Skip to main content
Posted 21 July, 2026

L2 Security Analyst

Salt Search
Brighton, ENG, GB Full Time

Job Description

Join the next generation of AI-driven cyber defence

\n

We're looking for a Cyber Security Implementation Engineer to play a key role in delivering cutting-edge AI-powered Security Operations capabilities. Working alongside Cyber Detection & Response, Cloud, Infrastructure, Network and Platform teams, you'll help implement intelligent detection, investigation and response technologies that enhance security operations across a complex enterprise environment.

\n

This is an excellent opportunity for someone with a strong cyber engineering or SOC background who enjoys integrating security platforms, solving technical challenges and validating innovative security solutions.

\n

What you'll be doing

\n
    \n
  • Support the implementation of AI-powered Security Operations (SOC) capabilities, intelligent assistants and security workflow automation.
  • \n
  • Integrate security technologies, data sources, APIs and third-party platforms into the security ecosystem.
  • \n
  • Coordinate service accounts, permissions and connectivity with Cloud, Infrastructure, Identity and Network teams.
  • \n
  • Validate AI-assisted detection, investigation and automated response workflows.
  • \n
  • Design and execute testing scenarios, attack simulations and operational readiness exercises.
  • \n
  • Identify integration issues, deployment risks and workflow improvements.
  • \n
  • Troubleshoot implementation challenges and support successful production deployments.
  • \n
  • Produce high-quality technical documentation, implementation guides, test results and operational procedures.
  • \n
\n

What we're looking for

\n
    \n
  • 3+ years' experience in Cyber Security Engineering, Security Operations, Threat Detection or Security Platform Implementation.
  • \n
  • Experience integrating enterprise security technologies into complex environments.
  • \n
  • Good understanding of SIEM, SOAR, EDR, Threat Intelligence and modern SOC operations.
  • \n
  • Knowledge of networking, APIs, authentication, Identity & Access Management (IAM) and cloud platforms.
  • \n
  • Experience with security testing, attack simulation, validation or Purple Team activities.
  • \n
  • Excellent analytical, troubleshooting and documentation skills.
  • \n
  • Exposure to AI-powered security platforms, automation technologies or security orchestration tools would be highly desirable.
  • \n
\n

Desirable technologies

\n
    \n
  • SIEM & SOAR platforms
  • \n
  • Microsoft Sentinel, Splunk or QRadar
  • \n
  • Microsoft Defender, CrowdStrike or other EDR solutions
  • \n
  • Azure, AWS or Google Cloud
  • \n
  • APIs, REST integrations and automation
  • \n
  • Identity & Access Management (Entra ID, Active Directory or similar)
  • \n
  • Threat Intelligence platforms
  • \n
  • AI-enabled Security Operations tools
  • \n
\n

\n

*Rates depend on experience and client requirements