Enable job alerts via email!

Microsoft Security Operations Analyst | Bracknell | SC Clearable | SC-200

DCL

Reading

Hybrid

GBP 50,000 - 80,000

Full time

13 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading managed security services business is seeking a Senior SOC Analyst Level 2 / 3, focused on the Microsoft Security stack. This role involves advanced threat hunting, incident response, and mentoring junior analysts. Ideal candidates must possess strong skills in Kusto Query Language and experience within SOC environments, with potential for hybrid work arrangements.

Qualifications

  • Must have current experience working in a SOC environment.
  • Ability to achieve UK Security Clearance (SC).
  • Experience in threat hunting and incident resolution.

Responsibilities

  • Lead and resolve complex security incidents and escalations.
  • Conduct advanced threat hunting using Microsoft Security Stack.
  • Perform root cause analysis and post-incident reporting.

Skills

Kusto Query Language (KQL)
Automation using Playbooks
Development of custom analytic rules
Dashboard creation

Job description

Senior SOC Analyst Level 2 / 3. Microsoft Security stack | SC Clearable

Location: Hybrid remote | Berkshire

SC-200 Senior SOC Analyst Level 2 / 3 to join a specialist Managed Security Services business. You will be responsible for advanced threat hunting / triage, incident response etc with a strong focus on the Microsoft Security Stack.

Key Responsibilities:

  • Lead and resolve complex security incidents / escalations

  • Conduct advanced threat hunting using the Microsoft Security Stack.

  • Build, optimise and maintain workbooks, rules, analytics etc.

  • Correlate data across Microsoft 365 Defender, Azure Defender and Sentinel.

  • Perform root cause analysis and post-incident reporting.

  • Aid in mentoring and upskilling Level 1 and 2 SOC analysts.

Required Skills & Experience:

The ability to achieve UK Security Clearance (SC) - existing clearance ideal. (Sorry no visa applications)

Must have current experience working with a SOC environment

Key experience must also include, but not be limited to

  • Development and tuning of custom analytic rules.

  • Workbook creation and dashboarding.

  • Automation using Playbooks and SOAR integration.

  • Kusto Query Language (KQL).

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.