See all roles

Tier I SOC Analyst

Work from home Full-time role Hiring

Overall Purpose

The Security Operations team exists to protect the client by proactively detecting and responding to cyber security threats.

Our SOC Analysts are our front line of cyber defence: monitoring and assessing cases, correlating observables, mitigating and defending against malicious cyber activity and adapting to an ever-changing threat landscape.

Operating as a triage specialist responsible for the monitoring management and configuration of relevant security tools, containing and remediate attacks, as well as preventing intrusion and unauthorized access to critical data and devices.

This role requires willingness to work shifts (including unsociable hours and bank holidays where these fall into your shift pattern) as part of a 24x7 team.

Principal Duties and Responsibilities

  • Monitor and identify cyber security threats that pose a risk, or have the potential to pose a risk, to the client.
  • Monitoring SIEM alerts effectively to minimize downtime and restore services.
  • Triage alerts and alarms across a broad range of security controls as they come into the SOC and assess urgency to escalate to Tier 2 as appropriate.
  • Ensure investigation steps are clearly documented and accurately escalated to Tier 2 when needed.
  • Provide Tier 1 case resolution for basic security cases including generating initial reporting, providing follow-ups and requesting information and resolution activity.
  • Responsible for providing communication directly with CyberClans’ customers regarding security incidents and other related topics.
  • Responsible for understanding where threats may appear.
  • Responsible for producing and maintaining documentation relevant to both the SOC and position.
  • Responsible for updating and offering continual improvement to the knowledge base.
  • Work with the CyberClan global team when responding to security incidents.
  • Support the SOC team research global security events, issues and trends to produce security advisories for customers based on findings.
  • Responsible for managing and configuring security monitoring tools.
  • Investigating intrusion attempts and performing in-depth exploit analysis.
  • Conducting cyber threat research and analysis for purposes of improving the strength of network security.
  • Assist with defining, testing and operating new ways of working with new technology solutions or processes supplied to the SOC team.
  • Provide analytical feedback on client network traffic patterns.
  • Provide analytical feedback related to malware and other network threats.
  • Accept, manage and update service requests and incidents to ensure contracted Service Level Agreements are met.

Generic Duties and Responsibilities

  • To continuously develop both technical and personal skills required within the role and assist with development of other staff.
  • Participate in identification and delivery of Service Improvement Plans.
  • Proactively support business KPIs.
  • Understand and comply with all Information Security policies.
  • Understand and comply with all company policies.
  • Interact with strategic incident response and threat intelligence vendors.
  • To undertake other responsibilities, training and tasks as reasonably requested by line management.
  • Undertake periodic assurance reviews and produce associated reporting as required.
  • Participate in CyberClan internal security awareness initiatives and other training requests
  • The job description may be altered at any time in line with the level of the post to meet changing requirements, but only in full consultation with the post holder.

Personal Specifications:

Qualifications:

  • Educated to GCSE level or equivalent
  • Cyber Security Qualification (COMPTIA or equivalent experience)
  • ITIL Foundation

Skills, Knowledge and Experience:

  • Knowledge and experience of SOC tooling to identify threats.
  • Experience of collaboration tools
  • Keen analytical mind and approach
  • Previous experience of SOC analysis beneficial
  • Proactively shares own expertise with others
  • Knowledge and experience of IT systems, networking and security threat landscape including:
    • Network fundamentals for example OSI stack, TCP/IP, DNS. HTTPS, firewall logs
    • Cloud technologies (AWS, Google Cloud, Azure)
    • Active Directory, Group Policies, PowerShell
    • Endpoint protection applications (Antivirus, Web Filtering, ATP, Encryption)
    • IDP/IPS Systems
    • SIEM tools
    • SOAR is an added advantage
  • Knowledge of malware capabilities, attack vectors and impact.

Personal Qualities:

  • Excellent interpersonal skills sufficient to develop professional relationships and rapport amongst key stakeholders
  • Strong team player
  • Genuine enthusiasm and drive to work within cyber security.
  • Excellent customer service skills
  • Good written skills to write explanations of systems, regulations and or procedures.
  • Good verbal communication
  • Ability to identify and suggest continual improvement
  • Good analytical and problem-solving skills
  • Ability to adapt to organisational change
  • Proven ability to manage varied workload
  • Ability to work unsupervised and under pressure.
Apply To This Job

You might like

IT Security Analyst – Remote, United States

Work from home Full-time role

AI Cyber Threat Research Intern

Work from home Full-time role

Walmart – Senior Manager I, Software Engineering – Health and Wellness – iOS – Bentonville, AR

Work from home Full-time role

Walmart Jobs In Colorado Springs

Work from home Full-time role

Customer Service Account Associate - Springfield Call Center

Work from home Full-time role

Customer Service Account Associate

Work from home Full-time role

Account Associate Customer Service - Richmond VA

Work from home Full-time role

Account Manager, Molecular Diagnostics, QIAstat (WI, IA, MN, ND, SD, NE)

Work from home Full-time role

Project Manager – Financial Solutions Lead

Work from home Full-time role

Product Manager, Developer Platform - Continuous Integration & Fleet Automation [Remote]

Work from home Full-time role

AI Engineer

Work from home Full-time role

Immediate Hiring: Part Time Temporary Planner

Work from home Full-time role

Production Planner (ON-SITE) – Sacramento, CA

Work from home Full-time role

Civil Engineer - AI Model Training – Remote

Work from home Full-time role

Technology Director - Assisted Selling & Customer Returns Experiences (Remote)

Work from home Full-time role

Site Reliability Engineer (SRE)

Work from home Full-time role

Experienced Remote Customer Service Specialist – Delivering Exceptional Arenaflex Experiences

Work from home Full-time role

Account Executive, Wealth Management

Work from home Full-time role

Female Customer Service Representative – Delivering Exceptional Experiences at arenaflex

Work from home Full-time role

Experienced Data Entry Specialist – Remote Opportunity with arenaflex

Work from home Full-time role