Senior Soc Analyst L3

Senior Soc Analyst L3

Birmingham Full-Time 48000 - 84000 £ / year (est.) No home office possible
A

At a Glance

  • Tasks: Lead incident response and manage security investigations in a dynamic SOC environment.
  • Company: Join NTT DATA, a global leader in security services with a commitment to innovation and community.
  • Benefits: Enjoy flexible work options, continuous learning opportunities, and a supportive work culture.
  • Why this job: Be part of a team that shapes client transformations and tackles real-world security challenges.
  • Qualifications: 3-5 years in IT security, knowledge of SIEM tools, and strong analytical skills required.
  • Other info: Work in a diverse environment with inclusion networks and a commitment to equity.

The predicted salary is between 48000 - 84000 £ per year.

The team you will be working with: P3 Senior SOC Analyst (L3). We are currently recruiting a Senior SOC Analyst L3 Managed Detection and Response to join our growing Security Operations Centre business. This role will be based onsite in Birmingham, you will need to be willing to work in shift patterns, probably 4 days on, 4 days off, as this is a 24/7 security operations centre.

About Us: NTT DATA is one of the world’s largest Global Security services providers with over 7500 Security SMEs and Integration partner to many of the worlds most recognised Security Technology providers. We strive to hire exceptional, innovative, and passionate individuals who want to grow with us. In a constantly changing world, we work together with our people, clients and communities to enable them to fulfil their potential to do great things. We believe that by bringing everyone together, we can solve problems using innovative technology that can create a world that is sustainable and secure. This is a great opportunity for you to play a pivotal role in helping to shape our client’s transformation journeys.

What you will be doing:

  • The primary function of the Senior SOC Analyst L3 is to manage any incidents escalated by the SOC Analyst (L1 & L2) and undertake the detailed investigation of the Security Event.
  • The Senior SOC Analyst shall be able to look at all the evidence available and support the client on the appropriate action to contain and remediate any security incident.
  • They will need to be able to provide root cause analysis and liaise with the customer and the Service Delivery Manager as well as ensuring the actions of the SOC Analysts follow best practice.

Job Duties:

  • Security Monitoring & Investigation: Monitoring SIEM tools to assure high level of security operations delivery function. Oversee and enhance security monitoring systems to detect and analyse potential security incidents. Conduct real-time analysis of security events and incidents and escalate as necessary. Support other teams on investigations into incidents, determining the root cause and impact. Document findings and lessons learned to improve incident response procedures. Ensure runbooks are followed and are fit for purpose.
  • Incident Response: Lead and coordinate incident response activities to effectively contain, eradicate, and recover from security incidents. Develop and maintain incident response plans, ensuring they align with industry best practices. Escalation management in the event of a security incident. Follow major incident process.
  • Threat Intelligence: Stay abreast of the latest cybersecurity threats and vulnerabilities, integrating threat intelligence into security monitoring processes. Contribute to the development of threat intelligence feeds to enhance proactive threat detection. Proactively hunt for threats within enterprise environments using SIEM and EDR solutions. Fine-tune SIEM detection rules, correlation alerts, and log sources to reduce false positives. Analyse threat intelligence feeds, map findings to MITRE ATT&CK framework, and provide actionable security recommendations. Collaborate with SOC teams to investigate alerts, escalate incidents, and improve detection mechanisms. Conduct adversary simulation exercises to test and improve detection capabilities. Generate detailed reports on emerging threats, attack trends, and security posture improvements. Monitored and analysed security logs from SIEM platforms to identify suspicious activity.
  • Security Tool Management: Manage and optimise SIEM tools, ensuring they are properly configured and updated to maximise effectiveness. Own the development and implementation of SOC Use Cases. Evaluate new security technologies and recommend enhancements to the security infrastructure.
  • Collaboration: Collaborate with cross-functional teams, including IT, legal, and management, to address security incidents and implement preventive measures. Provide expertise and guidance to other analysts. Work with the Technical Teams to ensure all new and changed services are monitored accordingly.
  • Documentation: Maintain accurate and up-to-date documentation of security procedures, incident response plans, and analysis reports. Create post-incident reports for management and stakeholders. Support the creation of monthly reporting packs as per contractual requirements. Create and document robust event and incident management processes, Runbooks & Playbooks.
  • Other responsibilities: Involvement in scoping and standing up new solutions for new opportunities. Assisting Pre-Sales team with requirements on new opportunities. Demonstrations of SOC tools to clients. Continual Service Improvement - Recommendations for change to address incidents or persistent events.

What experience you will bring:

  • Must be able to obtain SC Clearance or already hold SC clearance.
  • Must have a good understanding of Incident Response approaches.
  • Must have knowledge and hands-on knowledge of Microsoft Sentinel (or any SIEM tool).
  • Strong verbal and written English communication.
  • Strong interpersonal and presentation skills.
  • Strong analytical skills.
  • Must have good understanding of network traffic flows and able to understand normal and suspicious activities.
  • Must have good understanding of Vulnerability Scanning and management as well as Ethical Hacking (Penetration Testing).
  • Ability to learn forensic techniques.
  • Ability to reverse engineer attacks to understand what actions took place.
  • Knowledge of ITIL disciplines such as Incident, Problem and Change Management.
  • Ability to work with minimal levels of supervision.
  • Willingness to work in a job that involves 24/7 operations or on call.
  • Threat Hunting & Detection (IOC & IOA Analysis, TTP Profiling, Cyber Kill Chain).
  • SIEM Fine-Tuning & Optimisation (QRadar, Splunk, Sentinel, ArcSight).
  • Incident Response & Forensics (MITRE ATT&CK, DFIR, Log Analysis).
  • Threat Intelligence Analysis.
  • Security Analytics & Automation (SOAR, YARA Rules, Sigma Rules).
  • Malware Analysis & Reverse Engineering.
  • Network & Endpoint Security Monitoring (EDR, IDS/IPS, Firewalls).

Education Requirements & Experience:

  • Minimum of 3 to 5 years of experience in the IT security industry, preferably working in a SOC/NOC environment.
  • Preferably holds Cyber Security Certification e.g. ISC2 CISSP, GIAC, SC-200, Certified SOC Analyst.
  • Experience with Cloud platforms (AWS and/or Microsoft Azure).
  • Excellent knowledge of Microsoft Office products, especially Excel and Word.

Who we are: We’re a business with a global reach that empowers local teams, and we undertake hugely exciting work that is genuinely changing the world. Our advanced portfolio of consulting, applications, business process, cloud, and infrastructure services will allow you to achieve great things by working with brilliant colleagues, and clients, on exciting projects. Our inclusive work environment prioritises mutual respect, accountability, and continuous learning for all our people. This approach fosters collaboration, well-being, growth, and agility, leading to a more diverse, innovative, and competitive organisation. We are also proud to share that we have a range of Inclusion Networks such as: the Women’s Business Network, Cultural and Ethnicity Network, LGBTQ+ & Allies Network, Neurodiversity Network and the Parent Network.

What we will offer you: We offer a range of tailored benefits that support your physical, emotional, and financial wellbeing. Our Learning and Development team ensure that there are continuous growth and development opportunities for our people. We also offer the opportunity to have flexible work options. We are an equal opportunities employer. We believe in the fair treatment of all our employees and commit to promoting equity and diversity in our employment practices. We are also a proud Disability Confident Committed Employer - we are committed to creating a diverse and inclusive workforce. We actively collaborate with individuals who have disabilities and long-term health conditions which have an effect on their ability to do normal daily activities, ensuring that barriers are eliminated when it comes to employment opportunities. In line with our commitment, we guarantee an interview to applicants who declare to us, during the application process, that they have a disability and meet the minimum requirements for the role. If you require any reasonable adjustments during the recruitment process, please let us know. Join us in building a truly diverse and empowered team.

Senior Soc Analyst L3 employer: Applicable Limited

NTT DATA is an exceptional employer that fosters a collaborative and inclusive work culture, prioritising mutual respect and continuous learning. Located in Birmingham, our Security Operations Centre offers tailored benefits, flexible work options, and ample opportunities for professional growth, making it an ideal environment for passionate individuals eager to make a meaningful impact in the cybersecurity field.
A

Contact Detail:

Applicable Limited Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Soc Analyst L3

✨Tip Number 1

Familiarise yourself with the latest cybersecurity threats and vulnerabilities. Being well-versed in current trends will not only help you during interviews but also demonstrate your proactive approach to threat intelligence.

✨Tip Number 2

Engage with online communities or forums related to SOC operations and incident response. Networking with professionals in the field can provide insights into the role and may even lead to referrals.

✨Tip Number 3

Consider obtaining relevant certifications, such as CISSP or Certified SOC Analyst. These credentials can enhance your profile and show your commitment to professional development in the cybersecurity field.

✨Tip Number 4

Prepare for scenario-based questions that may be asked during the interview. Think about past experiences where you've managed incidents or collaborated with teams, as these examples will showcase your skills effectively.

We think you need these skills to ace Senior Soc Analyst L3

Incident Response Management
Security Information and Event Management (SIEM)
Threat Hunting Techniques
Root Cause Analysis
Vulnerability Scanning and Management
Ethical Hacking (Penetration Testing)
Malware Analysis and Reverse Engineering
Network Traffic Analysis
Documentation and Reporting Skills
Collaboration with Cross-Functional Teams
Knowledge of MITRE ATT&CK Framework
Security Analytics and Automation
Cloud Security Knowledge (AWS, Microsoft Azure)
Strong Verbal and Written Communication
Ability to Work in 24/7 Operations

Some tips for your application 🫡

Tailor Your CV: Make sure your CV highlights relevant experience in security operations, incident response, and any specific tools mentioned in the job description, such as Microsoft Sentinel. Use keywords from the job listing to ensure your application stands out.

Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and detail how your skills align with the responsibilities of the Senior SOC Analyst role. Mention specific experiences that demonstrate your ability to manage incidents and conduct thorough investigations.

Showcase Relevant Certifications: If you hold any cybersecurity certifications like CISSP or GIAC, be sure to mention them prominently in your application. This will show your commitment to the field and enhance your credibility as a candidate.

Prepare for Technical Questions: While this is about the written application, it's good to prepare for potential technical questions that may arise during interviews. Brush up on your knowledge of SIEM tools, threat intelligence, and incident response best practices to ensure you're ready to discuss these topics if selected.

How to prepare for a job interview at Applicable Limited

✨Showcase Your Incident Response Knowledge

Make sure to highlight your understanding of incident response approaches during the interview. Be prepared to discuss specific incidents you've managed, detailing your role and the outcomes. This will demonstrate your hands-on experience and ability to handle real-world scenarios.

✨Familiarise Yourself with SIEM Tools

Since the role requires knowledge of Microsoft Sentinel or similar SIEM tools, brush up on your skills and be ready to discuss how you've used these tools in past roles. You might even want to prepare examples of how you fine-tuned detection rules or responded to alerts.

✨Prepare for Technical Questions

Expect technical questions related to threat hunting, network traffic analysis, and vulnerability management. Review key concepts and be ready to explain your thought process when analysing suspicious activities or conducting root cause analysis.

✨Demonstrate Strong Communication Skills

As a Senior SOC Analyst, you'll need to liaise with various teams and clients. Practice articulating complex security concepts in simple terms. Prepare to discuss how you've communicated findings and recommendations in previous roles, as strong verbal and written communication is crucial.

Senior Soc Analyst L3
Applicable Limited
A
  • Senior Soc Analyst L3

    Birmingham
    Full-Time
    48000 - 84000 £ / year (est.)

    Application deadline: 2027-07-06

  • A

    Applicable Limited

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>