At a Glance
- Tasks: Lead investigations into complex cyber security incidents and enhance detection capabilities.
- Company: Join a leading Financial Services organisation with a mature Cyber Security team.
- Benefits: Competitive pay of £500 per day, hybrid work model, and opportunities for professional growth.
- Other info: Fast-paced environment with excellent career advancement opportunities.
- Why this job: Make a real impact in cyber security while mentoring junior analysts and driving improvements.
- Qualifications: 8+ years in SOC, strong SIEM and incident response experience required.
I'm currently working with a leading Financial Services organisation who are looking to appoint an experienced
- L3 SOC Analyst to join their Cyber Security team on an initial
- 6-month contract , paying
£500 per day Outside IR35 .
This is an excellent opportunity to join a mature Security Operations function where you'll act as the technical escalation point for complex security incidents while driving improvements across detection engineering and threat monitoring capabilities.
The role is offered on a hybrid basis.
- What You’ll Be Doing
- Act as the senior technical escalation point for L1 and L2 SOC Analysts, leading the investigation and response to complex cyber security incidents.
- Monitor, triage and investigate security alerts across a wide range of enterprise security technologies.
- Coordinate incident response activities with internal stakeholders, third-party MSSPs and business teams.
- Develop and enhance incident response procedures, SOC playbooks and operational runbooks.
- Build and improve detection capabilities through SIEM use case development, detection engineering and alert tuning.
- Manage SIEM health, log ingestion, log source onboarding and detection content across an expanding technology estate.
- Conduct in-depth investigations including log analysis, endpoint analysis, email investigations and network traffic analysis to determine root cause and business impact.
- Develop and enhance threat intelligence capabilities by staying current with emerging threats, vulnerabilities and attacker techniques.
- Provide operational oversight and governance of the SOC and Managed Security Service Provider (MSSP).
- Mentor and support junior SOC Analysts, helping to develop technical capability across the team.
- Lead the development of an in-house Digital Forensics capability, including tooling, processes and investigation methodologies.
- Produce high-quality incident documentation, reporting, recommendations and lessons learned for technical and non-technical stakeholders.
- Support wider cyber security initiatives and technical projects as required.
- What We’re Looking For
- Minimum 8 years' experience within a Security Operations Centre (SOC), Cyber Security Engineering or Security Operations Engineering environment.
- Proven experience operating at L3 SOC Analyst or Senior SOC Analyst level.
- Strong experience with SIEM technologies, detection engineering and incident response.
- Experience onboarding log sources, creating detection content, log parsing and SIEM optimisation is highly desirable.
- Previous experience working within a Managed Security Service Provider (MSSP) environment would be advantageous.
• Strong understanding of enterprise security technologies including
- SIEM platforms
- EDR/XDR solutions
- Malware analysis
• Excellent knowledge of Microsoft technologies including
- Microsoft 365
- Windows Server
- Experience identifying indicators of compromise across cloud and on-premise environments.
• Strong understanding of attack methodologies, including
- MITRE ATT&CK Framework
- Cyber Kill Chain
- Phishing
- Malware
- Threat actor tactics, techniques and procedures (TTPs)
- Experience implementing SIEM detection use cases using scripting or automation technologies would be highly beneficial.
- Excellent analytical, investigative and communication skills, with the ability to communicate complex security issues to both technical and non-technical audiences.
- A proactive mindset with a genuine passion for cyber security and continuous improvement
- Previous experience working within Financial Services.
- Insurance sector experience is highly desirable.
- Strong stakeholder management and communication skills.
- Ability to work independently within a fast-paced SOC environment.
- #J-18808-Ljbffr
L3 SOC Engineer employer: Eames Consulting
Eames Consulting is an exceptional employer that fosters a collaborative and innovative work culture, ideal for actuaries looking to make a significant impact in portfolio management. With a strong emphasis on employee growth, we offer ample opportunities for professional development and mentorship, all while enjoying the vibrant atmosphere of London. Our competitive salary package and hybrid working model ensure a balanced and rewarding work experience.
StudySmarter Expert Advice🤫
We think this is how you could land L3 SOC Engineer
✨Get Engaged in Cybersecurity Communities
Dive into online forums or local meetups, like OWASP events or Cybersecurity conferences. These spaces are packed with pros who can share insights and might even know about temporary roles at places like Eames Consulting.
✨Showcase Your Skills Publicly
Link your GitHub or create a series of blogs sharing your knowledge on cybersecurity topics. It’s a great way to demonstrate your expertise and attract attention from hiring managers, especially when they see your passion in action.
✨Stay On Top of Temp Opportunities
Keep an eye on platforms that list temporary positions specifically in tech. Websites focusing on contract roles in cybersecurity can lead straight to employers like Eames Consulting.
✨Make Contact with Recruiters Specialising in Cybersecurity
Reach out to recruitment agencies that focus on cybersecurity roles. They often have insights into temporary roles before they’re advertised and can put your name forward to companies like Eames Consulting.
We think you need these skills to ace L3 SOC Engineer
Some tips for your application 🫡
Show Off Your Technical Skills:In cybersecurity, it's vital to highlight your skills with relevant tools and technologies. Make sure your CV showcases your experience with firewalls, intrusion detection systems, and any cybersecurity frameworks you've worked with. This gives Eames Consulting a clear view of your capabilities right off the bat.
Certifications Matter:If you’ve got any cybersecurity certifications, like CompTIA Security+ or CISSP, flaunt them! These not only validate your skills but also show that you’re committed to the field. Add a section to your CV specifically for this, because in a temporary role like this, those credentials can really set you apart.
Tailor Your Cover Letter to the Role:For a temporary position, we want to see your willingness to learn and adapt quickly. Make your cover letter specific to the role at Eames Consulting; mention why you’re excited about the opportunity and how it fits your career goals. A personal touch can make a big difference!
Don’t Forget the Soft Skills:In cybersecurity, technical skills are crucial, but so are soft skills like teamwork and communication. Make sure to weave examples of how you've collaborated with teams or communicated complex ideas into your application. This shows that you're not just a tech whizz but also a great team player, perfect for a temporary role at Eames Consulting.
How to prepare for a job interview at Eames Consulting
✨Brush Up on Technical Skills
Make sure you’re familiar with the latest cybersecurity tools and techniques, like firewalls, intrusion detection systems, and malware analysis. During the interview with Eames Consulting for the L3 SOC Engineer, be prepared to discuss specific scenarios where you tackled security threats or vulnerabilities.
✨Show Your Problem-Solving Prowess
Cybersecurity is all about thinking on your feet. Expect technical questions that require you to demonstrate your problem-solving abilities. You might be presented with a mock security breach scenario, so practising your responses to potential threats can be a game changer!
✨Demonstrate Your Adaptability
As this is a temporary role, showing that you're adaptable and quick to learn is crucial. Talk about times you've picked up new skills or reacted to changing situations quickly. Employers want to know you can hit the ground running and keep things secure during your short stay at Eames Consulting.
✨Bring Relevant Certifications
If you have any relevant cybersecurity certifications, like CompTIA Security+ or CEH, be sure to mention them. This can really help you stand out during a temporary hiring process, as it showcases your commitment to the field and your readiness to take on the L3 SOC Engineer role at Eames Consulting.