2nd / 3rd Line Security Analyst

Based: Reading

Division: ICT Services

Department: ICT Service Desk Operations

Reporting to: IT Service & Security Operations Manager


About the role

We are looking for a skilled 2nd / 3rd Line Security Analyst to join our ICT Services team.

You will play a key role in the operation, optimisation and continuous improvement of security monitoring, detection and incident response across managed environments. This is a hands-on role with a strong focus on advanced investigation, detection engineering and security automation.

The position is ideal for someone who thrives in a fast-paced environment and is passionate about strengthening security posture through innovation and continuous improvement.

Details for the role:

Key responsibilities

  • Own the end-to-end security incident lifecycle including triage, investigation, remediation and closure
  • Perform advanced investigations using SIEM, EDR and XDR platforms
  • Conduct root cause analysis and feed insights back into detection improvements
  • Design and tune SIEM detection rules to improve accuracy and reduce false positives
  • Align detection and response activities with the MITRE ATT&CK framework
  • Build and maintain automated security workflows using tools such as Logic Apps, Python and APIs
  • Conduct proactive threat hunting using behavioural analytics and threat intelligence
  • Monitor and respond to security events across cloud platforms including Azure, Microsoft 365 and AWS
  • Investigate identity-based threats such as suspicious sign-ins and privilege escalation
  • Support endpoint security technologies including EDR, antivirus and patching
  • Act as an escalation point for complex or high-risk incidents
  • Support compliance frameworks including ISO 27001 and Cyber Essentials
  • Maintain accurate documentation, procedures and knowledge base articles
  • Provide guidance and support to junior analysts and service desk colleagues

Skills and experience

Essential:

  • Strong experience within a Security Operations or SOC environment
  • Hands-on experience with SIEM, EDR and SOAR platforms
  • Proven experience in detection engineering and SIEM rule tuning
  • Strong understanding of cyber threat frameworks such as MITRE ATT&CK
  • Experience automating processes using Python, Logic Apps or APIs
  • Experience investigating incidents across cloud, identity and endpoint environments
  • Ability to communicate technical information clearly to a range of stakeholders
  • Experience with platforms such as Microsoft Sentinel, Defender XDR, CrowdStrike or similar
  • Knowledge of Azure and AWS security monitoring
  • Experience in threat hunting and security analysis
  • Understanding of ISO 27001 and Cyber Essentials

Desirable:

  • CISSP or similar certification
  • Experience improving or designing SOC operations or security platforms
  • Exposure to security architecture or engineering
  • Experience supporting automation and continuous improvement initiatives

What success looks like in this role

  • Improving detection accuracy and incident response effectiveness
  • Strengthening the overall security posture
  • Reducing manual effort through automation
  • Maintaining high service quality and managing risk effectively
  • Supporting strong customer satisfaction and trust

Why join us?

  • Salary
  • 25 days holiday
  • The ability to Buy and Sell holiday
  • A Volunteer Day
  • Life Assurance (4 x base salary)
  • Pension Scheme
  • Employee Assistance Programme
  • Coaching and Mentoring
  • EyeCare – Access to money off for glasses and sight test
  • Flu Jab
  • Eligibility for Costco Membership

Values:

The values that underpin the Kyocera Group are the 5 C’s- Communication, Courage, Commitment, Cooperation and Consciousness. It is our firm belief that employees should live by these values and we would expect that you should show your commitment to these values by carrying out your work fairly and honourably, respecting people, our work as a business, and both our local and global community.

Equality and Diversity Statement: Kyocera is dedicated to creating a workplace where diversity is celebrated and everyone is treated with fairness, dignity, and respect. We welcome applicants from all backgrounds and are committed to providing reasonable adjustments during the recruitment process to ensure an inclusive experience for all.

Recruitment Agencies: Kyocera operates a Preferred Supplier List (PSL) of selected recruitment agencies and does not accept unsolicited CVs from agencies not on this list. Please refrain from submitting candidate details in response to this advert or to any Kyocera employees, as we are not responsible for any fees related to unsolicited CV submissions.

To apply, please click the ‘Apply here’ button below. Your application should include the job title in which you are applying in the subject matter and have a copy of your CV attached.