SOC Analyst
I'm recruiting for a SOC Analyst to join a growing Security Operations team in Newcastle.
This is a great opportunity for either an established SOC Analyst or a strong 1st Line Analyst ready to take the next step. You'll be joining a growing team where you'll get hands-on exposure to a broad Microsoft security environment, taking greater ownership of investigations and incidents while continuing to develop technically.
What you'll be doing
- Working at 2nd Line level, investigating and responding to security incidents through to resolution
- Monitoring customer environments and investigating SIEM alerts
- Proactively threat hunting and identifying potential security risks
- Supporting vulnerability assessment and remediation
- Working across the Microsoft security stack, including Sentinel, Defender and Entra
- Using KQL and PowerShell as part of investigations and automation
- Acting as an escalation point for more junior analysts
- Contributing to improvements across SOC processes and detection capabilities
- Communicating with customers and internal teams around security incidents
What I'm looking for
You don't necessarily need to tick every box. I'm interested in speaking to people with:
- Experience working within a SOC / Security Operations environment
- Exposure to Microsoft Sentinel and/or Microsoft Defender
- A good understanding of security incident investigation and response
- Knowledge of Windows environments and general networking/security principles
- Exposure to KQL would be beneficial
- A genuine desire to develop technically and progress within cyber security
Working pattern
Initially, the role will operate on a 4-on, 4-off night shift pattern as part of a transition period. Longer term, the team will move onto an 8-hour shift model.
The role is currently remote, with plans for the Newcastle team to spend more time together in the office as the local operation continues to grow.