At a Glance
- Tasks: Monitor global systems for threats and provide incident remediation.
- Company: NCC Group is a leader in cyber security, dedicated to creating a secure digital future.
- Benefits: Enjoy flexible working, wellness programs, and a comprehensive benefits package.
- Why this job: Join a talented team and enhance your cyber skills while making a real impact.
- Qualifications: Practical knowledge of security tools and experience in cybersecurity are essential.
- Other info: This role requires mandatory pre-employment background checks.
Today, it is an unavoidable fact that your business-critical infrastructure and systems are at risk of attack. The key to good security is a clear understanding of what is most critical to the business. When you do not have enough internal resources, time, or skills to monitor and manage your IT environment 24/7, NCC Group can help, freeing up your skilled employees to focus on value-add activities. NCC Group provides a range of managed and hosted services delivered from our Global Security Operations Centre (SOC), which operates 24/7, 365 days a year. Our team of over 100 accredited security experts is available around the clock, dealing daily with over 200 million log events and providing support for thousands of network devices.
NCC Group’s MXDR Team provides world-class Extended Detection and Response (XDR) services, detecting, responding to, and mitigating cyber-attacks on our customers' networks in our Security Operations Centres. We use a plethora of detection tools such as the Microsoft Security Stack, Splunk, EDR, IDS & IPS tools, and many more, all integrated with NCC Group's Unified Cyber Platform (UCP). The MXDR Team is looking for R2/L2 Security Analysts with a passion for security to join the team, helping customers get the most out of our services and protect their networks. This is an opportunity to join a technically advanced and talented team and help NCC Group build and deliver world-class services to our customers. This role is ideal for a seasoned SOC Analyst with experience in cybersecurity looking to broaden their scope of cyber skills with a strong focus on detection and response to cyber incidents.
Summary
- Monitor global systems for potential threats, vulnerabilities, and indicators of compromise.
- Perform in-depth analysis of security alerts utilising both NCC Group's UCP and explore further using the underlying detection platform where necessary.
- Provide incident remediation and prevention documentation and recommendations to customers based on defined procedures and analyst experience.
- Document and adhere to processes related to security monitoring procedures.
- Provide customer service that always exceeds our customers’ expectations.
- Initiate escalation procedures to counteract potential threats, vulnerabilities, and threat actors.
- Compile and review service-focused reports.
- Act as an escalation point for junior team members, aiding and mentoring where necessary.
- Contribute to the continuous improvement of SOC procedures and documentation.
- Perform other SOC duties as assigned.
What we are looking for in you
- Practical knowledge of one or more security and networking toolsets, such as but not limited to: Microsoft's XDR suite (Sentinel/Defender), Splunk Enterprise/Cloud/Enterprise Security.
- Pre-existing, in-depth knowledge of common network protocols and endpoint detection/forensics.
- Pre-existing, in-depth knowledge of Windows and Linux-based operating systems.
- Experience in the extensive analysis of common security incidents.
- Experience in endpoint security.
- Ability to stay calm in highly sensitive and high-pressure incidents.
Desirable Certifications
- It is not mandatory to hold these certifications, however, a demonstration of understanding of one or more of the following is desirable:
- Microsoft certifications SC-200 AZ-500 AZ-900 MS-500
- Splunk certifications Certified User Certified Power User Certified Advanced Power User Certified Enterprise Security Administrator
- CrowdStrike Certified Falcon Responder (CCFR) Certified Falcon Hunter (CCFH)
- CREST CPSA / CRIA / CMRE / CNIA / CHIA.
- CompTIA Security+ Network+ CySA+ Cisco CCNA SANS GCIA GCIH GSEC
- Other relevant certifications.
Ways of working
- Focusing on Clients and Customers.
- Working as One NCC.
- Always Learning.
- Being Inclusive and Respectful.
- Delivering Brilliantly.
Our company
At NCC Group, our mission is to create a more secure digital future. That mission underpins everything we do, from our work with our incredible clients to groundbreaking research shaping our industry. Our teams partner with clients across a multitude of industries, delving into, securing new products, and emerging technologies, as well as solving complex security problems. As global leaders in cyber and escrow, NCC Group is a people-powered business seeking the next group of brilliant minds to join our ranks. Our colleagues are our greatest asset, and NCC Group is committed to providing an inclusive and supportive work environment that fosters creativity, collaboration, authenticity, and accountability. We want colleagues to put down roots at NCC Group, and we offer a comprehensive benefits package, as well as opportunities for learning and development and career growth. We believe our people are at their brilliant best when they feel bolstered in all aspects of their well-being, and we offer wellness programs and flexible working arrangements to provide that vital support.
What do we offer in return?
We have a high-performance culture which is balanced evenly with world-class well-being initiatives and benefits:
- Flexible working
- Financial & Investment Pension
- Life Assurance
- Share Save Scheme
- Maternity & Paternity leave
- Community & Volunteering Programmes
- Green Car Scheme
- Cycle Scheme
- Employee Referral Program
- Lifestyle & Wellness
- Learning & Development
- Diversity & Inclusion
So, what’s next?
If this sounds like the right opportunity for you, then we would love to hear from you! Click on apply to this job to send us your CV and cover letter and the relevant member of our global talent team will be in touch with you. Alternatively send your details to global.ta@nccgroup.com.
About your application
We review every application received and will get in touch if your skills and experience match what we’re looking for. If you don’t hear back from us within 10 days, please don’t be too disappointed – we may keep your CV on our database for any future vacancies and we would encourage you to keep an eye on our career opportunities as there may be other suitable roles. If you do not want us to retain your details, please email global.ta@nccgroup.com.
We are committed to diversity and flexibility in the workplace. If you require any reasonable adjustments to support you during the application process, please tell us at any stage. Please note that this role involves mandatory pre-employment background checks due to the nature of the work NCC Group does. To apply, you must be willing and able to undergo the vetting process. This role being advertised will be subject to BS7858 screening as a mandatory requirement.
SOC Analyst employer: NCC Group
Contact Detail:
NCC Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land SOC Analyst
✨Tip Number 1
Familiarise yourself with the specific tools mentioned in the job description, such as Microsoft’s XDR suite and Splunk. Having hands-on experience or even completing relevant online courses can give you a significant edge during interviews.
✨Tip Number 2
Stay updated on the latest trends and threats in cybersecurity. Being able to discuss recent incidents or advancements in the field will demonstrate your passion and commitment to the role.
✨Tip Number 3
Network with current SOC Analysts or professionals in the cybersecurity field. Engaging in discussions on platforms like LinkedIn can provide insights into the role and may even lead to referrals.
✨Tip Number 4
Prepare for situational questions that assess your ability to handle high-pressure incidents. Think of examples from your past experiences where you successfully managed security threats or incidents.
We think you need these skills to ace SOC Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the SOC Analyst role. Focus on your practical knowledge of security tools, incident analysis, and any certifications you hold.
Craft a Compelling Cover Letter: In your cover letter, express your passion for cybersecurity and detail how your background makes you a great fit for the NCC Group team. Mention specific experiences that demonstrate your ability to handle high-pressure incidents.
Highlight Relevant Certifications: If you have any of the desirable certifications mentioned in the job description, be sure to list them prominently. This shows your commitment to professional development and expertise in the field.
Showcase Customer Service Skills: Since the role involves providing excellent customer service, include examples of how you've exceeded client expectations in previous roles. This will demonstrate your ability to contribute positively to the team's goals.
How to prepare for a job interview at NCC Group
✨Showcase Your Technical Skills
Make sure to highlight your practical knowledge of security and networking toolsets, especially those mentioned in the job description like Microsoft’s XDR suite and Splunk. Be prepared to discuss specific experiences where you used these tools effectively.
✨Demonstrate Incident Response Experience
Prepare examples of how you've handled security incidents in the past. Discuss your approach to incident remediation and how you documented your findings and recommendations, as this is crucial for the role.
✨Stay Calm Under Pressure
The role requires the ability to remain composed during high-pressure situations. Think of scenarios where you successfully managed stress and maintained focus, and be ready to share these stories during the interview.
✨Emphasise Continuous Learning
NCC Group values a culture of learning. Mention any relevant certifications you hold or are pursuing, and express your commitment to staying updated with the latest cybersecurity trends and technologies.