L2 Security Analyst
Job Description
Join the next generation of AI-driven cyber defence
\nWe're looking for a Cyber Security Implementation Engineer to play a key role in delivering cutting-edge AI-powered Security Operations capabilities. Working alongside Cyber Detection & Response, Cloud, Infrastructure, Network and Platform teams, you'll help implement intelligent detection, investigation and response technologies that enhance security operations across a complex enterprise environment.
\nThis is an excellent opportunity for someone with a strong cyber engineering or SOC background who enjoys integrating security platforms, solving technical challenges and validating innovative security solutions.
\nWhat you'll be doing
\n- \n
- Support the implementation of AI-powered Security Operations (SOC) capabilities, intelligent assistants and security workflow automation. \n
- Integrate security technologies, data sources, APIs and third-party platforms into the security ecosystem. \n
- Coordinate service accounts, permissions and connectivity with Cloud, Infrastructure, Identity and Network teams. \n
- Validate AI-assisted detection, investigation and automated response workflows. \n
- Design and execute testing scenarios, attack simulations and operational readiness exercises. \n
- Identify integration issues, deployment risks and workflow improvements. \n
- Troubleshoot implementation challenges and support successful production deployments. \n
- Produce high-quality technical documentation, implementation guides, test results and operational procedures. \n
What we're looking for
\n- \n
- 3+ years' experience in Cyber Security Engineering, Security Operations, Threat Detection or Security Platform Implementation. \n
- Experience integrating enterprise security technologies into complex environments. \n
- Good understanding of SIEM, SOAR, EDR, Threat Intelligence and modern SOC operations. \n
- Knowledge of networking, APIs, authentication, Identity & Access Management (IAM) and cloud platforms. \n
- Experience with security testing, attack simulation, validation or Purple Team activities. \n
- Excellent analytical, troubleshooting and documentation skills. \n
- Exposure to AI-powered security platforms, automation technologies or security orchestration tools would be highly desirable. \n
Desirable technologies
\n- \n
- SIEM & SOAR platforms \n
- Microsoft Sentinel, Splunk or QRadar \n
- Microsoft Defender, CrowdStrike or other EDR solutions \n
- Azure, AWS or Google Cloud \n
- APIs, REST integrations and automation \n
- Identity & Access Management (Entra ID, Active Directory or similar) \n
- Threat Intelligence platforms \n
- AI-enabled Security Operations tools \n
*Rates depend on experience and client requirements
