Job Closed

This listing is no longer active.

Phoenix Software Limited logo
Phoenix Software Limited

Utilising technology to enable UK organisations to innovate and transform. Outcome focused IT solutions and services.

Senior SOC Analyst

Security OperationsSecurity OperationsFull TimeRemoteSeniorTeam 201-500Since 1990H1B No SponsorCompany SiteLinkedIn

Location

United Kingdom

Posted

74 days ago

Salary

0

Seniority

Senior

Professional CertificateEnglish

Job Description

Senior SOC Analyst

Phoenix Software Limited

• You’ll lead major security incidents from detection through remediation, coordinating containment, analysing attacker activity, and supporting clients through critical decision‑making. • You’ll proactively hunt for threats using advanced KQL analytics, enhance SIEM/EDR detections, tune rules, and develop signatures aligned to MITRE ATT&CK. • You’ll perform malware triage and behavioural analysis, using reverse‑engineering tools when needed to support investigations and strengthen detection coverage. • You’ll produce clear, high‑quality investigation reports, timelines, and intelligence summaries that translate technical findings for a range of audiences. • You’ll contribute to SOC playbooks, mentor junior analysts, support onboarding of new customers, and help evolve SOC processes and tooling. • You’ll participate in the 24×7 on‑call rota to provide expert support during critical incidents.

Job Requirements

  • A strong background in DFIR, SOC operations, or incident response
  • Ability to lead complex investigations and high‑severity security incidents
  • Confident decision‑maker who can guide clients through critical situations
  • Strong communicator, able to translate technical findings for any audience
  • Collaborative mindset with willingness to work closely across teams
  • Ability to mentor junior analysts and support skill development
  • Comfortable working in fast‑paced, high‑pressure environments
  • Proactive approach to improving SOC processes, playbooks, and detection capabilities

Related Categories

Related Job Pages

More Security Operations Jobs

Treant logo

Senior SOC Analyst – L3

Treant

Treant is er in alle fasen van het leven: van de zorg voor een ongeboren kind tot de zorg in de laatste jaren.

Full TimeRemoteTeam 5,001-10,000H1B No Sponsor

• Act as the final escalation point for security incidents, conducting deep-dive investigations and forensic analysis. • Develop, implement, and enhance security monitoring and threat-hunting processes. • Lead incident response efforts, including containment, eradication, and recovery from security breaches. • Conduct threat intelligence analysis and proactively identify emerging security threats. • Tune and optimize security tools such as SIEM, IDS/IPS, endpoint protection, and vulnerability management solutions. • Collaborate with internal teams and external vendors to improve security architecture and processes. • Provide guidance and mentorship to L1 and L2 SOC analysts. • Develop and maintain security policies, playbooks, and incident response procedures. • Ensure compliance with industry regulations and security best practices. • Conduct red teaming exercises and penetration testing simulations.

Philippines
Treant logo

Junior SOC Analyst L1, L2

Treant

Treant is er in alle fasen van het leven: van de zorg voor een ongeboren kind tot de zorg in de laatste jaren.

Full TimeRemoteTeam 5,001-10,000H1B No Sponsor

• Monitor security alerts from SIEM, IDS/IPS, and endpoint security tools. • Investigate and triage security incidents, escalating them as necessary to L2 and L3 analysts. • Perform log analysis to detect anomalies and potential security breaches. • Assist in vulnerability scanning and security assessments. • Document incidents, findings, and recommendations in security reports. • Collaborate with senior SOC analysts to enhance threat detection and response capabilities. • Stay updated on emerging cybersecurity threats and trends. • Support the development of security awareness training for employees.

Philippines
Unit4 logo

Security Operations Engineer

Unit4

The Next-Generation in Smart Enterprise Resource Planning.

Full TimeRemoteTeam 1,001-5,000Since 1980H1B No Sponsor

• Continuously monitor cloud environments for potential security threats • Analyze security alerts and logs to identify suspicious activities • Lead response efforts during security incidents, including containment, eradication, and recovery • Investigate security breaches and identify root causes • Conduct post-incident analysis to suggest improvements • Document security incidents and maintain detailed records • Act on security incidents reported by customers or identified proactively • Follow established security policies and procedures • Monitor and maintain security systems such as firewalls, intrusion detection and prevention systems, and SIEM systems • Implement security measures to prevent future incidents • Stay up-to-date with the latest security trends and technologies

Poland
Job Closed
Iron Mountain logo

Security Operations Specialist – Endpoint Security

Iron Mountain

We protect, unlock, and extend the value of your information and assets throughout the entire lifecycle.

Full TimeRemoteTeam 10,001+Since 1951H1B Sponsor

At Iron Mountain we know that work, when done well, makes a positive impact for our customers, our employees, and our planet. That’s why we need smart, committed people to join us. Whether you’re looking to start your career or make a change, talk to us and see how you can elevate the power of your work at Iron Mountain. We provide expert, sustainable solutions in records and information management, digital transformation services, data centers, asset lifecycle management, and fine art storage, handling, and logistics. We proudly partner every day with our 225,000 customers around the world to preserve their invaluable artifacts, extract more from their inventory, and protect their data privacy in innovative and socially responsible ways. Are you curious about being part of our growth stor​y while evolving your skills in a culture that will welcome your unique contributions? If so, let's start the conversation. Job Summary Iron Mountain is seeking an experienced Security Operations Specialist – Endpoint Security to join our Global Information Security team. In this role, you will be responsible for maintaining operational excellence, ensuring high visibility, and strengthening the resilience of our enterprise endpoint security ecosystem. You will work hands-on with leading platforms, including CrowdStrike, Cyberhaven, Axonius, and Tenable, to protect our workforce, data, and infrastructure. What You’ll Do In this role, you will: - Manage Endpoint Security Platforms: Oversee the day-to-day operations, deployment, configuration, and precise tuning of critical endpoint security tools, such as EDR and DLP. - Drive Agent Health and Policy Compliance: Ensure full agent coverage, health, and policy compliance across global endpoints, collaborating with IT and Infrastructure teams to promptly address gaps like missing agents or unprotected systems. - Lead Threat Detection and Response: Investigate high-priority endpoint alerts and threats, performing essential triage and driving timely containment and remediation activities. - Validate Asset Visibility and Vulnerability Oversight: Utilize Axonius and Tenable to validate asset coverage, identify unmanaged devices, and actively support enterprise vulnerability remediation efforts. - Generate Security Insights and Reporting: Produce insightful analysis from endpoint security data, translating complex findings into clear executive summaries and reports that measure our security posture and inform strategic decision-making. - Automate and Enhance Security Workflows: Drive enhancements in security monitoring and response processes, recommending and implementing automation to increase efficiency and reduce manual intervention in security operations. What You’ll Bring The ideal candidate will have: - 5–10 years of hands-on experience in Security Operations, Endpoint Security Engineering, or Incident Response. - Strong knowledge of Endpoint Detection and Response (EDR), with a preference for CrowdStrike. - Proven ability in security event analysis, root cause investigation, and remediation coordination. - Direct hands-on experience with DLP (Cyberhaven a plus), Asset Intelligence Platforms (Axonius), and Vulnerability Scanners (Tenable). - Understanding of diverse enterprise endpoint ecosystems, including Windows, macOS, and Linux. - A Bachelor’s degree in Computer Science, Information Security, or a related field. What We Offer - Location: Remote, India - Shifts: US EST Hours (8:00 a.m. – 5:00 p.m. EST) Category: Information Technology

United States + 1 moreAll locations: United States | India
Job Closed