VodafoneThree - Senior SOC Analyst
Role details
Job location
Tech stack
Job description
Working Hours: Full time 39.5 hours per week - 24/7 SOC Shift role You will own both the reactive and proactive elements of this role, meaning you will have diverse and ever-changing demands upon your time. You will be responsible for monitoring, investigating and triaging alerts, and escalating as necessary, all within SLA and ensuring that key stakeholders are informed & updated throughout. When not reacting to events, you will contribute towards SIEM content development, identifying trends, gaps and patterns in large data-sets along with automation of repetitive tasks, ensuring the SOC operates efficiently. You will be comfortable communicating technical information in simple terms to a variety of audiences. As a key member of the SOC, you will be directly involved with the development and enhancement of SOC processes and will contribute to the overall SOC output (Reporting, IPS signature development etc.) Investigate complex security events and alerts Produce & Review Monthly
Requirements
Reports - Managed Firewall, Managed IPS, Protective Monitoring etc. Configure/Tune SIEM alerts, Managed Firewalls and IPS systems Monitor Threat Intelligence - internal, open source and commercial Experience of working as a Cyber Security Analyst, ideally in an telecoms/ISP environment (2yrs) Ability to interpret logs and events and identify patterns of behaviour, indications of compromise Incident response co-ordination IT and Network Security - Windows, Linux, Firewalls, IPS, Security Appliances. Be able to maintain Customer confidentiality and ability to hold Developed Vetting (DV) level security clearance.