Senior Security Analyst
Context Recruitment · London Area, United Kingdom
Apply & track with Apply EdgeSenior Security AnalystLondon (hybrid working, 3 days per week onsite)Up to £80,000 PA plus bonusThis is a huge opportunity with a fantastic business - an extremely exciting global entertainment organisation.They are seeking an experienced, Senior Security Analyst to join a growing security team where protecting their intellectual property is highly critical to the business. It's a key role with accountability for vulnerability and exposure management, security monitoring, incident response and risk. You’ll be working with closely with a small, highly dedicated, highly capable team.It is a broad, hands-on position and would suit someone who has built strong technical experience within a SOC, but who does not want to be limited to one narrow area of Security Operations.You’ll work across a predominantly Microsoft environment (although there is some first-class Open Source security tooling in place), helping to detect and respond to security threats, manage vulnerabilities end to end, improve security tooling and strengthen the organisation’s overall security posture.
Responsibilities
Investigate and respond to security alerts and incidents at Tier 2/3 level, using your own technical judgement rather than simply following predefined playbooksOwn and continuously improve the Vulnerability Management lifecycle, covering discovery, analysis, prioritisation, remediation and trackingDrive wider Exposure Management activity across cloud, on-premise and third-party environmentsWork closely with technical teams and system owners to ensure vulnerabilities are understood and remediated in line with business riskMonitor and respond to threats across Microsoft Entra and M365, including identity-related incidents and account compromiseSupport security hardening, IAM, architecture and deployment activity across the Microsoft environmentInvestigate security events using platforms including Microsoft Defender XDR and EDR toolingAnalyse structured security and log data to identify malicious or suspicious activity.Support the management of major Cyber Security incidents and coordinate response activity with relevant stakeholdersUse threat intelligence to identify emerging risks and drive proactive security activity.Support Security Risk Management activities, including third-party security assessments.Help improve detection capability, including opportunities around MITRE ATT&CK-aligned detection engineeringIdentify opportunities to automate repetitive SOC processes using SOAR, orchestration and AI-assisted tooling
Requirements
Strong previous experience working within a SOC environment, ideally at Level 2 or 3Experience handling security incidents independently and making technical decisions during investigationsStrong end-to-end Vulnerability Management experience, covering discovery, analysis and remediationStrong technical knowledge of Microsoft Entra, including security monitoring, incident response, IAM and hardeningExperience securing both cloud and on-premise environmentsStrong understanding of attacker tactics, techniques and proceduresExperience working with technologies such as Defender XDR, SIEM, EDR, Vulnerability Management and SOAR platformsFamiliarity with security and vulnerability frameworks (e.g. MITRE ATT&CK, CVSS, KEV, NIST)Ability to query and analyse structured security and log dataA broader technical IT background, ideally across areas such as infrastructure, systems administration, networking or IT support