Threat Analyst 2
This is the employer's own posting, not a copy on a job board.
What we know
Is it still open?
Confirmed still open
Last checked 1d ago — checked against the employer's own applicant tracking system, which is the company answering directly.
We re-read the employer's own applicant tracking system and the posting was still there. That is the company answering directly.
How old is it?
Posted 6d ago
The date the source published, not the day we noticed it (2026-09-25). Last seen at its source just now.
We have tracked this listing since 25 Sep 2026 (6 days). The employer's own board has carried it every time we have read it, most recently just now.
Is it remote?
Marked remote on the employer's board
Their board carries a remote setting on this posting — a field they filled in, not wording we read. The location field names somewhere specific, which is usually where the team or the entity sits.
Who may apply?
United Kingdom
The description states no restriction of its own. This is the source's own tag.
Pay not stated
Similar roles pay £75k–107.4k/yr
Middle 50% of 19 listings that do state pay — Operations · all levels · United Kingdom · GBP/year. This employer has published no salary; this is what comparable listings we hold disclose, never converted between currencies or periods. How this is calculated.
Skills named in the ad
Recognised terms only, from a fixed vocabulary — this is what CV matching compares against.
Carried by 1 source
-
lever employer's own board first seen 6d ago · last seen just now
The listing
Role Summary
As a Threat Analyst - Tier II on our Managed Detection and Response (MDR) team, you will provide best-in-class monitoring, detection, and response services to proactively defend customer environments before attacks prevail. You will work alongside and contribute to a team of cyber threat hunters, incident response analysts, engineers, and ethical hackers by using enterprise, log analysis and endpoint collection systems to facilitate investigations, identification, and neutralization of cyber threats.
What You Will Do
- Investigate and analyze logs and security-related events via Sophos tooling
- Handle escalations from Tier I Threat Analysts - guide / advise on investigation handling
- Onboard and train new Threat Analysts
- Create cases, track and follow up with clients through threat neutralization
- Communicate and document findings to various customer audiences including technical and executive teams
- Follow up with customers through to issue resolution and drive continuous improvement by providing detailed recommendations to minimize risk in customer environments
- Acknowledge and satisfy inbound customer requests and interact with customers through various mediums (Email, Phone, Ticket)
- Collaborate and assist with core security and threat response teams
- Actively research emerging Indicators of Compromise/Attack, exploits and vulnerabilities
- Conduct threat hunting to identify potential threats throughout the MDR customer base
- Participate in Security Operations process improvement and creation
- Obtain metrics for reporting on threat trends, intelligence analysis and situational awareness
What You Will Bring
- 2+ years of experience working in a SOC environment or computer security team in an IT environment
- Endpoint and network security experience required; IDS, IPS, EDR, ATP, Malware defenses and monitoring experience
- Experience with threat hunting
- Experience administering and supporting Windows OS (workstations and server) and one of the following: Apple or Linux-based operating systems (RedHat, Debian, Ubuntu, OS X)
- Knowledge of common adversary tactics and techniques, e.g., obfuscation, persistence, defense evasion, etc.
- Fundamental understanding of network traffic analysis including TCP/IP, routing, switching, protocols, etc.
- Strong understanding of Windows event log analysis
- Working knowledge of incident response procedures
- Passion for all things related to information technology and cybersecurity
- Natural curiosity and ability to learn new skills quickly
- Excellent troubleshooting and analytical skills, with proven ability to think outside the box
- Customer service-oriented with strong written and verbal communication skills
- Must thrive within a team environment as well as on an individual basis
- Innovative mindset and driven to contribute to a team providing a best-in-class cybersecurity service
- Bachelors in Information Technology, Computer Science or a related field; or relevant commensurate work experience
- Willingness to work outside of standard business days including weekends and holidays – our MDR service is 24x7x365 (Hours are standard business hours)
- Knowledge of MITRE ATT&CK framework
- Experience with SQL query construction
- Experience with OSQuery Programming and scripting skills - proficient knowledge of PowerShell
- Experience with enterprise information security data management - SIEM
- Advanced Cyber Security certifications
Essential:
Desirable