This is a great opportunity for either an established SOC Analyst or a strong 1st Line Analyst ready to take the next step. You'll be joining a growing team where you'll get hands-on exposure to a broad Microsoft security environment, taking greater ownership of investigations and incidents while continuing to develop technically.
What you'll be doing
Working at 2nd Line level, investigating and responding to security incidents through to resolution
Monitoring customer environments and investigating SIEM alerts
Proactively threat hunting and identifying potential security risks
Supporting vulnerability assessment and remediation
Working across the Microsoft security stack, including Sentinel, Defender and Entra
Using KQL and PowerShell as part of investigations and automation
Acting as an escalation point for more junior analysts
Contributing to improvements across SOC processes and detection capabilities
Communicating with customers and internal teams around security incidentsWhat I'm looking for
You don't necessarily need to tick every box. I'm interested in speaking to people with:
Experience working within a SOC / Security Operations environment
Exposure to Microsoft Sentinel and/or Microsoft Defender
A good understanding of security incident investigation and response
Knowledge of Windows environments and general networking/security principles
Exposure to KQL would be beneficial
A genuine desire to develop technically and progress within cyber securityWorking pattern
Initially, the role will operate on a 4-on, 4-off night shift pattern as part of a transition period. Longer term, the team will move onto an 8-hour shift model.
The role is currently remote, with plans for the Newcastle team to spend more time together in the office as the local operation continues to grow
Salary description
£35000.00 - £45000.00 per year
