T2 SOC Analyst
Tier 2 SOC Analyst - On Site in the West Midlands
The Role
We're looking for a Tier 2 SOC Analyst to act as the escalation point for complex security incidents within an established security operations team. You'll own investigations escalated from Tier 1, perform deep-dive analysis and drive incidents through to resolution.
Responsibilities
- Act as the escalation point for alerts and incidents triaged by Tier 1
- Perform in-depth investigation of security events across SIEM, EDR and network tooling
- Lead incident response activities including containment, eradication and recovery
- Conduct root cause analysis and produce incident reports with remediation recommendations
- Carry out proactive threat hunting using threat intelligence
- Tune SIEM detection rules and use cases to reduce false positives
- Support playbook and runbook development, and mentor Tier 1 analysts
Your Profile
- Proven experience in a Tier 2 / senior SOC role within an enterprise or MSSP environment
- Strong hands-on experience with SIEM (Sentinel, Splunk, QRadar) and EDR (Defender, CrowdStrike, SentinelOne)
- Solid understanding of MITRE ATT&CK and common attack techniques
- Experience investigating phishing, malware, lateral movement and exfiltration
- Good networking and log analysis fundamentals
- Certifications advantageous (CySA+, GCIH, SC-200, BTL2)
Salary: Up to £55k p/a
Location: On Sire in the West Midlands
Clearance: Eligible for DV Clearance