SOC Analyst
Summary
L2 SOC Analyst role at NCC Group's MXDR Team, monitoring global systems for cyber threats and analyzing security alerts using Microsoft Security Stack (Sentinel, Defender), Splunk, and EDR/IDS tools. Day-to-day involves incident detection and response, customer communication, mentoring junior analysts, and improving SOC procedures.
- Monitor global systems for potential threats, vulnerabilities, and indicators of compromise.
- Perform in-depth analysis of security alerts utilising both NCC Group's UCP and explore further using the underlying detection platform where necessary.
- Provide incident remediation and prevention documentation and recommendations to customers based on defined procedures and analyst experience.
- Document and adhere to processes related to security monitoring procedures.
- Provide customer service that always exceeds our customers’ expectations.
- Initiate escalation procedures to counteract potential threats, vulnerabilities, and threat actors.
- Compile and review service-focused reports.
- Act as an escalation point for junior team members, aiding and mentoring where necessary.
- Contribute to the continuous improvement of SOC procedures and documentation.
- Perform other SOC duties as assigned.
- Practical experience with security and networking tools such as Microsoft XDR (Sentinel, Defender) and Splunk Enterprise/Cloud/Enterprise Security
- Strong understanding of network protocols, endpoint detection, and digital forensics
- In‑depth knowledge of Windows and Linux operating systems
- Hands‑on experience analysing common security incidents and supporting endpoint security
- Ability to remain calm and effective during high‑pressure and sensitive security situations
Not mandatory, but a strong advantage if held or equivalent knowledge demonstrated.
- Microsoft: SC‑200, AZ‑500, AZ‑900, MS‑500
- Splunk: Certified User, Power User, Advanced Power User, Enterprise Security Administrator
- CrowdStrike: CCFR, CCFH
- CREST: CPSA, CRIA, CMRE, CNIA, CHIA
- CompTIA: Security+, Network+, CySA+
- Cisco: CCNA
- SANS: GCIA, GCIH, GSEC
- Other relevant certifications
- Flexible Working: Balance your work and personal life with our flexible working options.
- Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave differs for SOC shift workers, please speak to your TA partner for more information).
- Medicash & Critical Illness Scheme
- Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
- Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
- Green Car Scheme: Drive green and save money with our eco-friendly car scheme.
- Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.
- Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
- Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.