At a Glance
- Tasks: Lead security incident response and mentor junior analysts in a dynamic SOC environment.
- Company: Join Capita, a leader in consulting and digital services with a focus on innovation.
- Benefits: Enjoy a competitive salary, hybrid work, generous holiday, and family leave policies.
- Other info: Diverse and inclusive workplace committed to your development and success.
- Why this job: Make a real impact in cyber security while growing your career in a supportive team.
- Qualifications: Experience in SOC operations, threat intelligence, and leadership skills required.
The predicted salary is between 58500 - 71500 £ per year.
As an experienced Senior Cyber Security Operations Analyst, you will be responsible for handling security incidents received/escalated from the CSOC Analyst (Tier 1 or Tier 2) and perform a business impact analysis on the security incident. You will leverage a deep understanding of information security technologies, aid in triaging threat intelligence from multiple sources, and add contextual information to the security incident. You will perform additional analysis and based on the business impact, recommend the response actions and escalation path. You will be guided by Threat Intelligence which is actionable information (e.g. IOCs/TTPs), conduct threat hunting activities; leveraging and analyzing sources of information as available through the SIEM, identify and investigate potential suspicious activity, and help organizations identify, isolate, and contain security issues. You will support the initial implementation and management of security-related technologies, including (but not limited to) IBM QRadar, Microsoft Sentinel, MDE, MDI, and Defender for Cloud.
Successful candidates must hold SC-200 Certification and be eligible for SC clearance.
What You'll Be Doing:
- Oversee completion of day-to-day checklist(s), including log review, management report scheduling & running, alert analysis, and escalation follow-up.
- Remain current on cyber security trends and intelligence (open source and commercial) to guide the security analysis & identification capabilities of the CSOC team.
- Provide oversight, guidance, and mentoring to L2 & L3 analysts, and fulfil SOC Manager responsibilities in the absence of the SOC Manager.
- Oversee a number of analysts as part of a virtual team of L1 and L2 analysts, including objectives setting, performance management/reviews, training & development, and BAU activities including shift cover etc.
- Perform advanced event and incident analysis, including baseline establishment and trend analysis.
- Support on-call arrangements as part of a Rota, to support L1 Analysts working out of hours.
- Support Major Incident Response activity, from a Protective Monitoring perspective, including supporting teams in identification, containment, and remediation of security-related threats.
- Provide timely advice and guidance on the response action plans for events and incidents based on incident type and severity.
- Identify, create, and implement improvements to procedures and processes, with the SOC Manager's approval.
- Identify opportunities for SOC and client SIEM platform configuration improvements, use case development, monitoring rule creation, tuning & optimization.
- Stakeholder and Client Reporting, and engagement.
- Assist in architectural design to facilitate the onboarding of new information systems, including the assessment, parsing, onboarding of log sources, and use case and rule development.
What we're looking for:
- Level 3 SOC Analyst / Senior Cyber Security and security operations experience.
- Experience of onboarding, tuning, reporting, and configuring SIEM solutions.
- Experience of threat intelligence.
- Leadership and mentoring experience and skills.
- Understanding of low-level concepts including operating systems and networking.
- Commercial experience in Penetration Testing and/or Security Monitoring.
- Understanding of networking and infrastructure design.
- Knowledge/experience of one or more System administration (Linux, Windows, Mac).
- Self-motivated individual with a flexible approach to working.
- Excellent interpersonal skills with the ability to explain technical problems to non-technical business stakeholders at all levels.
- Strong written and oral communication skills.
- Active or ability to obtain SC clearance.
Preferred Qualifications & Experience:
- IT Certifications, including Network+, Security+.
- Protective Monitoring/SOC Certifications, including CySA+.
- Cyber Security Certifications, including CISMP, CISSP.
- Experience with various Microsoft Technologies, including Microsoft Defender for Endpoint, Identity, and Cloud.
- Experience with SIEM platforms, including IBM QRadar, Microsoft Sentinel, and LogRhythm.
- In-depth experience with Microsoft Sentinel, including use case and rule development, workbook/playbook creation, KQL & Logic Apps/SOAR.
- Experience in managing Microsoft Sentinel as an MSSP, including Lighthouse, and management and multi-customer environments using DevOps.
At Capita, we live by our values: Customer First, Always; Fearless Innovation; Achieve Together; Everyone is Valued. These guide how we work, collaborate, and deliver exceptional results.
What's in it for you?
- Hybrid - 2 days office location Belfast HillView House.
- Competitive salary.
- 23 days' holiday, rising to 27 (pro rata) - plus the option to buy more after qualifying period.
- Paid volunteering day with a charity of your choice.
- Generous family leave policies, including 15 weeks' fully paid maternity, adoption, and shared parental leave.
- Cycle2Work scheme, pension, life assurance, and more.
We are committed to building a workforce that reflects the diversity of the communities we serve. As part of our strategic goals, we are focused on accelerating gender and ethnic representation in leadership roles. We warmly encourage applications from women and individuals from Black, Asian, and other ethnic minority backgrounds. We're an equal opportunity and Disability Confident employer, which means we recruit and develop people based on their merit and passion. We're committed to providing an inclusive, barrier-free recruitment process and working environment for everyone.
Level 3 SOC Analyst in Newtownabbey employer: Capita
Capita Pension Solutions is an excellent employer, offering a dynamic work culture that prioritises accuracy and data integrity in the pensions sector. With a strong focus on employee growth, you will have the opportunity to advance within a growing consulting practice while working remotely on complex projects that make a meaningful impact. The supportive environment encourages continuous learning and collaboration, making it a rewarding place to develop your career.
StudySmarter Expert Advice🤫
We think this is how you could land Level 3 SOC Analyst in Newtownabbey
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Capita, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Capita
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Capita. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Level 3 SOC Analyst in Newtownabbey
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Capita insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Capita that you’re committed to staying ahead in the game.
How to prepare for a job interview at Capita
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Capita to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Capita.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.