
Threat Analyst 2
Posted 15 hours ago

Posted 15 hours ago
This is a fully remote position, open to applicants in United Kingdom.
• Deliver monitoring, detection, and response services to proactively safeguard customer environments.
• Analyze logs and security-related events utilizing Sophos tools.
• Manage Tier I Threat Analyst escalations and provide guidance on investigations.
• Onboard and mentor new Threat Analysts.
• Create cases and oversee customers through threat neutralization processes.
• Communicate and document findings for both technical and executive audiences.
• Follow up with customers until issue resolution and offer recommendations to reduce risk.
• Respond to incoming customer inquiries via email, phone, and tickets.
• Collaborate with security and threat response teams.
• Investigate emerging indicators of compromise or attack, vulnerabilities, and exploits.
• Conduct threat hunting across the MDR customer base.
• Engage in Security Operations process enhancement and development.
• Gather metrics for reporting on threat trends, intelligence analysis, and situational awareness.
• Work alongside cyber threat hunters, incident response analysts, engineers, and ethical hackers utilizing enterprise, log analysis, and endpoint collection systems.
• Minimum of 2 years of experience in a SOC environment or a computer security team within an IT setting.
• Proficient in endpoint and network security, including IDS, IPS, EDR, ATP, malware defenses, and monitoring.
• Experience in threat hunting.
• Skilled in administering and supporting Windows workstations and servers, as well as Apple or Linux operating systems.
• Familiarity with common adversary tactics and techniques, such as obfuscation, persistence, and defense evasion.
• Basic understanding of network traffic analysis, including TCP/IP, routing, switching, and protocols.
• Strong grasp of Windows event log analysis.
• Knowledgeable in incident response procedures.
• Enthusiasm for information technology and cybersecurity.
• Inquisitiveness and ability to rapidly acquire new skills.
• Excellent troubleshooting and analytical capabilities.
• Strong written and verbal communication skills.
• Ability to work effectively both in a team and independently.
• Innovative mindset and contributions to cybersecurity services.
• Bachelor’s degree in Information Technology, Computer Science, or a related field, or relevant equivalent work experience.
• Willing to work weekends and holidays as required for a 24x7x365 MDR service.
• Familiarity with the MITRE ATT&CK framework (desirable).
• Experience with SQL query development (desirable).
• Skills in OSQuery programming and scripting, including PowerShell (desirable).
• Experience with SIEM and enterprise information security data management (desirable).
• Advanced cybersecurity certifications (desirable).
• Legal authorization to work in the United Kingdom without employer sponsorship.
• Remote-first working model.
• Employee-led diversity and inclusion networks.
• Annual charity and fundraising initiatives.
• Volunteer days.
• Global employee sustainability initiatives.
• Global fitness and trivia competitions.
• Global wellbeing days.
• Monthly wellbeing webinars and training.
• Equal opportunity and recruitment-process adjustment support.
Tenet Healthcare
Early Childhood Educators
Coinbase
Stack Overflow
Get handpicked remote jobs straight to your inbox weekly.