SOC Analyst

1 month, 1 week ago
Full-time
Junior
Cybersecurity
BeyondTrust

BeyondTrust

BeyondTrust is a global cyber security company specializing in identity and access security solutions, trusted by over 4,000 customers worldwide.

Professional Services
1K-5K
Founded 1985
$49M raised

Description

  • Monitor and triage security alerts across SIEM, EDR, and CSPM platforms.
  • Investigate alerts to determine scope, severity, and escalation needs.
  • Use AI-assisted tools for alert triage, enrichment, and investigation.
  • Classify, document, and track alerts through ticketing and case management systems.
  • Participate in or lead incident response activities from detection through remediation.
  • Perform evidence collection, forensic analysis, and root cause determination.
  • Conduct investigations across identity, cloud, endpoint, email, and network log sources.
  • Maintain and refine incident response runbooks, playbooks, and standard operating procedures.
  • Contribute to detection engineering by designing, tuning, and validating detection rules.
  • Partner with engineering and threat hunting teams to improve logging, coverage, and response workflows.

Requirements

  • 2+ years of experience in a SOC, security operations, or incident response role.
  • Understanding of MITRE ATT&CK, network protocols, and endpoint behavior.
  • Experience with at least one SIEM platform and writing search or detection queries.
  • Familiarity with EDR platforms and cloud environments, with IaaS preferred.
  • Comfort using AI systems such as LLM-based assistants or AI-driven analysis tools in security workflows.
  • Strong written communication skills for technical and non-technical audiences.
  • Experience leading or co-leading complex incident response engagements is preferred.
  • Experience with identity and access management platforms and CSPM tools is preferred.
  • Scripting and automation skills in Python, PowerShell, or equivalent are preferred.
  • Familiarity with SOAR platforms or orchestration tools is preferred.

Benefits

  • Competitive salary and pension with up to a 10% annual bonus.
  • 25 days’ holiday, increasing with length of service.
  • Fully remote UK role with up to 4 weeks per year working abroad, subject to approval.
  • Bupa Private Healthcare for you and your family.
  • Medicash benefits including opticians and dental cover.
  • Life insurance at 4x salary and income protection.
  • Paid parental leave and enhanced maternity leave.
  • Employee Assistance Programme.
  • Opportunity to co-invest and become a BeyondTrust shareholder.
  • Training and development access through Pluralsight and LinkedIn Learning, plus AI skills investment.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

GRC Security Analyst - Information Security

Appfire 251-1K Internet Software & Services

Appfire is hiring a GRC Security Analyst in Bulgaria to manage information security governance, risk, compliance, vendor reviews, remediation, and audit support for its growing Atlassian app business.

AWS Azure Heroku
4 hours, 9 minutes ago

Website Security Support - Remediation Analyst

GoDaddy 5001-10000 Technology, Information and Internet

GoDaddy is hiring a remote Remediation Support Analyst in India to manage website security incidents by identifying, removing, and preventing malware while restoring customer site functionality.

DNS Drupal JavaScript Linux Magento .NET PHP Shell Scripting SQL Server TCP/IP Unix WordPress
4 days, 4 hours ago

IT SOX Admin

CareDx 251-1K Pharmaceuticals

CareDx is seeking an IT compliance and systems documentation professional to strengthen system governance, access controls, audit readiness, and operational integrity in its regulated precision-medicine diagnostics environment.

Active Directory Git NetSuite
4 days, 6 hours ago

Information Systems Security Officer (ISSO), Senior

Lever 251-1K Professional Services

AnaVation is seeking a senior Information Systems Security Officer (ISSO) to lead the Risk Management Framework (RMF) and accreditation of a new digital evidence platform supporting a U.S. Federal Government client, working remotely with occasional travel to Washington, DC.

AWS Azure DevSecOps Penetration Testing
6 days, 6 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers