- Company Name
- NexGen Associates
- Job Title
- Security Operations Center Analyst
- Job Description
-
**Job Title:** Security Operations Center Analyst
**Role Summary:**
Tier‑2 SOC Analyst responsible for leading the investigation, containment, and remediation of medium to high‑severity security incidents within a 24x7 Operations Centre. Acts as the technical escalation point for Tier‑1 analysts, enhances detection capabilities, and contributes to continuous SOC maturity initiatives.
**Expectations:**
- Handle end‑to‑end incident response for complex alerts.
- Maintain high‑quality, timely incident documentation and reporting.
- Proactively tune and improve SIEM rules, onboarding new data sources, and reduce false positives.
- Mentor junior analysts and support SOC process development.
**Key Responsibilities:**
- Lead triage, investigation, and classification of security events.
- Own incident containment, recovery, and root cause analysis.
- Serve as technical escalation point for Tier‑1 analysts.
- Conduct threat intelligence analysis and disseminate insights.
- Tune SIEM rules, enhance detection, and reduce false positives.
- Onboard and integrate new data sources; refine correlation logic.
- Lead post‑incident reviews, reporting, and service review summaries.
- Support vulnerability lifecycle management, remediation guidance, and patch validation.
- Contribute to automation, MITRE ATT&CK mapping, and threat modelling initiatives.
**Required Skills:**
- 1–5 years SOC or equivalent cyber operations experience.
- Hands‑on expertise with SIEM platforms (LogRhythm, Elastic, Sentinel, etc.).
- Strong knowledge of network protocols, firewalls, IDS/IPS, and endpoint security.
- Analytical mindset with clear written and verbal communication.
- Ability to manage and resolve complex incidents end‑to‑end.
- Scripting/automation skills (PowerShell, Python, Bash, etc.) highly beneficial.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Cybersecurity, or related field (preferred).
- Industry certifications desirable: Security+, CEH, CISSP, CCSP, BTL1/2.
- No mandatory certification, but relevant credentials strongly encouraged.
Stoke-on-trent, United kingdom
On site
Fresher
11-12-2025