What you'll be doing::
At Atech, we believe cyber security is about more than reacting to threats - it's about staying ahead of them. As a leading provider of cloud, cyber security and managed services, we help organisations strengthen their security posture through innovation, expertise and a customer-first approach.
We're looking for an experienced Level 3 SOC Analyst to join our growing Security Operations Centre (SOC). This is a senior technical role where you'll lead complex investigations, conduct advanced threat hunting activities and help shape the future of our SOC capability. You'll act as a technical authority during major security incidents while mentoring colleagues and driving continuous improvement across our security services.
As a Level 3 SOC Analyst, you'll be:
-
Leading complex cyber security incidents from initial investigation through to containment, eradication and recovery.
-
Acting as the technical escalation point for high-priority and complex security events.
-
Conducting advanced threat hunting activities across endpoint, cloud, identity and email environments.
-
Correlating multiple telemetry sources to reconstruct attack chains, identify root causes and determine remediation actions.
-
Providing clear and confident communication to customers and stakeholders during major security incidents.
-
Developing and enhancing detection use cases, analytics and alert tuning within Microsoft Sentinel and Microsoft Defender XDR.
-
Identifying opportunities to improve SOC processes, standards, tooling and operational maturity.
-
Producing high-quality incident reports, lessons learned documentation and technical recommendations.
-
Mentoring and coaching Level 1 and Level 2 SOC Analysts, helping to raise technical capability across the team.
-
Supporting vulnerability assessment and security posture improvement activities when required.
-
Collaborating with internal and customer technical teams to coordinate effective incident response and recovery.
We want to hear from you if you::
- Have significant experience working within a Security Operations Centre environment.
-
Possess advanced hands-on expertise with Microsoft Sentinel, Microsoft Defender XDR and Microsoft Entra ID Protection.
-
Have a strong background in threat hunting, incident response and cyber security investigations.
-
Can analyse and correlate data from multiple telemetry sources to uncover threats and reconstruct attack activity.
-
Are confident leading major incidents and providing technical direction under pressure.
-
Have experience improving detection logic, tuning security tools and enhancing SOC effectiveness.
-
Can communicate complex technical information clearly to both technical and non-technical audiences.
-
Enjoy mentoring others and sharing knowledge to develop team capability.
-
Demonstrate a proactive, analytical and continuous improvement mindset.
-
Must hold Microsoft SC-200
Desirable Certifications
-
SC-300 or SC-400
-
Microsoft AZ-500
-
GIAC GCIA, GCFA or GCED
-
CREST CRT or CCT
-
Other advanced cloud or cyber security certifications
What's in it for me?:
- Competitive salary and benefits package.
-
Flexible hybrid working model with remote working opportunities.
-
Exposure to a broad range of cyber security technologies and customer environments.
-
Opportunity to work on complex and high-impact security incidents.
-
Ongoing learning, certification and professional development support.
-
Clear career progression within a growing cyber security practice.
-
A collaborative and supportive team environment where knowledge sharing is encouraged.
-
The opportunity to influence SOC maturity, service innovation and security outcomes for our customers.
Who you'll be doing it for::
Atech part of the Iomart Group is a highly accredited Microsoft Partner who delivers transformed technology with managed services. Our team of certified Microsoft experts align with your team to deliver an excellent service tailored to your individual needs, 24/7/365.
Our services support 25,000 users globally and proactively monitor 45,000+ devices in key areas:
-
Azure infrastructure managed service
-
Modern Workplace: Office 365, Microsoft 365, and Azure Virtual Desktop
-
Managed Security and SOC with Microsoft Defender, Sentinel
What to do next::
Please click apply if you like the sound of this role. If you do not have an up to date CV or want to have a chat about the role first, please contact us on
[email protected].
We’re an equal opportunities employer and want our vacancies to be available to all, so if you need us to make any reasonable adjustments during the process then just let us know.