About Doherty Associates
Doherty Associates (DA) have delivered IT solutions for over 30 years to world-renowned, international clients, primarily within the professional and financial services sectors. We are a Microsoft Solutions Partner with multiple designations, hold a Tier 1 Microsoft CSP relationship, and operate to ISO27001 & ISO9001 standards.
Our services are built on the Microsoft cloud ecosystem and focused on delivering secure, high-quality, outcome-driven solutions for our clients.
Our customers rely on us to bring specialist expertise and innovation across cloud solutions, hybrid working, modern workplace, data and BI, cyber security, governance and compliance. We have built a reputation as a company that keeps its promises and delivers quality.
About the role
This role is office based, Monday to Friday, between the hours 10:30 and 19:00.
Reporting to the Head of Managed Services, the Security Analyst is part of our Managed Services department and is responsible for the day-to-day delivery of our security services to DA customers. You will act as a first responder on security tickets, triaging and resolving alerts, incidents and requests, and remediating issues to bring customer environments in line with our defined security baselines.
Alongside incident work, you will deliver the regular activities that keep our customers secure and informed – vulnerability scanning and remediation, patching and configuration compliance monitoring, security awareness training and phishing simulations – and produce clear, structured reports that translate technical findings into prioritised, actionable recommendations for customers.
This role will best suit someone early in their cyber security career who is keen to learn, with a solid grounding in Microsoft 365 and a genuine interest in security. You will work closely with our 2nd and 3rd Line Security Engineers, who will support your development and to whom you will escalate more complex work to. While technical ability matters, equally important are strong customer-facing attributes – active listening, empathy, attention to detail and clear communication – as you will regularly engage directly with customers.
You will form part of the security escalation path, which may include overtime, changes to shift pattern and/or an on-call cover.
Responsibilities
Security Ticket Management & Incident Response
- Act as a first responder on security tickets; responding promptly to alerts, incidents and requests logged by customers
- Assess, classify and prioritise incoming security tickets in line with internal SLAs, escalating where appropriate so that incidents progress without delay
- Accurately log and efficiently progress tickets within the ConnectWise Manage platform
- Keep detailed notes and time entries within tickets, so that anyone reading a ticket for the first time has all the information required to progress it
Technical Resolution & Remediation
- Resolve security tickets within your technical ability and collaborate with the wider team (2nd / 3rd Line Security Engineers and other specialists) to reach timely resolutions
- Remediate security issues to bring customer environments in line with defined security baselines, escalating to senior engineers where remediation is beyond your technical ability
- Support patching compliance and security configuration monitoring, investigating and remediating issues and escalating root-cause findings to senior engineers where required
Escalation & Service Coverage
- Form part of the security escalation path, which may include overtime, changes to shift pattern or on-call cover
Customer Service & Communication
- Deliver outstanding customer service across all forms of communication
- As part of a wider team, create tickets or route calls through to other engineers as required
- Ensure accurate, consistent, clear and understandable communication via tickets, email and over the phone
Security Operations & Service Activities
- Carry out regular Vulnerability Management Service activities, such as running scans, producing reports and performing remediation activities
Training, Awareness & Documentation
- Manage the delivery of Security Awareness Training and Phishing Simulations using our online platform
- Follow existing procedures and act as a champion of security documentation on the desk, amending existing guides and creating new ones where applicable
Reporting & Customer Engagement
- Produce clear, structured reports outlining risks, findings, and recommended improvements
- Record findings in client risk logs and present them to customers as required, providing actionable, prioritised remediation guidance
Continuous Improvement
- Support ongoing improvement of customers' security posture through regular reviews, reassessments and follow-up of outstanding remediation actions
Administration
- Accurately complete daily timesheets and expenses reporting requirements
Team Contribution
- Support training and onboarding of junior and new engineers in the DA office
- Promote an inclusive, collaborative and respectful working environment, leading by example
Qualifications, experience and skills
- GCSEs (or equivalent) including English and Mathematics.
- Relevant IT or Cyber Security qualification, or equivalent industry experience.
- Previous experience working in an MSP or other outsourced IT services environment, ideally in an IT Service Desk, Technical Support or Cyber Security role.
At least one of the following, or actively working towards achieving one:
- Microsoft SC-900 (Security, Compliance & Identity Fundamentals)
- CompTIA Security+
- ISC2 Certified in Cybersecurity (CC)
- Experience using ticketing systems and following SLA-driven processes.
- Experience supporting Microsoft 365 environments.
Understanding of:
- Microsoft 365 security fundamentals
- Multi-Factor Authentication (MFA)
- Microsoft Defender
- Email security threats (phishing, malware, spoofing)
- Endpoint security fundamentals
- Vulnerability management principles
- Security patching and update management
- Identity and access management basics
- Ability to investigate and triage security alerts and incidents.
- Ability to follow documented incident response procedures.
- Strong written and verbal communication skills.
- Strong customer service skills.
- Ability to document findings, actions and recommendations clearly.
- Strong organisational skills and attention to detail.
- Ability to prioritise workloads and escalate appropriately.
- Willingness to participate in on-call or extended-hours support where required.
Professional qualities
- Empathy – ability to listen to understand and support.
- Adaptable – being able to adjust to changing workloads and priorities.
- A positive, ‘can-do’ attitude.
- High sense of urgency and accountability.
- Proactive and self-motivated.
- Team player who can foster an inclusive and collaborative working environment.
- Keen to learn and share knowledge.
What we offer in return
- Basic salary plus performance bonus
- 34 days of annual leave (incl. 8 UK bank holidays and a day off on your birthday)
- Enhanced family-friendly benefit schemes including company sick pay
- Sponsored training and development and where applicable, a technical exams incentive scheme, including BTL1
- Private medical insurance and Employee Assistance Programme
- Income protection and life insurance
- Company Pension scheme
DISCLAIMER - We use AI notetaking tools to transcribe interviews for internal review. By proceeding, you consent to this.
Pay: £35,000.00-£40,000.00 per year
Work Location: In person