L3 SOC Analyst

L3 SOC Analyst

Slough Full-Time 42000 - 84000 £ / year (est.) No home office possible
E

At a Glance

  • Tasks: Investigate security threats and mentor junior analysts in a dynamic cyber defence team.
  • Company: Join a leading Cyber Defence Operations team dedicated to global cyber risk management.
  • Benefits: Enjoy a competitive salary, benefits, and flexible remote work options.
  • Why this job: Make a real impact on cyber security while collaborating with global experts.
  • Qualifications: 4+ years in SOC analysis, strong knowledge of security tools, and scripting skills required.
  • Other info: Opportunity to work in a fast-paced environment with continuous learning and growth.

The predicted salary is between 42000 - 84000 £ per year.

Join a Leading Cyber Defence Operations Team and help safeguard against global cyber risks!

Salary: £70,000 + Benefits

Location: Reading - 2 Days a week on site

Employment Type: Permanent

The Cyber Defence Operations team is responsible for protecting customers against cyber threats worldwide. The team’s mission is to enhance the global cyber defence posture and reduce cyber risks through operational leadership and capabilities. We’re looking for a Level 3 SOC Analyst to join our client's team, offering expertise in security analysis and incident response to help drive the success of their Cyber Security Operations Center (CSOC).

In this role, you will investigate and validate potential security threats, utilising a range of security tools and products. As a Senior Analyst, you will also work to mentor and uplift analyst skills and act as a key escalation point. The role will involve collaborating with global security teams, including CERT and Incident Management, to enhance overall security capabilities.

Key Responsibilities:

  • Advanced Incident Response: Handle escalated security incidents that L1 and L2 analysts cannot resolve, such as sophisticated malware infections, APTs, and complex intrusions. Lead forensic analysis and threat hunting efforts to ensure rapid containment and recovery.
  • Security Analysis and Root Cause Analysis: Conduct detailed analysis of security events to address current cyber threats. Participate in or lead security event analysis activities.
  • Security Reporting and Advisories: Contribute to or lead the delivery of cyber security reports and advisories to key stakeholders.
  • Residual Risk Assessment: Deliver post-incident analysis, technical lessons learned, and reporting to assess residual risk.
  • Advanced SIEM Tuning: Refine and tune SIEM tools to reduce false positives and detect more sophisticated threats, ensuring optimal alert configurations.
  • Automating Response Actions: Develop and improve SOAR playbooks to automate repetitive tasks and enhance the incident response process.
  • Collaboration: Work closely with onshore teams to fine-tune alert volumes and contribute ideas for operational improvement.
  • Threat Response: Engage in threat hunting from a blue team perspective, identifying potential threat group activity.
  • Mentorship & Leadership: Mentor and encourage team members to create sustainable knowledge bases, playbooks, processes, and procedures.

Key Requirements:

  • 4+ years of experience in SOC analysis, security event analysis, and incident response (Level 2 or above).
  • Extensive hands-on experience in security event analysis and incident response.
  • Deep knowledge of IPv4/IPv6, TCP networking protocols, and the OSI model.
  • Expertise in security tools: SIEM (ArcSight, Sentinel, QRadar, Splunk), EDR (Microsoft Defender, FireEye), IDS/IPS, firewalls, proxies, web application firewalls, and anti-virus technologies.
  • Strong knowledge of Linux and Windows operating systems.
  • Familiarity with SOAR technologies (e.g., IBM Resilient, Splunk Phantom, SIEMplify) and cloud platforms (e.g., AWS, Azure, O365).
  • Experience investigating intrusions in Linux and cloud environments.
  • Proficiency in scripting, regular expression development, and query optimization (e.g., Kusto, SQL).

If you’re ready to step up your career in a dynamic and global environment, apply today to join a growing Cyber Defence Operations team and make an impact on the future of cyber security!

L3 SOC Analyst employer: Excelerate

Join a forward-thinking company in Reading that prioritises employee growth and development within the dynamic field of cyber security. With a competitive salary of £70,000 plus benefits, our collaborative work culture fosters innovation and mentorship, allowing you to enhance your skills while making a significant impact on global cyber defence. Enjoy the unique advantage of a hybrid work model, balancing on-site collaboration with the flexibility of remote work, all while being part of a team dedicated to safeguarding against evolving cyber threats.
E

Contact Detail:

Excelerate Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land L3 SOC Analyst

✨Tip Number 1

Familiarise yourself with the specific security tools mentioned in the job description, such as SIEM and EDR technologies. Having hands-on experience or even certifications in these tools can set you apart from other candidates.

✨Tip Number 2

Engage with online communities or forums related to SOC analysis and incident response. Networking with professionals in the field can provide insights into the role and may even lead to referrals.

✨Tip Number 3

Prepare for potential technical interviews by practising common incident response scenarios and threat hunting techniques. Being able to demonstrate your problem-solving skills in real-time will impress interviewers.

✨Tip Number 4

Showcase your mentorship abilities by discussing any previous experiences where you've trained or guided junior analysts. This aligns well with the role's requirement for leadership and collaboration within the team.

We think you need these skills to ace L3 SOC Analyst

Advanced Incident Response
Security Analysis
Root Cause Analysis
Security Reporting
Residual Risk Assessment
SIEM Tuning
SOAR Automation
Threat Hunting
Mentorship and Leadership
Networking Protocols (IPv4/IPv6, TCP)
Security Tools Expertise (SIEM, EDR, IDS/IPS)
Linux and Windows Operating Systems
Cloud Platforms (AWS, Azure, O365)
Scripting and Query Optimization (Kusto, SQL)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in SOC analysis, incident response, and security event analysis. Use specific examples that demonstrate your expertise with the required tools and technologies mentioned in the job description.

Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cyber security and your understanding of the role. Mention how your skills align with the responsibilities of the Level 3 SOC Analyst position and express your enthusiasm for contributing to the Cyber Defence Operations team.

Highlight Relevant Skills: In your application, emphasise your hands-on experience with security tools like SIEM, EDR, and your knowledge of networking protocols. Be specific about your familiarity with Linux and cloud environments, as well as any scripting or query optimisation skills you possess.

Showcase Leadership and Mentorship: Since the role involves mentoring junior analysts, include examples of any previous leadership or mentorship experiences. Highlight how you've contributed to team knowledge bases or improved processes in past roles.

How to prepare for a job interview at Excelerate

✨Showcase Your Technical Expertise

Be prepared to discuss your hands-on experience with security tools like SIEM, EDR, and your knowledge of networking protocols. Highlight specific incidents you've handled and the methodologies you used for analysis and response.

✨Demonstrate Problem-Solving Skills

Expect scenario-based questions where you'll need to explain how you would handle complex security incidents. Use examples from your past experience to illustrate your thought process and decision-making skills.

✨Emphasise Collaboration and Mentorship

Since the role involves working closely with global teams and mentoring junior analysts, be ready to discuss your experiences in teamwork and leadership. Share how you've contributed to team success and knowledge sharing.

✨Prepare for Technical Assessments

You may face technical assessments or practical tests during the interview. Brush up on your scripting skills and be ready to demonstrate your ability to analyse security events or tune SIEM configurations effectively.

E
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>