieved.
Manage customer complaints through to resolution.
Assist the Security Service Delivery Manager with creation and delivery of customer facing reports.
Assist in maturing SOC processes.
Be accountable for the timely response and progression of incoming requests.
We think you'll be successful in this role if you have some of the following
Previous SOC experience preferred.
Knowledge and experience with Microsoft Entra, Microsoft Defender for Cloud, Microsoft Defender XDR suite, and Microsoft Intune.
Knowledge and experience with Microsoft Windows Server and Client operating systems. Linux experience is a bonus.
Knowledge and experience in networking products and frameworks, such as firewalls, switches, wireless infrastructure, WAF, application gateways and the OSI 7-layer model.
Knowledge of Kusto Query Language and PowerShell scripting languages required.