6 дней назад
Security Analyst: 2nd Line
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Analyst: 2nd Line (Microsoft Sentinel/Cybersecurity): Maintaining and improving a Security Operations Centre through incident response, threat hunting, vulnerability assessment, and customer security monitoring with an accent on Microsoft security technologies, forensic analysis, and remediation. Focus on investigating complex incidents, strengthening detection capabilities, mentoring junior SOC analysts, and improving operational processes across customer environments.
Location: Hybrid, with on-site work in Newcastle Upon-Tyne and work from home. The role follows a 4x4 night-shift pattern: four nights on and four nights off, including weekends.
Company
is a fast-growing IT company focused on Microsoft Cloud-based solutions and customer security services.
What you will do
- Lead investigations and responses to security incidents, including forensic analysis and resolution.
- Monitor customer environments, conduct threat hunting, and identify security risks proactively.
- Perform vulnerability assessments and support remediation to strengthen customer security posture.
- Investigate and remediate SIEM incidents and alerts using Microsoft Sentinel.
- Support threat intelligence, research, detection improvement, and SOC process maturity.
- Provide technical guidance to junior SOC analysts and collaborate with Service Desk and Customer Success teams.
Requirements
- Proven experience working in a Security Operations Centre with strong incident response and security operations knowledge.
- Hands-on experience with Microsoft Entra, Defender for Cloud, Defender XDR, and Intune.
- Strong knowledge of Windows Server and desktop environments; Linux experience is beneficial.
- Understanding of networking and security technologies, including firewalls, WAFs, application gateways, and network infrastructure.
- Experience with Kusto Query Language and PowerShell for investigation, automation, and security operations improvement.
- Ability to create technical documentation such as security playbooks, processes, and network diagrams.
Culture & Benefits
- Inclusive culture based on integrity, strong work ethic, teamwork, learning, and service excellence.
- Flexibility over where you work through the Winning from Anywhere approach.
- 25 days of holiday and a monthly home-working allowance.
- Private health insurance after one year of service, company sick pay, and 4x base salary life assurance.
- Enhanced parental pay and leave, 24/7 GP access, and an Employee Assistance Programme.
- Access to Perkbox, Cyclescheme, and an electric car scheme.
Hiring process
- AI may support recruitment administration such as note-taking and process automation, but applications are not screened, scored, or ranked by AI.
- Hiring decisions are made by people, with adjustments available during the recruitment process.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →