Role Description
The MXDR Team is looking for L2 SOC Analysts with a passion for security to join the team, helping customers get the most out of our services and protect their networks. This is an opportunity to join a technically advanced and talented team and help NCC Group build and deliver world-class services to our customers.
This role is ideal for a seasoned SOC Analyst with experience in cybersecurity looking to broaden their scope of cyber skills with a strong focus on detection and response to cyber incidents.
Responsibilities
-
Monitor global systems for potential threats, vulnerabilities, and indicators of compromise.
-
Perform in-depth analysis of security alerts utilizing both NCC Group's UCP and explore further using the underlying detection platform where necessary.
-
Provide incident remediation and prevention documentation and recommendations to customers based on defined procedures and analyst experience.
-
Document and adhere to processes related to security monitoring procedures.
-
Provide customer service that always exceeds our customersβ expectations.
-
Initiate escalation procedures to counteract potential threats, vulnerabilities, and threat actors.
-
Compile and review service-focused reports.
-
Act as an escalation point for junior team members, aiding and mentoring where necessary.
-
Contribute to the continuous improvement of SOC procedures and documentation.
-
Perform other SOC duties as assigned.
Qualifications
-
Practical experience with security and networking tools such as Microsoft XDR (Sentinel, Defender) and Splunk.
-
Strong understanding of network protocols, endpoint detection, and digital forensics.
-
In-depth knowledge of Windows and Linux operating systems.
-
Hands-on experience analyzing common security incidents and supporting endpoint security.
-
Ability to remain calm and effective during high-pressure and sensitive security situations.
Requirements
-
Not mandatory, but a strong advantage if held or equivalent knowledge demonstrated.
-
Microsoft: SC-200, AZ-500, AZ-900, MS-500.
-
Splunk: Certified User, Power User, Advanced Power User, Enterprise Security Administrator.
-
CrowdStrike: CCFR, CCFH.
-
CREST: CPSA, CRIA, CMRE, CNIA, CHIA.
-
CompTIA: Security+, Network+, CySA+.
-
Cisco: CCNA.
-
SANS: GCIA, GCIH, GSEC.
-
Other relevant certifications.
Benefits
-
Flexible Working: Balance your work and personal life with our flexible working options.
-
Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
-
Medicash & Critical Illness Scheme.
-
Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
-
Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
-
Green Car Scheme: Drive green and save money with our eco-friendly car scheme.
-
Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.
-
Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
-
Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.