招聘
Job Description: Security Clearance Requirement:
Candidates must be **sole UK nationals (British citizens only)**and have resided continuously in the UK for the past 10 years to meet current security clearance requirements.
Location & Schedule:
This role is onsite in Erskine(Scotland) and requires coverage of12-hour rotational shifts on a4 on/4 off pattern.
Role Overview
The Tier 2 Cyber Security Analyst is a mid-level position within the Cyber Threat Analysis Centre (CTAC). You'll advance initial work from Tier 1 Analysts and provide deeper analysis of potential threats. This role is critical for escalated investigation, triage, and incident response while supporting Tier 1 development and training.
You'll work closely with senior and junior analysts to ensure seamless SOC operations, bridging foundational and advanced threat detection and response functions.
Key Responsibilities
Incident Analysis & Response:
- Conduct escalated triage and analysis on security events from Tier 1, determining threat severity and advising on initial response actions
- Investigate potential security incidents through deeper analysis of correlated events, identifying patterns or anomalies indicating suspicious or malicious activity
- Escalate critical threats to Tier 3 Analysts with detailed analysis for rapid response and adherence to SLOs
Technical Operations:
- Apply expertise in SIEM solutions using Kusto Query Language (KQL) for log analysis, event correlation, and thorough incident documentation
- Use OSINT (Open-Source Intelligence) to enrich contextual data and enhance detection capabilities
- Monitor the threat landscape and document findings on evolving threat vectors, sharing insights with CTAC teams
Process Improvement:
- Follow established incident response playbooks, providing feedback for enhancements and suggesting updates to streamline CTAC processes
- Coordinate with Tier 3 Analysts and management to refine detection and response workflows, contributing to continuous SOC maturity
- Collaborate on tuning SIEM and detection tools to reduce false positives and improve alert fidelity
Detection Development:
- Identify gaps in current detection content and work with Senior Analysts to develop and validate new detection rules and use cases
- Submit tuning requests and test configurations when necessary
Mentorship & Training:
- Act as a mentor to Tier 1 Analysts, offering guidance on triage and analysis techniques
- Facilitate on-the-job training to elevate technical skills and operational efficiency
- Assist in training sessions and knowledge-sharing activities, providing feedback on areas for growth
Required Knowledge & Skills
Technical Expertise:
- Advanced networking concepts (IP addressing, protocols, traffic flow)
- Advanced knowledge of Windows and Linux operating environments (commands, file systems, user authentication)
- Competence in SIEM solutions (e.g., Arc Sight, Azure Sentinel) for monitoring and log analysis
- Proficient in Kusto Query Language (KQL) for searching and filtering logs
- Familiarity with OSINT techniques for threat identification
- Exposure to XDR platforms
Communication & Collaboration:
- Clear, efficient communication with team members and stakeholders
- Ability to explain technical issues to non-technical individuals
- Create concise, structured reports outlining investigation findings
Professional Attributes:
- Effective workload management to ensure timely task completion
- Collaborative approach, accepting guidance and learning from experienced analysts
- Initiative in learning new technologies and techniques
- Efficient performance under high-pressure situations
Education & Professional Experience
Desirable:
- IT certifications: CISSP, CompTIA CySA+, GCIA, GCIH
- CASP or ITIL certifications
- Experience in a SOC or SOC-equivalent environment
Other Requirements
- Willingness to undertake high-level clearance with multiple agencies
- Full UK Driving Licence
At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances. We’re committed to fostering an inclusive environment where everyone can thrive.
Recruitment fraud is a scheme in which fictitious job opportunities are offered to job seekers typically through online services, such as false websites, or through unsolicited emails claiming to be from the company. These emails may request recipients to provide personal information or to make payments as part of their illegitimate recruiting process. DXC does not make offers of employment via social media networks and DXC never asks for any money or payments from applicants at any point in the recruitment process, nor ask a job seeker to purchase IT or other equipment on our behalf. More information on employment scams is available here.
总浏览量
0
申请点击数
0
模拟申请者数
0
收藏
0
相似职位

Retail Customer Service- Commons at South Towne Rack
Nordstrom · Sandy, UT

Customer Service Rep(07648) - McClintock
Domino's · Tempe

Desktop Support Technician
Leidos · Philadelphia, PA

Technical Support Specialist (Durham/Raleigh North Carolina)
Becton Dickinson · 2 Locations

Technicien de mise en service H/F
Chubb · Aix En Provence
关于Luxoft (DXC)

Luxoft (DXC)
AcquiredLuxoft is a digital strategy and software engineering services company that was acquired by DXC Technology in 2019. The company provides software development, consulting, and digital transformation services to enterprise clients across various industries.
10,001+
员工数
Zug
总部位置
评价
4.0
10条评价
工作生活平衡
3.8
薪酬
2.5
企业文化
4.2
职业发展
3.2
管理层
2.8
72%
推荐给朋友
优点
Flexible work hours
Supportive and encouraging team atmosphere
Good work-life balance
缺点
Non-competitive salary and compensation
Heavy workload and long hours
Poor management communication and direction
薪资范围
123个数据点
Junior/L3
Mid/L4
Senior/L5
Junior/L3 · Business Analyst
31份报告
$93,664
年薪总额
基本工资
$93,664
股票
-
奖金
-
$60,666
$144,611
面试经验
46次面试
难度
3.4
/ 5
时长
14-28周
录用率
38%
体验
正面 66%
中性 16%
负面 18%
面试流程
1
Phone Screen
2
Technical Interview
3
System Design
4
Behavioral
5
Team Fit
常见问题
Tell me about a challenging project
System design question
Coding problem
Why this company
新闻动态
7 roadblocks for software-defined vehicles and how to overcome them - DXC Technology
DXC Technology
News
·
10w ago
In ce directii tehnologice este inteleapta investitia timpului personal avand in vedere riscul unei ruperi brutale a relatiilor Europa - US?
Avand in vedere [asta](https://old.reddit.com/r/BoycottUnitedStates/comments/1q8knkj/trump_on_greenland_if_we_do_not_do_it_the_easy/), a devenit probabila o schimbare in profesiile noastre care nu putea fi luata in considerare nici in gluma pana acum. O invazie a Groenlandei ar duce la o rupere a relatiilor intre mai multe tari importante europene si US. Romania, cred eu, nu-si va putea permite sa ramana lacheul US sau sa joace la doua capete riscand sa ramana la propriu fara nicio umbrela, lang
·
14w ago
·
59
·
131
New car software brings faster updates and smarter dashboards to drivers - Stock Titan
Source: Stock Titan
News
·
14w ago
New car software brings faster updates and smarter dashboards to drivers - Stock Titan
Stock Titan
News
·
14w ago