verified listingSign up to apply with your verified profile — no re-entering experience or references.
source · wttj·req · jb_0d4a0625f7·listed 6d ago

SOC Analyst Level 2

NTT DATA·Birmingham, England, United Kingdom·Hybrid·Full-time
Sourced listing · wttjNo salary disclosed
Posted
13 June 2026
via wttj
Type
Full-time
Arrangement
Hybrid
United Kingdom
Deadline
14 July 2026
closes in 25d
compensation · not disclosed
Salary not shared
Sign up to see our estimate based on role, location, and seniority.
source · estimate pending

Summary

the pitch

Join NTT DATA, a global leader in business and technology services. As a SOC Analyst Level 2, you will play a critical role in the detection, investigation, and management of security alerts and incidents. You will work within a 24/7 Security Operations Centre, serving as a technical escalation point for junior analysts and collaborating with internal IT and security teams as well as customers. Your responsibilities will include investigating security alerts, coordinating incident response activities, applying threat intelligence, and contributing to the development of SOC detection use cases.

Role

posted by company

Join NTT DATA, a global leader in business and technology services. As a SOC Analyst Level 2, you will play a critical role in the detection, investigation, and management of security alerts and incidents. You will work within a 24/7 Security Operations Centre, serving as a technical escalation point for junior analysts and collaborating with internal IT and security teams as well as customers. Your responsibilities will include investigating security alerts, coordinating incident response activities, applying threat intelligence, and contributing to the development of SOC detection use cases.

Key responsibilities

  • Investigate security alerts and events escalated from Level 1 analysts, validating and classifying activity to determine whether it represents a confirmed security incident.
  • Coordinate and support incident response activities in line with defined SOC and customer processes, assisting with containment, eradication, and recovery actions.
  • Execute defined SOAR playbooks as part of incident response and provide structured feedback to improve automation, response consistency, and efficiency.