Responsibilities
- Monitor and review alerts from SIEM tools across a 24/7/365 shift pattern to detect, triage, and respond to security incidents.
- Act as the first line of response for security incidents by identifying, validating, and classifying potential threats.
- Collaborate to suggest improvements to use-cases, documentation, processes, and playbooks.
- Conduct handover/takeover procedures to ensure continuity of operations across 24/7 shift.
- Assist senior analysts with complex investigations, continuity briefs, and updates on service status issues.
- Identify and suggest improvements to processes and procedures to streamline SOC workflow.
- Engage with available knowledge and training tools to maintain and improve technical skills.
- Stay informed of current cyber threats relevant to DXC and DXC customers.
Knowledge and Skills Required
- Understanding of fundamental networking concepts including IP addressing, protocols, and traffic flows.
- Understanding of basic Windows and Linux Operating Systems including terminal basics, file systems, and authentication mechanisms.
- Fundamental competency in log analysis to identify malicious activity.
- Able to navigate ElasticStack visualisation solutions (Analytics, Search, Observability, Security) to hunt for and identify threats.
- Familiar with open-source intelligence (OSINT) techniques to aid in identifying potential threats and gathering information.
- Able to communicate clearly and efficiently with team members and stakeholders under direction from senior analysts.
- Able to communicate simple technical issues to non-technical individuals in a clear and understandable way.
- Able to manage personal workload effectively to ensure timely completion of assigned tasks.
- Willing to collaborate/knowledge share with team members and accept guidance from more experienced analysts.
- Show initiative in learning new technologies and techniques, leveraging internal resources and training to grow professionally.
Desirable
- IT or security related certifications (e.g. CompTIA Security+)
- Experience using Elastic Stack or other SIEM tools
- Experience working a non-standard shift pattern
- Currently held SC/DV UKSV clearance
Other Requirements
- Eligibility to hold UKGov DV clearance is VITAL to this role
- Full Driving Licence
- Fluent in written and spoken English
- This role is part of a 4-on//4 off shift rota working across days and nights
- This role cannot be performed remotely
At DXC Technology, we believe strong connections and community are key to our success. Our work model prioritizes in-person collaboration while offering flexibility to support wellbeing, productivity, individual work styles, and life circumstances.
We’re committed to fostering an inclusive environment where everyone can thrive.
#J-18808-Ljbffr…
