L2.5 — SOC Incident Analyst
Listed on 2026-08-06
-
IT/Tech
Cybersecurity
The SOC Incident Analyst ownssecurity incidents from acceptance through investigation, scope determination,containment recommendation and closure. The role provides the primary interface between SOC triage and advanced incident response.
Expectations FromThe Role:
Key Responsibilities
- Acceptincidents escalated by the Triage Lead.
- Determineincident scope, severity and business impact.
- Builddetailed attack timelines.
- Microsoft
365 account or email compromise. - Azureand cloud-resource activity.
- Malwareexecution and persistence.
- Mapactivity to MITRE ATT&CK.
- Recommendcontainment, eradication and recovery actions.
- Coordinatetechnical updates with customers.
- Documentindicators affected entities and outstanding risks.
- Feedlessons into detection and playbook improvement.
Experience
- 5–6years of ICT / Cybersecurity experience.
- Atleast 12 months in the completed L2.0 band or equivalent.
- Experienceowning medium- and high-severity investigations.
- Demonstrated customer-facing incident communication.
- Practical experience with hybrid Microsoft cloud and on-premises environments.
Required or Target
- Third Level
- Computer Science Degree - Third Level
- Cybersecurity Qualification - SOC Analyst Qualification.
- CompTIACySA+ or equivalent.
- CiscoCCNA or equivalent.
- CSACCSK or equivalent cloud-security knowledge.
- MicrosoftSC-200.
- MicrosoftSC-300 or equivalent Entra .
- Microsoft Azure administration or security training.
- CiscoCCNP Cybersecurity/Security preparation or equivalent.
- Palo Alto XSIAM Engineer preparation.
- CSACCZT preparation or equivalent.
- Incident-handlingor forensic fundamentals qualification.
- Accuratescope, severity and impact determination.
- Evidence-supportedcontainment recommendations.
- High-qualitytechnical and customer reports.
- Effectiveownership from escalation to closure.
- Regulardetection, query or playbook improvement contributions.
- Successfulcomplex incident simulation.
Our purpose is to connect for a better Ireland.
Our ambition is to be the number one choice for telecommunications and technology solutions, delivering for our customers today and into the future.
Our new values and behaviours reflect both who we are and who we strive to become. They are the way that we bring our purpose to life in eir.
We are committed to creating an inclusive and supportive work environment. If you require any reasonable adjustments during the application or interview process, please let us know, and we will work with you to meet your needs.
If successful in the interview process, eir reserves the right to conduct appropriate suitability checks in relation to prospective employees including but not limited to reference checking and/or other searches using publicly available information.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).