Job description
The Role
Are you interested in furthering your career in the cybersecurity industry? If so, we want to hear from you! We are currently seeking one motivated, innovative, and dedicated Apprentice SOC Analyst to join our 24x7 SOC team in Fleet, Hampshire to ensure the growth and development of our Cybersecurity Services Team. You will be part of a Global SOC team, working with both mainstream manufacturers and niche players. Each day offers a new challenge and learning opportunity. In return we offer, development, training all within a modern technical working environment. This is an exciting opportunity to further develop your cybersecurity career. It could be required from the position to join a 24x7 shift pattern, working shifts and/or be on standby when required.
Responsibilities
Monitoring Security Alerts:
- Monitor and investigate security alerts and incidents generated by various security SOC tools and systems, such as SIEM (Security Information and Event Management) and/or EDR solutions.
Alert Triage:
- Assist in the initial triage of security alerts to determine their severity and relevance.
- Categorise and prioritise alerts based on established procedures and criteria.
Incident Investigation:
- Conduct preliminary investigations of security incidents and anomalies to gather relevant incident information.
- Document findings, including the source, nature, and impact of the incident.
Documentation and Reporting:
- Create detailed incident reports, including timelines, actions taken, and outcomes.
- Maintain accurate records of incidents, investigations, and resolutions.
- Participate in monthly SOC reporting to customers.
Escalation:
- Escalate incidents to senior analysts or appropriate teams when necessary, following defined escalation procedures.
Collaboration:
- Collaborate with senior analysts and team members to seek guidance and assistance in analysing and responding to incidents.
SOP Adherence:
- Follow established Standard Operating Procedures (SOPs) for incident response and security monitoring.
- Ensure consistency in incident handling and reporting.
Tool Familiarity:
- Become proficient in using specific SOC tooling, including the SIEM and EDR platforms.
- Learn to navigate and operate security consoles and dashboards effectively within SOC tooling.
Security Awareness:
- Stay informed about the latest cybersecurity threats, vulnerabilities, and attack techniques.
- Participate in training and skill development programs to enhance knowledge and expertise.
Documentation of False Positives:
- Identify and document false positives in security alerts to improve alert accuracy and reduce unnecessary alerts.
Incident Response Support:
- Assist senior analysts during incident response efforts, which may involve containment, eradication, and recovery actions.
Compliance and Policy Adherence:
- Adhere to security policies, procedures, and compliance requirements relevant to the organisation's industry and regulations.
Continuous Learning:
- Continuously improve technical and analytical skills through self-study, training, and mentorship from senior analysts.
Communication:
- Maintain clear and effective communication with team members, stakeholders, and other departments.
Documentation of Lessons Learned:
- Document lessons learned from incidents and share insights with the team to enhance incident response capabilities.
Adaptability:
- Be adaptable and ready to learn and grow within the SOC environment.
Demonstrable Experience/Skills
- Preferred experience working within a Security Operations Center (SOC) environment as a security analyst or any related information security field.
- Strong analytical and problem-solving skills, with the ability to investigate and resolve security incidents effectively.
- Thorough OS knowledge across Windows and Linux
- Excellent communication and teamwork skills to collaborate effectively with cross-functional teams.
- Self-motivated and eager to learn, with a passion for cybersecurity and a commitment to staying updated with the latest trends and developments.
- Willingness to work as part of a global team, both internally and via 3rd parties
- Understanding of Malware capabilities, attack vectors, propagation and impact.
- Preferred technology experience: Cortex XDR, XSOAR, SIEM, IDS/IPS, vulnerability scanning tools, web application penetration testing tools
- Knowledge of networking protocols, operating systems, and security technologies.
- Understanding of common security threats, vulnerabilities, and attack vectors.
- Basic familiarity with security tools such as firewalls, intrusion detection/prevention systems, antivirus software, and vulnerability assessment tools.
- Knowledge of incident response procedures and methodologies.
- Some understanding/familiarity with security frameworks, standards, and regulations (e.g., ISO 27001, NIST, GDPR).
The Person
The key skills and qualities of an Apprentice SOC Analyst:
- Willing to undertake an apprenticeship .
- Essential: At least five GCSEs grades 9 4 (9 4 on the new grading system)
- Detail-oriented, process-oriented and thorough
- Flexible and open to change and dynamic responsibilities
- Excellent IT literacy (hardware and software), a passion and curiosity for IT and cybersecurity topics, and the desire to learn and build their career with us
- Excellent problem-solving abilities; analysing issues, determining root cause, determining sustainable solutions etc.
- Independent self-starter who meets deadlines without intensive supervision