Search Remote Jobs

SOC Analyst

Job not on LinkedIn

đź•’ April 21

🇬🇧 United Kingdom – Remote

⏰ Full Time

🟢 Junior

🟡 Mid-level

🛡️ Security Operations

🚫👨‍🎓 No degree required

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of BeyondTrust

BeyondTrust

1001 - 5000 employees

Founded 1985

đź”’ Cybersecurity

đź’° Private Equity Round on 2021-05

Cybersecurity

BeyondTrust is a company that specializes in providing cybersecurity solutions. They focus on offering products and services that protect organizations from internal and external threats, and their solutions often involve privileged access management to secure and manage the identities and credentials of users accessing critical systems and data.

đź“‹ Description

• Monitor and triage security alerts across SIEM, EDR, and CSPM platforms covering corporate and product environments • Investigate alerts to determine scope, severity, and escalation requirements • Use AI-assisted triage and enrichment tools to accelerate analysis and reduce mean time to detect • Classify, document, and track alerts through their lifecycle using ticketing and case management systems • Participate in or lead incident response engagements from detection through remediation • Collect evidence, perform forensic analysis, determine root cause, and communicate with stakeholders • Investigate SIEM, EDR, CSPM, identity provider logs, cloud audit trails, and network flow data • Execute incident response runbooks across identity, endpoint, cloud, and email workflows • Manage or assist with evidence handling, forensic artifact collection, and chain-of-custody procedures • Produce incident summaries and post-incident reports for technical and leadership audiences • Design, implement, and tune SIEM and EDR detection rules • Translate threat intelligence into actionable detection content • Maintain and evolve detection coverage mapped to MITRE ATT&CK • Validate detection logic through hypothesis-driven threat hunts • Evaluate, integrate, and optimize AI and automation capabilities • Assist in designing prompts, agent workflows, or LLM-based pipelines • Partner with engineering teams to improve log ingestion, data quality, and tool integrations • Maintain daily operational notes and shift handoff documentation • Refine incident response runbooks, playbooks, and standard operating procedures • Participate in on-call rotation for after-hours incident escalation • Track operational metrics including MTTD, MTTR, MTTC, and false positive rate • Participate in tabletop exercises, purple team activities, and post-incident reviews

🎯 Requirements

• 2+ years of experience in a SOC, security operations, or incident response role • Understanding of MITRE ATT&CK, network protocols, and endpoint behavior • Experience with at least one SIEM platform and familiarity with writing search or detection queries • Familiarity with EDR platforms and cloud environments, preferably IaaS • Comfort using AI systems such as LLM-based assistants, copilots, or AI-driven analysis tools in security workflows • Strong written communication skills and ability to document findings clearly for technical and non-technical audiences

🏖️ Benefits

• Flexibility, trust, and continual learning culture • Growth recognition and opportunities for continual learning • Collaborative team environment • Participation in tabletop exercises, purple team activities, and post-incident reviews

Apply Now

Similar Jobs

đź•’ March 4

Saviynt

501 - 1000

🏥 Healthcare

đź’Ľ Consulting

📦 Logistics

L3 SOC Analyst acting as senior technical escalation point in proactive, intelligence-driven Security Operations Centre. Leading investigations, driving automation initiatives, and mentoring junior analysts.