Senior SOC Analyst
- Location
- England, United Kingdom
detection rules into the Global Security Operations Centre. Review and validate detection logic, thresholds, alert conditions and expected behaviours across SIEM platforms such as Microsoft Sentinel, Splunk, QRadar, ArcSight, Exabeam, and LogRhythm . Ensure accurate mapping of detection content to recognised threat frameworks, including MITRE ATT&CK . Identify … Standard Operating Procedures (SOPs) for Tier 1 and Tier 2 SOC teams. Create investigation workflows, triage processes and escalation procedures for security incidents across Microsoft Defender, CrowdStrike, Cortex XDR, SentinelOne, Carbon Black, Azure, AWS, and GCP environments . Define required enrichment data, threat intelligence inputs and decision‐making criteria. ...