Senior SOC Analyst

We are recruiting four Senior SOC Analysts to join an established 24/7 Security Operations Centre. You will independently monitor, investigate and analyse cybersecurity events and incidents, supporting the delivery of an effective round-the-clock cyberdefence capability.
Key responsibilities

  • Monitor the organisation's technology estate for cyber events, suspicious activity and indicators of compromise.
  • Independently investigate security alerts and complex cyber events.
  • Assess the significance, potential impact and appropriate response to identified threats.
  • Correlate information from multiple technical sources to establish attack timelines and identify affected systems.
  • Analyse indicators of compromise, attacker techniques and threat intelligence.
  • Escalate confirmed or suspected incidents to the Lead SOC Analyst or Incident Response team.
  • Provide Incident Responders with accurate findings, evidence, timelines and technical information.
  • Validate monitoring content, detection rules and operational procedures before live deployment.
  • Support the onboarding of new systems, applications and cloud services into SOC monitoring.
  • Maintain accurate and fully documented investigation records.
  • Mentor and provide technical guidance to developing SOC Analysts.
  • Contribute to detection tuning, monitoring improvements and post-incident reviews.

Essential skills and experience

  • Experience working within a SOC or comparable cybersecurity operations environment.
  • Strong experience investigating cybersecurity alerts using enterprise monitoring technologies.
  • Good knowledge of SIEM platforms, security-monitoring tools and log-analysis techniques.
  • Understanding of cyberattack methodologies, indicators of compromise, threat intelligence and common attacker techniques.
  • Experience analysing data from multiple technical sources to investigate security events.
  • Experience supporting cyber incident-response activities.
  • Knowledge of intrusion detection, forensics, protective security, risk management and secure operations.
  • Strong analytical and problem-solving skills with sound technical judgement.
  • Ability to produce accurate technical reports and investigation findings.
  • Ability to operate effectively within a 24/7 shift environment.
  • Relevant certification such as Microsoft SC-200, CompTIA CySA+, GIAC, GCIA or equivalent.

Experience of Microsoft Sentinel, LogRhythm, MITRE ATT&CK, NCSC guidance, detection tuning or working within Government, Defence, Critical National Infrastructure or similarly regulated environments would be advantageous.
Working arrangementsThis is a fully site-based position at Hanslope Park, Milton Keynes, with no hybrid or remote-working options. The role operates a 24/7/365 Panama rota, including 12-hour day and night shifts.
Security clearanceApplicants must be British nationals and capable of obtaining UK Government Developed Vetting, DV clearance. Existing DV clearance is not essential, but candidates who currently hold an active DV clearance will be at a significant advantage, particularly given the urgent nature of the requirement.

What you need to do now

If you're interested in this role, click 'apply now' to forward an up-to-date copy of your CV, or call us now.
If this job isn't quite right for you, but you are looking for a new position, please contact us for a confidential discussion about your career.

Hays EA is a trading division of Hays Specialist Recruitment Limited and acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C's, Privacy Policy and Disclaimers which can be found at hays.co.uk

Job Details

Company
Hays Specialist Recruitment Limited
Location
Milton Keynes, Buckinghamshire, United Kingdom
Hybrid / Remote Options
Employment Type
Full-Time
Salary
£73.00 per hour
Posted