Key Responsibilities
- Monitor and investigate security alerts within the SOC environment.
- Use IBM QRadar SIEM to identify, investigate and respond to security incidents.
- Analyse security events and escalate potential threats appropriately.
- Support incident response and threat detection activities.
- Monitor and respond to alerts across Microsoft security technologies.
- Contribute to the ongoing improvement of SOC processes and security monitoring capabilities.
Essential Experience
- Experience working within a SOC/Security Operations environment.
- Proven hands-on experience using IBM QRadar SIEM for monitoring and incident response.
- Experience with Microsoft Defender / Microsoft Defender for Endpoint.
- Strong understanding of security monitoring, incident detection and response.
- Active SC Clearance.
- Sole UK Nationality
Desirable Experience
- Microsoft Sentinel.
- Microsoft EDR.
- Microsoft Entra ID / Azure AD.
- Email threat detection and response.
- Wider SIEM, EDR and security monitoring technologies.
IR35 Status:
Not specified
Seniority Level:
Mid-Level