Company Overview
This AI-powered recruitment marketing platform streamlines job posting directly to Google for Jobs, accelerating the acquisition of qualified candidates.
About the Job:
As a Security Senior Analyst within Logicalis’ Managed Security team, you’ll be pivotal in managing security services for our clients. Your role involves assessing client environments, identifying and guiding the remediation of security threats and vulnerabilities, and contributing to various cybersecurity projects as part of a managed security team.
This senior technical position requires you to collaborate with Solution Architects, DevOps, Engineers, SOC Analysts, clients, and other stakeholders to build and manage up-to-date security architectures and systems within the evolving Managed Security Services landscape. You’ll provide 3rd and 4th line support, mentor colleagues, and liaise with channel partners and vendors.
Key Responsibilities:
- Manage internal and client escalations by engaging with key stakeholders.
- Ensure the team adheres to published SOC policies and procedures.
- Serve as a subject matter expert across Managed Security Services, clearly articulating deliverables and limitations.
- Configure, tune, and maintain SOC tools (ideally Microsoft Sentinel, Splunk, etc.) to enhance detection and build reusable visualizations for alert triage and threat hunting.
- Develop Standard Operating Procedures (SOPs) and use cases for monitoring and handling security events.
- Gather threat intelligence to ensure effective detection methods against current threats.
- Proactively hunt for suspicious activity based on anomalies.
- Handle events as part of the Security Incident Management Process.
- Collaborate internally and externally to investigate and advise on security incidents and anomalies.
- Prepare detailed reports on findings, status, progress of investigations, and risk factors.
- Act as the senior technical escalation point and mentor for colleagues.
- Produce incident response playbooks for consistent incident handling and process improvement.
- Analyze structured security log data by creating aggregated/correlated reports or visualizations.
- Identify and implement opportunities for innovative and continuous improvement.
- Lead customer incident response investigations and threat containment, advising on remediation.
- Participate in the Security Operations Centre on-call rotation.
Skills And Attributes For Success:
- Excellent technical skills and understanding of Logicalis’ Managed Security Services portfolio, IT Applications, Networking, and infrastructure.
- Proven ability to analyze complex data and events critically, developing appropriate courses of action against identified threats.
- Ability to work under pressure, including crisis situations, with strong attention to detail.
- Experience responding to customer requests, including senior management.
- Ability to quickly learn and adapt to new technologies and processes.
- Excellent written and oral communication skills.
- Self-motivated to improve knowledge and skills.
- People-oriented with a goal and outcome focus.
- Clear communicator with a positive “can-do” attitude and integrity.
- Mindset of continual service improvement and excellent interpersonal skills.
Qualifications & Experience:
- Must meet or be eligible to obtain U.S. Government Security Clearance.
- Typically 5+ years of experience in IT Security, including security operations and a senior/lead analyst role in a SOC/MSSP or mature internal team.
- Experience analyzing security logs from various sources, including SIEM (ideally Microsoft Sentinel, Splunk), IPS/IDS, Endpoint Security, and Windows Eventlog.
- Experience with Threat Intelligence in a Security Operations environment.
- Experience securing services migrated to cloud platforms (AWS/Azure) preferred.
- Industry-recognized certifications (SANS GIAC, CEH, CISSP, etc.).
- A related professional certification (CISSP, CISM, CISA).
- Solid IT and/or technology background.
- Awareness of industry standards (PCI-DSS, ISO 27001, GPG 13, etc.).
- Awareness of common exploits and vulnerabilities.
- Solid network engineering and server architecture awareness.
- Previous hands-on experience in network/server and security operational roles.