Talent.com
Cybersecurity Defense SOC Analyst (L2)

Cybersecurity Defense SOC Analyst (L2)

Ascot GroupNew York, NY, US
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Join to apply for the Cybersecurity Defense SOC Analyst (L2) role at Ascot Group

1 day ago Be among the first 25 applicants

Join to apply for the Cybersecurity Defense SOC Analyst (L2) role at Ascot Group

Job Description

This is an opportunity to join Ascot Group - one of the world's preeminent specialty risk underwriting organizations.

Job Description

This is an opportunity to join Ascot Group - one of the world's preeminent specialty risk underwriting organizations.

Designed as a modern-era company operating through an ecosystem of interconnected global operating platforms, we're bound by a common mission and purpose : One Ascot. Our greatest strength is a talented team who flourish in a collaborative, inclusive, and entrepreneurial culture, steeped in underwriting excellence, integrity, and a passion to find a better way, The Ascot Way.

The Ascot Way guides our people and our organization. Our underwriting platforms collaborate to find creative ways to deploy our capital in a true cross-product and cross-platform approach. These platforms work as one, deploying our capital creatively through our unique Fusion Model : Client Centric, Risk Centric, Technology Centric.

Built to be resilient, Ascot maximizes client financial security while delivering bespoke products and world class service — both pre- and post-claims. Ascot exists to solve for our clients' brightest tomorrow, through agility, collaboration, resilience, and discipline.

Job Summary

As part of our 24x7 Cybersecurity Defense function, the SOC Analyst (L2) will be responsible for investigating security incidents, improving detection content and supporting the overall monitoring, detection and cybersecurity incident response activities. This involves working closely with the members of the internal Cybersecurity team and our Managed Security Service Provider (MSSP).

Acting as an escalation point for L1 / L2 SOC analysts, this resource will work within an expanding cybersecurity team, collaborating with cybersecurity managers, IT Infrastructure, and Deskside Support Teams.

You must be detail-oriented, diligent, and capable of managing multiple aspects of the incident response lifecycle simultaneously. You will be supporting a 24X7 Cybersecurity Defense function and will be required to work in shifts that will vary based on operational needs to support the global footprint across the UK and US time zones.

This resource will additionally be responsible for maintaining detection content on the detection tool, (detection rules, log ingestion, parsers, forwarders), maintaining playbooks, SOC documentation and supporting integrations and log sources associated with the overall Cybersecurity Defense solution. This role will be in the office with a hybrid work schedule.

Responsibilities

  • Monitor our security tools to triage and respond to suspicious events and abnormal activities, capable of performing deep-dive incident investigations.
  • Serve as a point of escalation for the L1, L2 SOC Analysts, and the point of contact for our MSSP, coordinating response efforts with other groups and stakeholders with varying technical expertise, such as IT, Legal, business etc.
  • Develop and implement advanced security protocols and incident response procedures and improve our threat intelligence processes.
  • Stay current with evolving threats, vulnerabilities, tools, technologies and threat actor TTPs to help improve detection and response capabilities.
  • Provide oversight and governance over the daily operations of the MSSP and SOC team at a global level.
  • Mentor and provide training to junior SOC team members.
  • Develop and refine standard operating procedures in the form of run books and playbooks for incident response and threat detection.Create and make improvements to procedures and playbooks. Conduct technical analysis, log reviews, and assessments of cybersecurity incidents throughout the incident management lifecycle.
  • Work with end users where appropriate on security related incident and request workflow.
  • Document and manage incident cases to utilize information for stakeholder engagement to provide insight, intelligent recommendations, risk reporting and lessons learned.
  • Work in scheduled shift patterns when required.
  • Conduct in-depth security investigations, log analysis, network / email traffic assessment, and evaluate other data sources to identify root causes, assess impact, and gather evidence for response and mitigating actions.
  • Implement detection use cases within our SIEM for our expanding estate using appropriate scripting languages.
  • Manage log sources, log ingestion volumes, detection content and overall SIEM solution system health, maintenance, and upgrades.
  • Assist with additional ad hoc projects as required.

Requirements

  • Cybersecurity related bachelor's degree or related field.
  • Minimum of 8 years of experience in a security operations role, SOC engineering and or a cybersecurity technical engineering role.
  • Exposure to building and migrating log sources onto a new SIEM platform, creating detection content, log parsers and detection engineering will be preferred. Alternatively, candidates that have worked in senior technical roles in a Managed Security Service Provider (MSSP) will be preferred.
  • Preference will be given to candidates who also have additional technical and cybersecurity certifications covering both defensive and offensive security such as CompTIA Security+, Certified SOC Analyst (CSA), Certified Ethical Hacker (CEH), CySA+, CISSP, GSEC, GCIH, CCSP, Microsoft SC-200, CISSP-ISSMP, CTIA, OSCP.
  • Candidates must have solid experience and knowledge of typical enterprise technologies. On-premises and cloud hosting, Windows and Linux operating systems (OS), Microsoft Azure, M365 and the ability to detect signs of compromise in these systems.
  • Possess a growth mindset and is willing to learn how to resolve technical security issues.
  • Demonstrate a working and genuine interest and talent in Cybersecurity.
  • Demonstrate detail orientation and can take a structured approach to procedures and working instructions.
  • Work and maintain a calm structured mindset even when under pressure.
  • Possess an aptitude for understanding and analyzing data when troubleshooting.
  • Strong written communication, critical thinking, and analysis skills,including the ability to present potential risks and actual findings to a wide audience. Ability to communicate complex problems to a non-technical audience.
  • Must have a working understanding of key security concepts and attack types such as phishing, malware, vulnerabilities, Cyber Kill Chain, and attack stages.
  • A strong analytical mindset, capable of digesting a wide range of information to make practical judgements based on available data and context.
  • Experience with security tools and technologies, including SIEM, intrusion detection systems, EDR, XDR, log analysis, and malware analysis.
  • Understand threat actor tactics, techniques and procedures, have familiarity with the MITRE-ATT&CK Framework and different stages of an attack lifecycle.
  • Maintain a desire to keep learning, with a curious and creative growth mindset.
  • This position may be filled at a different level, depending on experience

    Compensation

    Actual base pay could vary and may be above or below the listed range based on factors including but not limited to experience, subject matter expertise, and skills. The base pay is just one component of Ascot's total compensation package for employees. Other rewards may include an annual cash bonus and other forms of discretionary compensation awarded by the Company

    The salary range for this role in the NY Metro and Chicago, IL area is $105,000 – $120,000.

    Company Benefits

    The Company provides a competitive benefits package that includes the following (eligibility requirements apply) :

    Health and Welfare Benefits : Medical (including prescription coverage), Dental, Vision, Health Savings Account, Commuter Account, Health Care and Dependent Care Flexible Spending Accounts, Life Insurance, AD&D, Work / Life Resources (including Employee Assistance Program), and more

    Leave Benefits : Paid holidays, annual Paid Time Off (includes paid state / local paid leave where required), Short-term Disability, Long-term Disability, Other leaves (e.g., Bereavement, FMLA, Adoption, Maternity, Military, Primary & Non-Primary Caregiver)

    Retirement Benefits : Contributory Savings Plan (401k)

    L1 Hybrid

    Seniority level

    Seniority level

    Mid-Senior level

    Employment type

    Employment type

    Full-time

    Job function

    Job function

    Information Technology

    Industries

    Insurance

    Referrals increase your chances of interviewing at Ascot Group by 2x

    Sign in to set job alerts for "Cyber Security Analyst" roles.

    Ridgefield Park, NJ $32.00-$32.00 1 week ago

    New York, NY $63,750.00-$105,000.00 2 days ago

    New York, NY $90,000.00-$110,000.00 2 weeks ago

    Cyber Security Detection Engineer - (Fulltime)100% Remote

    New York, NY $80,000.00-$115,000.00 1 week ago

    New York, NY $68,300.00-$151,200.00 1 week ago

    New York, NY $115,000.00-$150,000.00 1 month ago

    Information Security Analyst (Application Security)

    New York City Metropolitan Area $150,000.00-$170,000.00 5 months ago

    New York City Metropolitan Area 3 days ago

    New York, NY $90,000.00-$115,000.00 3 days ago

    New York, NY $80,000.00-$105,000.00 3 days ago

    Cyber Security Governance Lead - Fulltime - (100 % Remote)

    Cyber Security Systems Engineer - Remote

    Partner 18, Cybersecurity Operations Analyst

    New York, NY $203,000.00-$236,000.00 2 weeks ago

    Information Security and Compliance Analyst

    New York, NY $95,000.00-$105,000.00 2 weeks ago

    New York City Metropolitan Area $99,461.00-$128,329.00 1 week ago

    Entry-Level Global Privacy and Cybersecurity Associate

    New York, NY $125,000.00-$175,000.00 2 weeks ago

    New York, NY $175,000.00-$225,000.00 5 days ago

    New York, NY $125,000.00-$175,000.00 2 weeks ago

    We're unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Cybersecurity Analyst • New York, NY, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Risk Analyst Jersey City, NJ

    Cybersecurity Risk Analyst Jersey City, NJ

    ESR HealthcareJersey City, NJ, US
    serp_jobs.job_card.full_time
    Cybersecurity Risk Analyst Jersey City, NJ.Experience level : Mid-senior Experience required : 7 Years Education level : Bachelor's degree Job function : Information Technology Industry : Financial Serv...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_hour
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Analyst Critical Assets & Incident Response CERT Levels 3-5

    Cybersecurity Analyst Critical Assets & Incident Response CERT Levels 3-5

    Metropolitan Transportation AuthorityNew York, NY, US
    serp_jobs.job_card.full_time
    Cybersecurity Analyst Critical Assets & Incident Response CERT Levels 3-5.Cybersecurity Analyst Critical Assets & Incident Response CERT Levels 3-5. Metropolitan Transportation Authority.Cyb...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_hour
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Project Analyst

    Cybersecurity Project Analyst

    Click Therapeutics, Inc.New York, NY, US
    serp_jobs.job_card.full_time
    We are a digital therapeutics company developing FDA-regulated prescription software.This role supports our information security program by helping design, test, implement, and monitor security mea...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    Cybersecurity Analyst

    Cybersecurity Analyst

    VISTRADANew York, NY, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Vistrada is looking to hire a strong Cybersecurity Analyst to join our Cybersecurity practice.A Cybersecurity Analyst is part of a team that consults with clients about cybersecurity related t...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Marine Interdiction Agent

    Marine Interdiction Agent

    U.S. Customs and Border ProtectionCaldwell, NJ, United States
    serp_jobs.job_card.full_time
    Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP) offers those with Merchant Mariner Credentials the exceptional opportunity of a career in law enforcement worki...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Senior Manager DevOps

    Senior Manager DevOps

    Bristol-Myers SquibbHighland Park, NJ, United States
    serp_jobs.job_card.full_time
    Those aren't words that are usually associated with a job.But working at Bristol Myers Squibb is anything but usual.Here, uniquely interesting work happens every day, in every department.From optim...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Senior Director Analyst, Security Architecture and Cloud Security (Remote North America)

    Senior Director Analyst, Security Architecture and Cloud Security (Remote North America)

    GartnerStamford, CT, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    What makes Gartner Research and Advisory a great fit for you?.You are a team player who values expert insights, bold ideas, and intellectual courage. You are always learning and looking to discover ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    RelativityNewark, NJ, United States
    serp_jobs.job_card.full_time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Senior Cybersecurity Operations Analyst

    Senior Cybersecurity Operations Analyst

    Largeton GroupNew York, NY, US
    serp_jobs.job_card.full_time
    Senior Cybersecurity Operations Analyst (NYC, NY).Monitor and analyze security alerts from multiple security platforms (SIEM, IDS / IPS, endpoint protection). Respond to and investigate security incid...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_hour
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Senior Director Analyst, Data Security (Remote North America)

    Senior Director Analyst, Data Security (Remote North America)

    GartnerStamford, CT, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    As a Senior Director, Analyst, you will meet with clients every day, via video conference and sometimes onsite at Gartner conferences. As an analyst, you will engage with clients to support their mo...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Analyst

    Cybersecurity Analyst

    JRM Construction ManagementNew York, NY, US
    serp_jobs.job_card.full_time
    Windows-based IT administration with hands-on experience implementing and managing modern information security tools, alongside a governance-focused mindset. This role is critical to the success of ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity and Technology Analyst

    Cybersecurity and Technology Analyst

    Pantera CapitalNew York, NY, US
    serp_jobs.job_card.full_time
    Cybersecurity and Technology Analyst.Pantera Capital is the first institutional investment firm focused exclusively on bitcoin, other digital currencies, and companies in the blockchain tech ecosys...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_hour
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Sr. Network Engineer

    Sr. Network Engineer

    TEKsystemsSomerset, NJ, United States
    serp_jobs.job_card.full_time
    Assist the VP of Networking in to ensure optimal performance and security on our network infrastructure.Lead the design, configuration, support, and maintenance of the enterprise network, including...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Principal Cybersecurity Engineer

    Principal Cybersecurity Engineer

    Teladoc HealthPurchase, NY, United States
    serp_jobs.job_card.full_time
    Update Coming to the Teladoc Health Careers page URL.As part of a system transition on October 11-12, 2025, current job posting links will no longer be accessible. To continue viewing this job or ot...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Risk Analyst, AVP

    Cyber Risk Analyst, AVP

    Apple BankNew York, NY, US
    serp_jobs.job_card.full_time
    Salary Range : $110,000 - $130,000.The Cyber Risk Analyst acts as a subject matter expert in vulnerability management and plays a key role in mitigating enterprise risk for Apple Bank.This position ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity Controls Analyst - USDS

    Cybersecurity Controls Analyst - USDS

    TikTokNew York, NY, US
    serp_jobs.job_card.full_time
    Get AI-powered advice on this job and more exclusive features.Team Intro : The USDS Security - Risk & Compliance team is responsible for managing USDS security compliance in accordance with US c...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_hour
    • serp_jobs.job_card.promoted
    Cloud Security Engineer

    Cloud Security Engineer

    Axis CapitalRed Bank, NJ, United States
    serp_jobs.job_card.full_time
    This is your opportunity to join AXIS Capital - a trusted.We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders.We also ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Senior Director Analyst - Network Security

    Senior Director Analyst - Network Security

    GartnerStamford, CT, United States
    serp_jobs.job_card.full_time
    Senior Director Analyst - Network Security.Gartner Analysts are industry thought leaders who create must-have research, market predictions and best practices for a broad range of world-leading orga...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours