At a Glance
- Tasks: Monitor and triage security alerts in a dynamic trading environment.
- Company: Join Keyrock, a leading innovator in the digital asset space.
- Benefits: Remote work, diverse team, and opportunities for professional growth.
- Other info: Fast-paced environment with a culture of ownership and continuous learning.
- Why this job: Be the first line of defence in shaping the future of digital finance.
- Qualifications: 0-2 years in SOC/security roles; knowledge of security fundamentals required.
The predicted salary is between 30000 - 42000 £ per year.
About Keyrock
Since our beginnings in 2017, we have grown to be a leading change‑maker in the digital asset space, renowned for our partnerships and innovation. Today, we rock with over 200 team members around the world. Our diverse team hails from 42 nationalities, with backgrounds ranging from DeFi natives to PhDs. Predominantly remote, we have hubs in London, Brussels, Singapore and Paris, and host regular online and offline hangouts to keep the crew tight. We are trading on more than 80 exchanges, and working with a wide array of asset issuers. As a well‑established market maker, our distinctive expertise led us to expand rapidly. Today, our services span market making, options trading, high‑frequency trading, OTC, and DeFi trading desks as well as digital asset management. Keyrock is looking to expand and establish itself as a full‑service financial institution through both organic innovation and inorganic growth. But we’re more than a service provider. We’re an initiator, pioneers in adopting the Rust Development language for our algorithmic trading systems, champions of its use in the industry, support the growth of Web3 startups through our Accelerator Program, upgrade ecosystems by injecting liquidity into promising DeFi, RWA, and NFT protocols, and push the industry's progress with our research and governance initiatives. At Keyrock, we’re not just envisioning the future of digital assets. We’re actively building it.
Role Summary
As a SOC Analyst (Level 1), you are the first line of defense for monitoring, triaging, and escalating security alerts across Keyrock’s cloud‑first, high‑availability trading environment. You will follow playbooks/runbooks to validate alerts, enrich investigations with context, and ensure timely escalation to Level 2/Incident Response.
What You’ll Do (Core Responsibilities)
- 24/7 monitoring and alert triage across SIEM/EDR/cloud security tooling; identify false positives vs. credible threats and set appropriate severity.
- Initial investigation and enrichment: gather relevant logs/telemetry, add context, and document findings clearly in the case/ticketing system.
- Escalation and coordination: elevate confirmed/suspected incidents quickly and cleanly to L2/IR with a complete handoff (timeline, scope, IOCs, actions taken).
- Runbook execution: follow SOPs for common events (phishing, suspicious logins, endpoint detections, cloud key/token risk, malware alerts, data exfiltration signals), including containment actions you’re authorized to perform.
- Threat‑aware analysis: map alerts to adversary behaviours (e.g., MITRE ATT&CK techniques) to improve understanding and escalation quality.
- Operational hygiene: maintain accurate shift handovers, update watchlists and investigation notes, and identify recurring alert patterns for tuning recommendations.
What We’re Looking For (Minimum Qualifications)
- 0–2 years in a SOC / security monitoring / IT operations role (or equivalent hands‑on experience, internships, labs).
- Practical knowledge of security fundamentals: networking, DNS, HTTP(S), identity/authentication, and malware basics.
- Familiarity with log investigation and event triage concepts.
- Familiarity with common security tools and workflows (any of the following): SIEM (Splunk/Elastic/Sentinel), EDR (CrowdStrike/Defender), ticketing (Jira/ServiceNow), basic SOAR concepts.
- Strong written communication: produce clear, escalation‑ready tickets and timelines.
- Ability to work rotating shifts/on‑call (as required), including weekends/holidays depending on coverage model.
Nice To Have (Preferred)
- Cloud security exposure (AWS/GCP/Azure): CloudTrail/Activity Logs, IAM analysis, detections for token/key misuse.
- Familiarity with incident response frameworks/processes (e.g., NIST incident response guidance).
- Exposure to detection engineering concepts (rule tuning, false‑positive reduction), or basic scripting (Python/Bash) for investigation automation.
- Knowledge of the digital‑asset ecosystem (exchanges, custody concepts, operational risk in 24/7 trading environments).
- Certifications (optional): Security+, Blue Team Level 1, SSCP, or equivalent practical training.
What Success Looks Like (First 60–90 Days)
- Consistently accurate triage decisions with strong documentation and clean escalations.
- Reliable shift handovers and measurable reduction in re‑opened or incomplete cases.
- Clear recommendations for detection/playbook improvements based on recurring patterns.
Why Keyrock
Work in a fast‑moving, globally distributed environment shaping the future of digital financial markets. A culture that expects ownership, learning, and continuous improvement.
SOC Analyst (Level 1) in London employer: Keyrock
Keyrock is an exceptional employer that fosters a dynamic and inclusive work culture, where innovation and collaboration thrive among a diverse team of over 200 professionals from 42 nationalities. As a SOC Analyst (Level 1), you will benefit from continuous learning opportunities in a cutting-edge digital asset environment, with the flexibility of remote work and regular team engagements to strengthen connections. Join us to be part of a pioneering company that not only values your contributions but also supports your professional growth in the rapidly evolving world of digital finance.
StudySmarter Expert Advice🤫
We think this is how you could land SOC Analyst (Level 1) in London
✨Tip Number 1
Network like a pro! Reach out to current SOC Analysts or professionals in the digital asset space on LinkedIn. Ask them about their experiences and any tips they might have for landing a role at Keyrock. You never know who might have the inside scoop!
✨Tip Number 2
Get familiar with the tools! Brush up on your knowledge of SIEM, EDR, and ticketing systems. If you can talk confidently about how you've used these tools in past roles or projects, it’ll show you’re ready to hit the ground running.
✨Tip Number 3
Practice your communication skills! Being able to document findings clearly is key. Try writing mock incident reports or explaining complex security concepts in simple terms. This will help you stand out during interviews.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Keyrock team. Don’t miss out on this opportunity!
We think you need these skills to ace SOC Analyst (Level 1) in London
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the SOC Analyst role. Highlight any relevant experience, especially in security monitoring or IT operations. We want to see how your skills align with what we’re looking for!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about cybersecurity and how you can contribute to our team at Keyrock. Keep it concise but impactful – we love a good story!
Show Off Your Communication Skills:Since strong written communication is key for this role, make sure your application is clear and well-structured. Use bullet points where necessary and avoid jargon unless it’s relevant. We appreciate clarity!
Apply Through Our Website:Don’t forget to apply through our website! It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re serious about joining the Keyrock family!
How to prepare for a job interview at Keyrock
✨Know Your Security Basics
Make sure you brush up on your knowledge of security fundamentals like networking, DNS, and malware basics. Being able to discuss these topics confidently will show that you have a solid foundation for the SOC Analyst role.
✨Familiarise Yourself with Tools
Get to know common security tools and workflows, especially SIEM and EDR systems. If you can mention specific tools like Splunk or CrowdStrike during your interview, it’ll demonstrate your readiness to hit the ground running.
✨Practice Clear Communication
Since strong written communication is key for this role, practice articulating your thoughts clearly. You might be asked to explain how you would document findings or escalate incidents, so being concise and precise is crucial.
✨Understand the Digital Asset Ecosystem
Having a grasp of the digital asset ecosystem will set you apart. Familiarise yourself with concepts related to exchanges and operational risks in 24/7 trading environments, as this knowledge will be valuable in your role at Keyrock.