SOC Level 2 Security Analyst

NTT
United Kingdom
Workplace: OnsiteFull timeFunction: CybersecurityExperience: 2-4 yearsSkills: ["Analytical thinking","Decision-making","Communication","Independent work"]

Operate as a Level 2 SOC analyst in a 24/7 UK Sovereign SOC, investigating and validating escalated security alerts from Level 1. Coordinate incident response actions such as containment, eradication, and recovery, support major incidents, and guide L1 analysts during live events. Use SIEM and threat intelligence (Splunk, Microsoft Sentinel, QRadar) to analyze telemetry, execute SOAR playbooks, improve detection logic, and produce incident documentation and reporting.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
NTT
NTT
1 week ago

SOC Level 2 Security Analyst

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 4 hours agoStatus: Live

Job Summary

Operate as a Level 2 SOC analyst in a 24/7 UK Sovereign SOC, investigating and validating escalated security alerts from Level 1. Coordinate incident response actions such as containment, eradication, and recovery, support major incidents, and guide L1 analysts during live events. Use SIEM and threat intelligence (Splunk, Microsoft Sentinel, QRadar) to analyze telemetry, execute SOAR playbooks, improve detection logic, and produce incident documentation and reporting.
Location: United Kingdom
Workplace: Onsite
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Investigate and validate escalated security alerts and events to determine confirmed incidents, including root-cause, scope, impact, and attacker-behaviour analysis.
  • •Coordinate incident response activities (containment, eradication, recovery) and follow major incident procedures with timely escalation to stakeholders.
  • •Execute SOAR playbooks, apply threat intelligence, and triage alerts using log- and artefact-based investigation techniques.
  • •Contribute to detection improvement by feeding incident learnings into detection logic and tuning SOC detection use cases to address gaps.
  • •Maintain accurate documentation (investigation records, runbooks, playbooks) and produce post-incident reports and operational/service reporting.

Key Requirements

  • •2–4 years’ experience in IT security, ideally in a SOC or NOC environment, including experience at SOC L1 level.
  • •Hands-on experience with SIEM platforms such as Splunk, Microsoft Sentinel, or QRadar and incident response workflows.
  • •Strong ability to analyze security telemetry, understand attacker behaviour, and validate/classify security activity.
  • •Experience coordinating incident response activities using SOC/customer processes and major incident procedures.
  • •Eligibility for, or holding, UK SC Clearance; relevant cybersecurity certifications are desirable (e.g., GIAC, CySA+, SC-200).
Experience:2-4 yearsSOCNOC
Skills:Analytical thinkingDecision-makingCommunicationIndependent work
Certifications:GIACCySA+SC-200
Tech Stack:SIEMSplunkMicrosoft SentinelQRadarSOARMicrosoft AzureAWSMicrosoft OfficeExcelWord

Eligibility

Security Clearance:UK SC

Company Brief

NTT
Dimension Data, operating under NTT Ltd, provides managed IT services, cloud and data center solutions, networking, cybersecurity, and digital transformation services to enterprise customers worldwide.
Industry: Professional Services
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Established Company
Valuation: Public Company (Market Cap in USD)
Headquarters: London, United Kingdom
Founded: 1983
WebsiteLinkedIn