Key Responsibilities:
* Monitor and investigate alerts across host and network security systems
* Analyse traffic, logs, and system events to identify threats and vulnerabilities
* Lead a team of SOC Analysts in developing capability and supporting career progression
* Enhance team knowledge across SOC tooling, detection methodologies, and threat triage
* Develop and optimise detection rules and use cases based on Mitre Att&ck
* Maintain detailed incident documentation, findings, and mitigation strategies
Requirements:
* Proven experience in a Security Operations Centre (SOC) environment
* Experience working as a SOC Level 2
* Previous people management or line management experience
* Strong familiarity with SIEM platforms including Microsoft Sentinel and Splunk
* Knowledge and use of the Mitre Att&ck Framework for detection and threat analysis
* In-depth understanding of:
* Client Server applications and multi-tier web environments
* Relational databases, Firewalls, VPNs, enterprise AntiVirus solutions
* Networking principles (eg TCP/IP, WAN, LAN, SMTP, HTTP, FTP, POP, LDAP)
Working Environment: This is a shift-based position, following a rotation of 2 days (6am-6pm), 2 nights (6pm-6am), 4 days off. Due to the highly secure nature of this work all applicants will be required to gain UK Security Clearance to the highest level.
Note: You must be a British National who has been resident in the UK for at least the last 10 years and you cannot have been outside the UK for more than 28 days on any one occasion within the last 5 years.