Senior SOC Analyst

Senior SOC Analyst

Full-Time 60000 - 80000 £ / year (est.) No home office possible
Motorway Online Ltd

At a Glance

  • Tasks: Lead security operations and enhance our SOC capabilities in a fast-paced environment.
  • Company: Join Motorway, the UK's fastest-growing used car marketplace, transforming how people sell cars.
  • Benefits: Enjoy competitive salary, health insurance, hybrid working, and enhanced parental leave.
  • Other info: Be part of a diverse team committed to continuous learning and technical excellence.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
  • Qualifications: Experience in threat hunting, cloud security, and incident management required.

The predicted salary is between 60000 - 80000 £ per year.

About Motorway

Motorway is the UK's fastest-growing used car marketplace - our award winning, online-only platform connects private car sellers with over 7,500 verified dealers nationwide, who compete to offer the best price. Founded in 2017, our technology makes the process refreshingly easy, earning us an 'Excellent' Trustpilot rating with over 70,000 reviews. We're not just building a platform; we're changing how people sell cars. Backed by leading investors like Index Ventures and ICONIQ Growth, and following a successful $190 million funding round, we're on a mission to transform the used car market.

About the role

We're looking for an experienced Senior SOC Analyst to assist in the development, enhancement and execution of our Security Operations capability. The successful candidate will develop SOC processes, procedures and workflows for systems security monitoring and security incident response. This role will work collaboratively with other business technical and non-technical teams.

The role will involve:

  • Triage & Analysis: The focus here should be on MTTD (Mean Time to Detect).
  • End-to-End IR: Leading incidents requires not just technical skill, but 'Incident Commander'.
  • Vulnerability & Threat Hunting: This is proactive. Instead of waiting for an alarm, the lead should be searching for 'indicators of compromise' (IoCs) based on recent threat intelligence.
  • Runbook Development: If a process is done more than twice, it should be in a runbook.
  • Tooling & Alarms: This involves the maintenance of your SIEM/SOAR.
  • Coverage & Noise Reduction: A lead must ruthlessly tune out 'false positives' so the team only sees high-fidelity alerts.
  • Platform & Software Engineering: Ensuring Kubernetes/Cloud environments are hardened and implementing Secure by Design.
  • Tabletops & War Games: Regular exercises are the NCSC-recommended way to build 'muscle memory.'
  • Audit & Metrics: Developing dashboards that show MTTR (Mean Time to Respond) and Vulnerability Burn-down rates for the Head of Sec.

Requirements

  • Secure by Design: Act as a security champion for Software and Platform Engineering teams to ensure 'Security-as-Code' is integrated into CI/CD pipelines.
  • Advanced Threat Hunting: Proven ability to proactively hunt for threats using the MITRE ATT&CK framework.
  • Cloud Security Operations: Hands-on experience securing AWS and GCP environments.
  • Forensics & Investigation: Mastery of deep-diving systems forensics on both Windows and macOS.
  • Automation & Scripting: Proficiency in Python or Go for automating SOC workflows.
  • Modern Observability: Experience with developer-centric observability tools.
  • Audit & Reporting: Ability to develop and maintain automated dashboards for MTTR and MTTD.
  • Incident Commander: Ability to lead high-severity incidents end-to-end.
  • Detection Engineering: Expertise in tuning SIEM/EDR to reduce noise.
  • Playbook Development: Proven experience designing and implementing executable runbooks.
  • Infrastructure Knowledge: Strong understanding of network protocols, API security, and container security.
  • Readiness Exercises: Experience organising and running Tabletop Exercises and 'War Games'.
  • Mentorship: A commitment to up-skilling junior analysts.
  • Standards: Good working knowledge of ISO27001, NIST CSF, and PCI DSS v4.0.

Benefits

  • A competitive salary
  • BUPA health insurance
  • Discounted gym membership through BUPA
  • OnHand volunteering membership and one paid volunteering day per year
  • Hybrid working
  • Pension scheme
  • Motorway car leasing scheme
  • Enhanced parental leave
  • Workplace nursery scheme
  • Regular social events
  • Cycle to work scheme

Equal opportunities statement

We are committed to equality of opportunity for all employees. We work to provide a supportive and inclusive environment where people can maximise their full potential. We believe our workforce should reflect a variety of backgrounds, talents, perspectives and experiences.

Senior SOC Analyst employer: Motorway Online Ltd

Motorway is an exceptional employer, offering a dynamic work environment that fosters innovation and collaboration in the fast-paced used car marketplace. With a strong commitment to employee growth, we provide extensive benefits including enhanced parental leave, health insurance, and opportunities for professional development, all while promoting a culture of inclusivity and support. Located in the heart of the UK, our team enjoys a hybrid working model, regular social events, and unique perks like a discounted electric vehicle leasing scheme, making it a truly rewarding place to build your career.
Motorway Online Ltd

Contact Detail:

Motorway Online Ltd Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior SOC Analyst

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect with current employees at Motorway. A friendly chat can sometimes lead to insider info or even a referral!

✨Tip Number 2

Show off your skills! If you’ve got a portfolio or any projects that highlight your SOC expertise, don’t be shy. Share them during interviews or on your LinkedIn profile to catch their eye.

✨Tip Number 3

Prepare for the unexpected! Brush up on your incident response scenarios and be ready to discuss how you’d handle real-life situations. They’ll want to see your thought process in action.

✨Tip Number 4

Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in being part of the Motorway team.

We think you need these skills to ace Senior SOC Analyst

Security Operations
Incident Response
Vulnerability Management
Threat Hunting
Runbook Development
SIEM/SOAR Maintenance
Cloud Security (AWS, GCP)
Forensics and Investigation
Automation and Scripting (Python, Go)
Observability Tools (Logfire, OpenTelemetry)
Incident Command
Detection Engineering
Playbook Development
Network Protocols (TLS 1.3)
Standards Knowledge (ISO27001, NIST CSF, PCI DSS)

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Senior SOC Analyst role. Highlight your experience with security operations, threat hunting, and incident response. We want to see how your skills align with what we're looking for!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about the role and how your background makes you a perfect fit. Don’t forget to mention any relevant projects or achievements that showcase your expertise.

Showcase Your Technical Skills: We love seeing technical skills in action! Be sure to include specific examples of your experience with tools like SIEM/EDR, Python, or cloud security. This will help us understand your hands-on capabilities and how you can contribute to our team.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us you’re genuinely interested in joining our team at Motorway!

How to prepare for a job interview at Motorway Online Ltd

✨Know Your Stuff

Make sure you brush up on your knowledge of the MITRE ATT&CK framework and be ready to discuss how you've used it in your previous roles. Being able to demonstrate your advanced threat hunting skills will show that you're proactive and not just waiting for alerts.

✨Showcase Your Automation Skills

Prepare to talk about your experience with Python or Go, especially in automating SOC workflows. Bring examples of how you've created custom detection logic or improved processes through automation. This will highlight your technical prowess and problem-solving abilities.

✨Be Ready for Incident Command Scenarios

Expect to be asked about your experience leading high-severity incidents. Think of specific examples where you managed technical workstreams and communicated effectively with non-technical stakeholders. This will demonstrate your leadership and communication skills.

✨Understand the Bigger Picture

Familiarise yourself with cloud security operations, particularly AWS and GCP environments. Be prepared to discuss how you ensure security is integrated into CI/CD pipelines. Showing that you understand the intersection of security and software engineering will set you apart.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>