Threat Analyst in London

Threat Analyst in London

London Full-Time 40000 - 50000 £ / year (est.) Home office (partial)
Sophos

At a Glance

  • Tasks: Join our MDR team to monitor, detect, and respond to cyber threats.
  • Company: Dynamic cybersecurity firm with a focus on innovation and teamwork.
  • Benefits: Remote-first model, flexible hours, wellness days, and fun team events.
  • Other info: Opportunities for leadership development and global fitness challenges.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
  • Qualifications: 2+ years in SOC, strong IT passion, and excellent analytical skills.

The predicted salary is between 40000 - 50000 £ per year.

As a Threat Analyst - Tier II on our Managed Detection and Response (MDR) team, you will provide best-in-class monitoring, detection, and response services to proactively defend customer environments before attacks prevail. You will work alongside and contribute to a team of cyber threat hunters, incident response analysts, engineers, and ethical hackers by using enterprise, log analysis and endpoint collection systems to facilitate investigations, identification, and neutralization of cyber threats.

Responsibilities include:

  • Investigate and analyze logs and security-related events via Sophos tooling.
  • Handle escalations from Tier I Threat Analysts - guide/advise on investigation handling.
  • Onboard and train new Threat Analysts.
  • Create cases, track and follow up with clients through threat neutralization.
  • Communicate and document findings to various customer audiences including technical and executive teams.
  • Follow up with customers through to issue resolution and drive continuous improvement by providing detailed recommendations to minimize risk in customer environments.
  • Acknowledge and satisfy inbound customer requests and interact with customers through various mediums (Email, Phone, Ticket).
  • Collaborate and assist with core security and threat response teams.
  • Actively research emerging Indicators of Compromise/Attack, exploits and vulnerabilities.
  • Conduct threat hunting to identify potential threats throughout the MDR customer base.
  • Participate in Security Operations process improvement and creation.
  • Obtain metrics for reporting on threat trends, intelligence analysis and situational awareness.

Qualifications:

  • Must thrive within a team environment as well as on an individual basis.
  • Administrate and support Windows OS (workstations and server) and one of the following: Apple or Linux-based operating systems (RedHat, Debian, Ubuntu, OS X).
  • 2+ years of experience working in a SOC environment or computer security team in an IT environment.
  • Passion for all things related to information technology and cybersecurity.
  • Innovative mindset and driven to contribute to a team providing a best-in-class cybersecurity service.
  • Willingness to work outside of standard business days including weekends and holidays – our MDR service is 24x7x365 (Hours are standard business hours).
  • Knowledge of common adversary tactics and techniques, e.g., obfuscation, persistence, defense evasion, etc.
  • Experience with threat hunting.
  • Working knowledge of incident response procedures.
  • Endpoint and network security experience required; IDS, IPS, EDR, ATP, Malware defenses and monitoring experience.
  • Bachelors in Information Technology, Computer Science or a related field; or relevant commensurate work experience.
  • Natural curiosity and ability to learn new skills quickly.
  • Excellent troubleshooting and analytical skills, with proven ability to think outside the box.
  • Customer service-oriented with strong written and verbal communication skills.
  • Fundamental understanding of network traffic analysis including TCP/IP, routing, switching, protocols, etc.
  • Strong understanding of Windows event log analysis.
  • Experience with enterprise information security data management - SIEM.
  • Experience with OSQuery programming and scripting skills - proficient knowledge of PowerShell.
  • Advanced Cyber Security certifications.
  • Experience with SQL query construction.
  • Knowledge of MITRE ATT&CK framework.

Benefits:

  • We encourage teams to get together in person periodically to help facilitate teamwork.
  • Remote-first working model & hybrid options.
  • Flexible start and end times for many roles.
  • Leadership development program.
  • Access to LinkedIn Learning.
  • Global internal coaching program (Coach Match).
  • Periodic Sophos wellness days off for all Sophos to help employees relax and recharge.
  • Global wellbeing program, which offers a range of wellbeing resources, including Sophos Wellbeing Webinars, Stress Management Toolkits, and Developing Resilience Courses.
  • Free Employee Assistance Program (EAP) for confidential advice and counseling on a wide range of work and personal issues.
  • Free annual subscription to the Calm app.
  • Paid parental leave, caregiver leave & bereavement/compassion leave available.
  • We host some unforgettable social experiences for our global teams including our music festival SOPH-Fest, go-karting, Sophmudder, and incredible holiday parties!
  • Our annual global fitness challenge, SOPH-Fit, sees thousands of employees taking part in our virtual global race around the world.
  • Each quarter, we celebrate our exceptional global team by running the Sophos Values Awards, which recognizes and rewards employees who embody the Sophos values and who we are as a company.
  • Health care benefits available worldwide.

Threat Analyst in London employer: Sophos

At Sophos, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters collaboration and innovation within our Managed Detection and Response (MDR) team. With a remote-first working model, flexible hours, and a strong emphasis on employee wellbeing through initiatives like wellness days and access to professional development resources, we empower our Threat Analysts to thrive both personally and professionally. Join us in a rewarding environment where your contributions directly impact cybersecurity and where we celebrate our team's achievements through engaging social events and recognition programs.

Sophos

Contact Details:

Sophos Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Threat Analyst in London

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Sophos, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Sophos

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Sophos. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Threat Analyst in London

Threat Hunting
Incident Response Procedures
Windows OS Administration
Apple OS Administration
Linux OS Administration
Log Analysis
Cybersecurity Knowledge

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Sophos insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Sophos that you’re committed to staying ahead in the game.

How to prepare for a job interview at Sophos

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Sophos to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Sophos.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.