Jobs
My ads
My job alerts
Sign in
Find a job Career Tips Companies
Find

Soc analyst tier 2

Erskine
DXC Technology Inc.
Soc analyst
Posted: 26 June
Offer description

Job Description:

Cyber Threat Analyst Roles and Responsibilities Tier 2 Analyst

* You must hold a UK passport only due to the security clearance; we can only accept single national status (2nd passport holders, OCI & ILR candidates can't be accepted) and you must have been in the UK for the last 5 years. *

*This role is based onsite in DXC Erskine or Farnborough, covering a rotational 24x7 12-hour shift pattern*

** MUST have at least 6 months working experience in SIEM technologies**

Job Description

The Tier 2 Cyber Security Analyst is a mid-tier position within the Cyber Threat Analysis Centre (CTAC), responsible for advancing the initial work conducted by Tier 1 Analysts and providing more in-depth analysis of potential threats to the organization. This role is crucial in escalated investigation, triage, and response to cyber incidents while supporting the development and training of Tier 1 Analysts. The Tier 2 Analyst works closely with senior and junior analysts to ensure seamless SOC operations and acts as a bridge between foundational and advanced threat detection and response functions.

Responsibilities:

1. Conduct escalated triage and analysis on security events identified by Tier 1 Analysts, determining threat severity and advising on initial response actions.
2. Apply expertise in SIEM solutions utilizing Kusto Query Language (KQL) to perform log analysis, event correlation, and thorough documentation of security incidents.
3. Identify and escalate critical threats to Tier 3 Analysts with detailed analysis for further action, ensuring rapid response and adherence to service Tier objectives (SLOs).
4. Investigate potential security incidents by conducting deeper analysis on correlated events and identifying patterns or anomalies that may indicate suspicious or malicious activity.
5. Use OSINT (Open-Source Intelligence) to enrich contextual data and enhance detection capabilities, contributing to a proactive stance on emerging threats.
6. Monitor the threat landscape and document findings on evolving threat vectors, sharing relevant insights with CTAC teams to enhance overall situational awareness.
7. Follow established incident response playbooks, providing feedback for enhancements and suggesting updates to streamline CTAC processes and improve threat response times.
8. Coordinate with Tier 3 Analysts and management to refine detection and response workflows, contributing to continuous SOC maturity.
9. Collaborate with Tier 3 Analysts on tuning SIEM and detection tools to reduce false positives and improve alert fidelity, submitting tuning requests and testing configurations when necessary.
10. Identify gaps in current detection content and work with Senior Analysts to develop and validate new detection rules and use cases tailored to the organization’s threat profile.
11. Act as a mentor to Tier 1 Analysts, offering guidance on triage and analysis techniques and facilitating on-the-job training to elevate their technical skills and operational efficiency.
12. Assist in training sessions and knowledge-sharing activities, providing feedback on areas for growth and contributing to a supportive learning environment within the SOC.

Knowledge and Skills

1. Understand advanced networking concepts, including IP addressing, basic network protocols, and traffic flow within a network.
2. Possess advanced knowledge of Windows and Linux operating environments, including standard commands, file systems, and user authentication mechanisms.
3. Be competent in using SIEM solutions (e.g., ArcSight, Azure Sentinel) for monitoring and log analysis; some exposure to additional analysis tools such as basic XDR platforms.
4. Demonstrate proficient knowledge using Kusto Query Language (KQL) to search and filter logs effectively.
5. Be familiar with open-source intelligence (OSINT) techniques to aid in identifying potential threats and gathering information.
6. Communicate clearly and efficiently with team members and stakeholders, both internally and externally, under the guidance of senior analysts.
7. Ability to explain simple technical issues to non-technical individuals clearly and understandably.
8. Create concise, structured reports outlining findings from investigations and daily monitoring activities.
9. Manage personal workload effectively to ensure timely completion of tasks within the SOC.
10. Show willingness to collaborate, accept guidance, and learn from more experienced analysts.
11. Demonstrate initiative in learning new technologies and techniques, leveraging internal resources and training.
12. Function efficiently during high-pressure situations, following procedures to ensure consistent incident management performance.

Education and Professional Experience

1. University Degree/Diploma in Cyber Security or equivalent experience.
2. Other IT certifications or experience such as CISSP, COMPTIA CySA+, GCIA, GCIH (Desirable).
3. IT certifications such as CASP or ITIL.
4. Experience in a SOC or SOC equivalent.
5. SC / DV clearance.

Other Requirements

1. Full Driving Licence.
2. Fluent in written and spoken English.

At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive.

Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.

#J-18808-Ljbffr

Apply
Create E-mail Alert
Job alert activated
Saved
Save
Similar job
Soc analyst
Glasgow (Glasgow City)
Dynamic Search Solutions
Soc analyst
Similar job
Senior soc analyst
Glasgow (Glasgow City)
Applicable Limited
Soc analyst
Similar job
Soc analyst
Glasgow (Glasgow City)
FSP Retail Team
Soc analyst
See more jobs
Similar jobs
Consulting jobs in Erskine
jobs Erskine
jobs Renfrewshire
jobs Scotland
Home > Jobs > Consulting jobs > Soc analyst jobs > Soc analyst jobs in Erskine > SOC Analyst Tier 2

About Jobijoba

  • Career Advice
  • Company Reviews

Search for jobs

  • Jobs by Job Title
  • Jobs by Industry
  • Jobs by Company
  • Jobs by Location
  • Jobs by Keywords

Contact / Partnership

  • Contact
  • Publish your job offers on Jobijoba

Legal notice - Terms of Service - Privacy Policy - Manage my cookies - Accessibility: Not compliant

© 2025 Jobijoba - All Rights Reserved

Apply
Create E-mail Alert
Job alert activated
Saved
Save