Security Operations Analyst- UK
Core
Triage, investigate, respond to, and remediate intrusions and alerts from the Huntress platform to protect enterprise customers from cyber-attacks.
Role type
Mid-level Security Operations Center (SOC) Analyst
Builds
24/7 human-led Security Operations Center (SOC) for enterprise-grade cybersecurity
Domain
Cybersecurity / Threat Intelligence / Digital Forensics
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
Triage and investigate security alerts, tactical malware analysis, Microsoft M365 investigation, Windows/Linux/MacOS attack surface knowledge, MITRE ATT&CK framework, PowerShell, Active Directory administration, core networking concepts, web technologies (OWASP top 10)
Preferred skills
MSP/MSSP/MDR experience, scripting languages (Python, Bash, etc.), cloud platform investigations (Azure, AWS, GCP), CTF participation
Technologies
Huntress platform, EDR telemetry, Microsoft M365, Active Directory, PowerShell, Python, Bash, Azure, AWS, GCP, HackTheBox, TryHackMe
Responsibilities
Triage, investigate, and respond to alerts from the Huntress platform; Perform tactical review of EDR telemetry, log sources, and forensic artifacts; Perform tactical malware analysis; Investigate suspicious Microsoft M365 activity; Assist in escalations from the Product Support team; Contribute to detection engineering creation and tuning efforts
Seniority
Mid-level, hands-on IC