SOC Analyst
About this role
The key to good security is a clear understanding of what is most critical to the business. When you do not have enough internal resources, time, or skills to monitor and manage your IT environment 24/7, NCC Group can help, freeing up your skilled employees to focus on value-add activities.NCC Group provides a range of managed and hosted services delivered from our Global Security Operations Centre (SOC), which operates 24/7, 365 days a year. Our team of over 100 accredited security experts is available around the clock, dealing daily with over 200 million log events and providing support for thousands of network devices.NCC Group’s MXDR Team provides world-class Extended Detection and Response (XDR) services, detecting, responding to, and mitigating cyber-attacks on our customers' networks in our Security Operations Centres. We use a plethora of detection tools such as the Microsoft Security Stack, Splunk, EDR, IDS & IPS tools, and many more, all integrated with NCC Group's Unified Cyber Platform (UCP).The MXDR Team is looking for L2 SOC Analysts with a passion for security to join the team, helping customers get the most out of our services and protect their networks. This is an opportunity to join a technically advanced and talented team and help NCC Group build and deliver world-class services to our customers.This role is ideal for a seasoned SOC Analyst with experience in cybersecurity looking to broaden their scope of cyber skills with a strong focus on detection and response to cyber incidents. Monitor global systems for potential threats, vulnerabilities, and indicators of compromise.Perform in-depth analysis of security alerts utilising both NCC Group's UCP and explore further using the underlying detection platform where necessary.Provide incident remediation and prevention documentation and recommendations to customers based on defined procedures and analyst experience.Document and adhere to processes related to security monitoring procedures.Provide customer service that always exceeds our customers’ expectations.Initiate escalation procedures to counteract potential threats, vulnerabilities, and threat actors.Compile and review service-focused reports.Act as an escalation point for junior team members, aiding and mentoring where necessary.Contribute to the continuous improvement of SOC procedures and documentation.Perform other SOC duties as assigned. Core Technical Skills & ExperiencePractical experience with security and networking tools such as Microsoft XDR (Sentinel, Defender) and Splunk Enterprise/Cloud/Enterprise SecurityStrong understanding of network protocols, endpoint detection, and digital forensicsIn‑depth knowledge of Windows and Linux operating systemsHands‑on experience analysing common security incidents and supporting endpoint securityAbility to remain calm and effective during high‑pressure and sensitive security situationsDesirable CertificationsNot mandatory, but a strong advantage if held or equivalent knowledge demonstrated.Microsoft: SC‑200, AZ‑500, AZ‑900, MS‑500Splunk: Certified User, Power User, Advanced Power User, Enterprise Security AdministratorCrowdStrike: CCFR, CCFHCREST: CPSA, CRIA, CMRE, CNIA, CHIACompTIA: Security+, Network+, CySA+Cisco: CCNASANS: GCIA, GCIH, GSECOther relevant certifications Flexible Working: Balance your work and personal life with our flexible working options.Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave differs for SOC shift workers, please speak to your TA partner for more information). Medicash & Critical Illness SchemeFinancial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.Green Car Scheme: Drive green and save money with our eco-friendly car scheme.Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.
What this role is, and what else it is called
Employers in Manchester advertise this kind of work as Information Security Consultant, IT Security Engineer (M365), Product Security Engineer and Senior IAM Engineer too, so it is worth searching more than one wording. It is a mid-level Cybersecurity role in Manchester, advertised as fully remote, so it is open to candidates working from home.
About hiring at Nccgroup
Nccgroup appears alongside 3 other live technology roles on this source domain. Among 4 roles with a known arrangement, 50% are fully remote and 50% hybrid. See all Nccgroup roles, salaries and stack.
How this role compares to the market
Manchester has 141 live IT vacancies across 79 source domains, with a median annual salary midpoint of £46,571. Browse Manchester roles.
Market figures are today's snapshot of reportable live UK roles on public careers and vacancy pages; see hiring trends.
Detected on Nccgroup's careers page. ProdReady Recruitment lists this vacancy as an aggregator and is not the employer; applications go to the employer's own site. More IT jobs in North West.