Job Closed
This listing is no longer active.
Utilising technology to enable UK organisations to innovate and transform. Outcome focused IT solutions and services.
Senior SOC Analyst
Location
United Kingdom
Posted
74 days ago
Salary
0
Seniority
Senior
Job Description
Senior SOC Analyst
Phoenix Software Limited
• You’ll lead major security incidents from detection through remediation, coordinating containment, analysing attacker activity, and supporting clients through critical decision‑making. • You’ll proactively hunt for threats using advanced KQL analytics, enhance SIEM/EDR detections, tune rules, and develop signatures aligned to MITRE ATT&CK. • You’ll perform malware triage and behavioural analysis, using reverse‑engineering tools when needed to support investigations and strengthen detection coverage. • You’ll produce clear, high‑quality investigation reports, timelines, and intelligence summaries that translate technical findings for a range of audiences. • You’ll contribute to SOC playbooks, mentor junior analysts, support onboarding of new customers, and help evolve SOC processes and tooling. • You’ll participate in the 24×7 on‑call rota to provide expert support during critical incidents.
Job Requirements
- A strong background in DFIR, SOC operations, or incident response
- Ability to lead complex investigations and high‑severity security incidents
- Confident decision‑maker who can guide clients through critical situations
- Strong communicator, able to translate technical findings for any audience
- Collaborative mindset with willingness to work closely across teams
- Ability to mentor junior analysts and support skill development
- Comfortable working in fast‑paced, high‑pressure environments
- Proactive approach to improving SOC processes, playbooks, and detection capabilities
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
Senior SOC Analyst – L3
TreantTreant is er in alle fasen van het leven: van de zorg voor een ongeboren kind tot de zorg in de laatste jaren.
• Act as the final escalation point for security incidents, conducting deep-dive investigations and forensic analysis. • Develop, implement, and enhance security monitoring and threat-hunting processes. • Lead incident response efforts, including containment, eradication, and recovery from security breaches. • Conduct threat intelligence analysis and proactively identify emerging security threats. • Tune and optimize security tools such as SIEM, IDS/IPS, endpoint protection, and vulnerability management solutions. • Collaborate with internal teams and external vendors to improve security architecture and processes. • Provide guidance and mentorship to L1 and L2 SOC analysts. • Develop and maintain security policies, playbooks, and incident response procedures. • Ensure compliance with industry regulations and security best practices. • Conduct red teaming exercises and penetration testing simulations.
Junior SOC Analyst L1, L2
TreantTreant is er in alle fasen van het leven: van de zorg voor een ongeboren kind tot de zorg in de laatste jaren.
• Monitor security alerts from SIEM, IDS/IPS, and endpoint security tools. • Investigate and triage security incidents, escalating them as necessary to L2 and L3 analysts. • Perform log analysis to detect anomalies and potential security breaches. • Assist in vulnerability scanning and security assessments. • Document incidents, findings, and recommendations in security reports. • Collaborate with senior SOC analysts to enhance threat detection and response capabilities. • Stay updated on emerging cybersecurity threats and trends. • Support the development of security awareness training for employees.
• Continuously monitor cloud environments for potential security threats • Analyze security alerts and logs to identify suspicious activities • Lead response efforts during security incidents, including containment, eradication, and recovery • Investigate security breaches and identify root causes • Conduct post-incident analysis to suggest improvements • Document security incidents and maintain detailed records • Act on security incidents reported by customers or identified proactively • Follow established security policies and procedures • Monitor and maintain security systems such as firewalls, intrusion detection and prevention systems, and SIEM systems • Implement security measures to prevent future incidents • Stay up-to-date with the latest security trends and technologies
Security Operations Specialist – Endpoint Security
Iron MountainWe protect, unlock, and extend the value of your information and assets throughout the entire lifecycle.
At Iron Mountain we know that work, when done well, makes a positive impact for our customers, our employees, and our planet. That’s why we need smart, committed people to join us. Whether you’re looking to start your career or make a change, talk to us and see how you can elevate the power of your work at Iron Mountain. We provide expert, sustainable solutions in records and information management, digital transformation services, data centers, asset lifecycle management, and fine art storage, handling, and logistics. We proudly partner every day with our 225,000 customers around the world to preserve their invaluable artifacts, extract more from their inventory, and protect their data privacy in innovative and socially responsible ways. Are you curious about being part of our growth story while evolving your skills in a culture that will welcome your unique contributions? If so, let's start the conversation. Job Summary Iron Mountain is seeking an experienced Security Operations Specialist – Endpoint Security to join our Global Information Security team. In this role, you will be responsible for maintaining operational excellence, ensuring high visibility, and strengthening the resilience of our enterprise endpoint security ecosystem. You will work hands-on with leading platforms, including CrowdStrike, Cyberhaven, Axonius, and Tenable, to protect our workforce, data, and infrastructure. What You’ll Do In this role, you will: - Manage Endpoint Security Platforms: Oversee the day-to-day operations, deployment, configuration, and precise tuning of critical endpoint security tools, such as EDR and DLP. - Drive Agent Health and Policy Compliance: Ensure full agent coverage, health, and policy compliance across global endpoints, collaborating with IT and Infrastructure teams to promptly address gaps like missing agents or unprotected systems. - Lead Threat Detection and Response: Investigate high-priority endpoint alerts and threats, performing essential triage and driving timely containment and remediation activities. - Validate Asset Visibility and Vulnerability Oversight: Utilize Axonius and Tenable to validate asset coverage, identify unmanaged devices, and actively support enterprise vulnerability remediation efforts. - Generate Security Insights and Reporting: Produce insightful analysis from endpoint security data, translating complex findings into clear executive summaries and reports that measure our security posture and inform strategic decision-making. - Automate and Enhance Security Workflows: Drive enhancements in security monitoring and response processes, recommending and implementing automation to increase efficiency and reduce manual intervention in security operations. What You’ll Bring The ideal candidate will have: - 5–10 years of hands-on experience in Security Operations, Endpoint Security Engineering, or Incident Response. - Strong knowledge of Endpoint Detection and Response (EDR), with a preference for CrowdStrike. - Proven ability in security event analysis, root cause investigation, and remediation coordination. - Direct hands-on experience with DLP (Cyberhaven a plus), Asset Intelligence Platforms (Axonius), and Vulnerability Scanners (Tenable). - Understanding of diverse enterprise endpoint ecosystems, including Windows, macOS, and Linux. - A Bachelor’s degree in Computer Science, Information Security, or a related field. What We Offer - Location: Remote, India - Shifts: US EST Hours (8:00 a.m. – 5:00 p.m. EST) Category: Information Technology



