EDR Analyst

3 weeks ago


Southampton, United Kingdom UST Full time

EDR Analyst - E5 Stack (Microsoft Defender)


We are recruiting for an EDR Analyst to join our CyberProof team (UST Company) in the UK. This role is an excellent opportunity for an experienced professional with a strong background in Microsoft E5 Stack, particularly in Defender for Endpoint.



Location: UK - London/ Leeds (hybrid)

Type: Permanent

Start: ASAP



The Role:


  • Manage and implement the full E5 stack, including Microsoft Defender for Identity, Office 365, and Purview.
  • Ensure that all E5 components align with security and compliance standards, including NIST, PCI, and GDPR.
  • Configure and manage Office 365 threat policies to protect against security breaches.
  • Administer and manage Microsoft Defender for Endpoint, including custom detection rule creation and platform troubleshooting.
  • Develop and implement custom policies within the E3, E5, and A5 suites to meet specific business needs.
  • Utilise KQL for advanced query writing and data analysis.
  • Implement and manage basic security automation processes.
  • Integrate non-Microsoft data sources into MCASB and create custom policies to enhance security posture.
  • Fine-tune detection rules and policies to minimise false positives and reduce alert fatigue.
  • Develop and deliver executive reports on a daily, weekly, and monthly basis.
  • Troubleshoot sensitive labels and create trainable classifiers to improve data protection



What you will bring:


  • Minimum of 2-3 years of hands-on experience with E5 implementation and administration, including certification (MCSA).
  • Strong understanding of Microsoft 365, Azure, and associated security/compliance requirements.
  • Knowledge of identity-based attacks, honeytokens, and sensitive tags.
  • Experience in creating and fine-tuning custom detection rules.
  • Proficiency in troubleshooting platform issues, sensor problems, and sensitive labels.
  • A willingness to explore new technologies and learn independently


Hurry & apply for a more detailed conversation with our Talent Team

#UST



  • Southampton, United Kingdom Matchtech Full time

    Our client, a leading player in the technology sector within the retail industry, is currently seeking a Senior Cyber Defence Analyst to join their team in Southampton. This is a permanent role designed to support the Cyber Defence Department and other information security functions within the organisation, providing technical expertise and interpreting data...


  • Southampton, United Kingdom Matchtech Full time

    Our client, a leading player in the technology sector within the retail industry, is currently seeking a Senior Cyber Defence Analyst to join their team in Southampton. This is a permanent role designed to support the Cyber Defence Department and other information security functions within the organisation, providing technical expertise and interpreting data...


  • Southampton, Southampton, United Kingdom Matchtech Full time

    Job Title: Senior Cyber Defence AnalystAbout the Role:We are seeking a highly skilled Senior Cyber Defence Analyst to join our team at Matchtech. As a key member of our Cyber Defence Department, you will play a critical role in supporting our information security functions and providing technical expertise to mitigate security risks.Key...


  • Southampton, Southampton, United Kingdom Matchtech Full time

    Job Title: Senior Cyber Defence AnalystAbout the Role:We are seeking a highly skilled Senior Cyber Defence Analyst to join our team at Matchtech. As a key member of our Cyber Defence Department, you will play a critical role in supporting our information security functions and providing technical expertise to mitigate security risks.Key...

  • SOC Analyst

    6 days ago


    Southampton, United Kingdom Amber Group Full time

    Amber Group is a global leading digital asset company providing crypto financial services to both institutional and high-net-worth investors globally.We offer best-in-class liquidity solutions and cutting-edge trading infrastructure across major exchanges, applications, and networks. With over $1 trillion in cumulative trading volume, our deep liquidity...