Senior Cyber Security Analyst
London (hybrid working, 3 days per week onsite) Up to £80,000 PA plus bonus
Extremely exciting enterprise-scale, global entertainment organisation seeking an experienced, Senior Security Analyst to join a growing security team, taking a key role across vulnerability and exposure management, security monitoring, incident response and risk. You'll be working with closely with a small, highly dedicated, highly capable team. This is a broad, hands-on position and would suit someone who has built strong technical experience within a SOC, but who does not want to be limited to one narrow area of Security Operations. You'll work across a predominantly Microsoft environment, helping to detect and respond to security threats, manage vulnerabilities end to end, improve security tooling and strengthen the organisation's overall security posture.
Responsibilities:
- Investigate and respond to security alerts and incidents at Tier 2/3 level, using your own technical judgement rather than simply following predefined playbooks
- Own and continuously improve the Vulnerability Management lifecycle, covering discovery, analysis, prioritisation, remediation and tracking
- Drive wider Exposure Management activity across cloud, on-premise and third-party environments
- Work closely with technical teams and system owners to ensure vulnerabilities are understood and remediated in line with business risk
- Monitor and respond to threats across Microsoft Entra and M365, including identity-related incidents and account compromise
- Support security hardening, IAM, architecture and deployment activity across the Microsoft environment
- Investigate security events using platforms including Microsoft Defender XDR and EDR tooling
- Analyse structured security and log data to identify malicious or suspicious activity.
- Support the management of major Cyber Security incidents and coordinate response activity with relevant stakeholders
- Use threat intelligence to identify emerging risks and drive proactive security activity.
- Support Security Risk Management activities, including third-party security assessments.
- Help improve detection capability, including opportunities around MITRE ATT&CK-aligned detection engineering
- Identify opportunities to automate repetitive SOC processes using SOAR, orchestration and AI-assisted tooling
Requirements:
- Strong previous experience working within a SOC environment, ideally at Tier 2 or Tier 3 level
- Experience handling security incidents independently and making technical decisions during investigations
- Strong end-to-end Vulnerability Management experience, covering discovery, analysis and remediation
- Strong technical knowledge of Microsoft Entra, including security monitoring, incident response, IAM and hardening
- Experience securing both cloud and on-premise environments
- Strong understanding of attacker tactics, techniques and procedures
- Experience working with technologies such as Defender XDR, SIEM, EDR, Vulnerability Management and SOAR platforms
- Familiarity with security and vulnerability frameworks (e.g. MITRE ATT&CK, CVSS, CISA KEV and NIST)
- Ability to query and analyse structured security and log data
- A broader technical IT background, ideally across areas such as infrastructure, systems administration, networking or IT support