The Role
Monitors security alerts and events, performs initial incident triage, documents findings, escalates threats, and collaborates with SOC and IT teams on incident response. The role also supports security documentation, monitoring procedures, reporting, and customer service while developing skills with SIEM, IDS/IPS, EDR, vulnerability scanning, and scripting tools.
Summary Generated by Built In
Manchester
4 On 4 Off Shift Pattern
The Associate SOC Analyst plays a vital role in the Security Operations Centre (SOC), contributing to the organisation's overall cybersecurity posture by actively participating in the monitoring, analysis, and response to security incidents and events. With a focus on continuous learning and collaboration, the Associate SOC Analyst supports the SOC team in identifying, assessing, and mitigating potential security threats and vulnerabilities. Through the application of foundational technical skills and a strong dedication to detail-oriented analysis, the Associate SOC Analyst assists in safeguarding the organisation's critical systems, data, and assets from cyber risks. By working closely with senior analysts and leveraging emerging technologies, the Associate SOC Analyst helps maintain a vigilant and proactive defence against evolving cyber threats, enabling the organisation to operate securely and with confidence.
4 On 4 Off Shift Pattern
The Associate SOC Analyst plays a vital role in the Security Operations Centre (SOC), contributing to the organisation's overall cybersecurity posture by actively participating in the monitoring, analysis, and response to security incidents and events. With a focus on continuous learning and collaboration, the Associate SOC Analyst supports the SOC team in identifying, assessing, and mitigating potential security threats and vulnerabilities. Through the application of foundational technical skills and a strong dedication to detail-oriented analysis, the Associate SOC Analyst assists in safeguarding the organisation's critical systems, data, and assets from cyber risks. By working closely with senior analysts and leveraging emerging technologies, the Associate SOC Analyst helps maintain a vigilant and proactive defence against evolving cyber threats, enabling the organisation to operate securely and with confidence.
Key Responsibilities
- Monitor health and security alerts and events from various sources including security information and event management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), and other monitoring tools.
- Conduct initial triage of security incidents to assess their severity and potential impact on the organization.
- Document and maintain incident details, including initial findings, actions taken, and any relevant evidence.
- Communicate findings and recommendations clearly and concisely to technical and non-technical audiences.
- Initiate escalation procedure to counteract potential threats, vulnerabilities and threat actors both internally and externally.
- Collaborate with other SOC team members, IT staff, and relevant stakeholders to effectively respond to security incidents.
- Provide customer service that always exceeds our customers’ expectations.
- Contribute to the creation and maintenance of security documentation, including incident response playbooks, standard operating procedures, and knowledge base articles.
- Document and conform to processes related to security monitoring procedures.
- Compilation and review of service focused reporting.
- Perform other duties as assigned.
Skills, Knowledge and Expertise
Minimum Requirements
- Bachelor’s degree in computer science, Information Security, or related field (or equivalent experience).
- Relevant certifications such as CompTIA Network+, Security+.
- Basic understanding of networking protocols, operating systems, and security technologies.
- Familiarity with security tools such as SIEM, IDS/IPS, antivirus, and vulnerability scanning tools.
- Ability to interpret and analyse security logs and events generated by various systems.
- Flexibility to quickly learn and adapt to new security tools, technologies, and processes.
- Strong analytical and problem-solving skills.
- Good communication skills, both written and verbal.
- Ability to work collaboratively as part of a team.
Desirable Requirements
- Relevant certifications such as CompTIA CySA+, GCIH, CSA, CEH.
- Hands-on experience with Security Information and Event Management (SIEM) platforms (e.g., Splunk, ELK Stack, IBM QRadar) and their use in aggregating and analysing security event data.
- Proficiency with security tools such as intrusion detection/prevention systems (IDS/IPS), antivirus, endpoint detection and response (EDR), and vulnerability scanning tools.
- Familiarity with scripting languages (e.g., Python, PowerShell) for automation and analysis tasks.
Benefits
- Flexible Working: Balance your work and personal life with our flexible working options.
- Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
- Medicash & Critical Illness Scheme
- Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
- Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
- Green Car Scheme: Drive green and save money with our eco-friendly car scheme.
- Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.
- Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
- Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.
About
We assess, develop and manage cyber threats across our increasingly connected society. We advise global technology, manufacturers, financial institutions, critical national infrastructure providers, retailers and governments on the best way to keep businesses, software and personal data safe.With our knowledge, experience and global footprint, we are best placed to help businesses identify, assess, mitigate & respond to the risks they face.We are passionate about making the Internet safer and revolutionising the way in which organisations think about cyber security.Headquartered in Manchester, UK, with over 35 offices across the world, NCC Group employs more than 2,000 people and is a trusted advisor to 15,000 clients worldwide.
Skills Required
- Bachelor's degree in computer science, information security, or a related field, or equivalent experience
- Relevant certification such as CompTIA Network+ or Security+
- Basic understanding of networking protocols, operating systems, and security technologies
- Familiarity with SIEM, IDS/IPS, antivirus, and vulnerability scanning tools
- Ability to interpret and analyze security logs and events
- Ability to learn and adapt to new security tools, technologies, and processes
- Strong analytical and problem-solving skills
- Good written and verbal communication skills
- Ability to work collaboratively as part of a team
- Relevant certification such as CompTIA CySA+, GCIH, CSA, or CEH
- Hands-on experience with SIEM platforms such as Splunk, ELK Stack, or IBM QRadar
- Proficiency with IDS/IPS, antivirus, EDR, and vulnerability scanning tools
- Familiarity with Python or PowerShell for automation and analysis
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
NCC Group is a global cyber security and resilience company that helps organizations manage risk, strengthen resilience, and build trust. They provide services in cyber security consulting, managed services, technical assurance, and software escrow.



.png)





