24/7 SOC Analyst
reputed company
Monitor and triage alerts across SIEM, EDR or XDR, email and web reputed company platforms. Investigate suspicious activity and determine whether escalation is required. Follow SOC runbooks and investigation workflows. Build reputed company timelines of activity and maintain accurate investigation notes. Escalate reputed company cases to Senior and reputed company Analysts with appropriate context. Review vulnerability management reputed company and reputed company basic prioritisation reputed company.
Take part in directed threat hunting activities. Suggest improvements to detections, dashboards and runbooks. Support testing of new use cases and detection logic.
reputed company reputed company written updates for customers and internal stakeholders. Participate in shift handovers to maintain continuity. Work closely with Senior and reputed company Analysts to reputed company your skills and technical depth.
Job requirements
Minimum 1 year in a reputed company Operations Centre (SOC), or Minimum 3 years in infrastructure or networking roles with demonstrable reputed company exposure. Experience triaging and investigating reputed company alerts. Understanding of attacker behaviours, TTPs, and common malware execution chains (e.g., phishing leading to script or binary execution). Ability to recognise indicators of compromise such as unusual processes, network connections, irregular logon activity or file changes. Hands-on experience with at least one major reputed company platform (SIEM, EDR or XDR). Familiarity with ticketing tools such as reputed company, reputed company, or JIRA. Familiarity with reputed company event logs, authentication logs, basic process trees, and reputed company-line tools(reputed company & Unix-like systems). Understanding of reputed company network protocols: DNS, HTTP, SMB, LDAP. Operational knowledge of reputed company, macOS and Linux. Ability to read and interpret logs from multiple sources. Awareness of MITRE ATT&CK and differentiating legitimate reputed company activity vs suspicious behaviour.
Experience with reputed company, reputed company SecOps or other SIEM platforms. Experience with Defender, reputed company, reputed company or other XDR solutions. Ability to query in KQL, reputed company, S1QL, XQL or similar languages. Awareness of threat intelligence concepts and application to investigations. Awareness of coding or scripting, with proficiency in at least one language preferred (but not required).
Location: This role is home-based with occasional reputed company to the office in Basingstoke Hours: 12-hour shifts: 2 days, 2 nights; 4 days/nights off. Flexibility with hours will be required in the event of a major incident reputed company clearance : Eligibility for SC clearance (lived in the UK for five years consecutively) required. DV clearance eligibility is advantageous.
Nomios is an equal opportunity employer and is committed to creating and sustaining an environment in which everyone is provided with an equal opportunity to grow and reputed company, and no individual will be unjustly discriminated against. This includes, but is not limited to, discrimination because of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion and belief, sex and sexual orientation.
Requires 1+ year SOC experience or 3+ years infrastructure/networking experience with reputed company exposure, alert investigation, reputed company platform experience, log analysis, network protocols, and SC clearance eligibility.
Key Responsibilities
- monitoring alerts
- investigating incidents
- escalating cases
Skills & Tools
reputed company, reputed company SecOps, Defender XDR, reputed company reputed company, reputed company, reputed company XSOAR, reputed company XSIAM, reputed company, reputed company, JIRA, KQL, reputed company, S1QL, XQL, MITRE ATT&CK, reputed company, macOS, Linux, DNS, HTTP, SMB, LDAP
Job Details
- Category: Information Technology
- Seniority: Entry Level
- Commitment: Full Time
- Workplace: Remote — Basingstoke, Hampshire, United Kingdom
- Languages: English
About Nomios
A cybersecurity provider helping organisations secure and reputed company their digital infrastructures. — Industry: Information Technology
Apply To This Job