The R1 Analyst plays a vital role in the Security Operations Centre (SOC), contributing to the organisation's overall cybersecurity posture by actively participating in the monitoring, analysis, and response to security incidents and events. With a focus on continuous learning and collaboration, the R1 Analyst supports the SOC team in identifying, assessing, and mitigating potential security threats and vulnerabilities. Through the application of foundational technical skills and a strong dedication to detail-oriented analysis, the R1 Analyst assists in safeguarding the organisation's critical systems, data, and assets from cyber risks. By working closely with senior analysts and leveraging emerging technologies, the R1 Analyst helps maintain a vigilant and proactive defense against evolving cyber threats, enabling the organisation to operate securely and with confidence.
- Monitor health and security alerts and events from various sources including security information and event management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), and other monitoring tools.
- Conduct initial triage of security incidents to assess their severity and potential impact on the organization.
- Document and maintain incident details, including initial findings, actions taken, and any relevant evidence.
- Communicate findings and recommendations clearly and concisely to technical and non-technical audiences.
- Initiate escalation procedure to counteract potential threats, vulnerabilities and threat actors both internally and externally.
- Collaborate with other SOC team members, IT staff, and relevant stakeholders to effectively respond to security incidents.
- Provide customer service that exceeds our customers’ expectations at all times.
- Contribute to the creation and maintenance of security documentation, including incident response playbooks, standard operating procedures, and knowledge base articles.
- Document and conform to processes related to security monitoring procedures.
- Compilation and review of service focused reporting.
- Perform other duties as assigned.
Skills:
- Basic understanding of networking protocols, operating systems, and security technologies.
- Familiarity with security tools such as SIEM, IDS/IPS, antivirus, and vulnerability scanning tools.
- Ability to interpret and analyse security logs and events generated by various systems.
- Flexibility to quickly learn and adapt to new security tools, technologies, and processes.
- Strong analytical and problem-solving skills.
- Good communication skills, both written and verbal.
-
Flexible Working: Balance your work and personal life with our flexible working options.
- Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
- Medicash & Critical Illness Scheme
- Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
- Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
- Green Car Scheme: Drive green and save money with our eco-friendly car scheme.
- Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.
- Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
- Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.
We assess, develop and manage cyber threats across our increasingly connected society. We advise global technology, manufacturers, financial institutions, critical national infrastructure providers, retailers and governments on the best way to keep businesses, software and personal data safe.
With our knowledge, experience and global footprint, we are best placed to help businesses identify, assess, mitigate & respond to the risks they face.
We are passionate about making the Internet safer and revolutionising the way in which organisations think about cyber security.
Headquartered in Manchester, UK, with over 35 offices across the world, NCC Group employs more than 2,000 people and is a trusted advisor to 15,000 clients worldwide.
We review every application received and will get in touch if your skills and experience match what we’re looking for. If you don’t hear back from us within 10 days, please don’t be too disappointed – we may keep your CV on our database for any future vacancies and we would encourage you to keep an eye on our career opportunities as there may be other suitable roles.
If you do not want us to retain your details, you can utilise the Manage Your Data tool provided by Pinpoint or contact us directly at:
[email protected]. All personal data is held in accordance with the NCC Group Privacy Notice.
We are committed to diversity and flexibility in the workplace. If you require any reasonable adjustments to support you during the application process, please tell us at any stage.
Please note that this role involves mandatory pre-employment background checks due to the nature of the work NCC Group does. To apply, you must be willing and able to undergo the vetting process.