Job description
Why N-able At N-able, we’re helping businesses become more secure, resilient, and ready for what comes next. Our end-to-end platform brings together AI-powered capabilities, flexible technology, and the expertise of a global team of N-ablites who care deeply about solving meaningful cybersecurity challenges. If you’re excited by hands-on investigation, continuous learning, and being part of a supportive team that shares knowledge freely, you’ll find people here who believe in what they do and in each other.
We’re looking for Senior SOC Analysts to join our new SOC team in our Dundee hub. This is an opportunity to be part of a team from its early stages, helping shape how we investigate, respond, improve, and collaborate as the function grows. As a Senior SOC Analyst, you’ll play a key role in strengthening cyber defence across the organization.
You’ll analyze, document, report, and track notifications and escalations from N-able’s preventative and detective security infrastructure, while bringing the curiosity, judgment, and technical depth needed to investigate complex security events. You’ll also contribute to dashboards, scripts, documentation, and automation that help the team work smarter and continuously improve.
This role is part of a 24/7/365 work effort and may be required to participate in an on-call rotation. If you’re an experienced SOC analyst who enjoys complex investigations, threat hunting, mentoring others, and turning technical insight into better security outcomes, this is a chance to make a visible impact as the team grows.
You’ll join a collaborative environment where strong ideas are welcomed, knowledge sharing is part of the culture, and practical improvements can shape how the SOC operates day to day. The role is hybrid, requiring 3 days a week in the Dundee hub.
What You'll Do
First responder, responsible for identifying, monitoring, investigating, and analyzing computer network intrusions Perform analysis for security events as detected by various cloud, host, and network-based tools Serve as the technical escalation point and mentor for lower-level analysts Professionally manage interactions with internal stakeholders Drive the remediation efforts for security incidents Develop metrics and reports in support of Security Operations Leadership Document and communicate findings and after-action reports Contribute to the continuous improvement of monitoring and alerting Generate reports and create documentation to drive automation What You'll Bring Strong multi-domain security experience across SIEM, IDS/IPS, firewalls, EDR/antivirus, MDR, and application security (SAST/SCA) Hands-on expertise with Splunk (or similar SIEM) including multi-source log analysis and correlation Deep understanding of threats, vulnerabilities, exploits, and attack vectors across networks, endpoints, web apps, and APIs Solid grounding in networking protocols and services (HTTP, FTP, SSH, SMB, LDAP) and associated security tooling Proven ability to perform root cause analysis, troubleshoot complex incidents, and rapidly learn new technologies Significant experience in SOC operations, Incident Response, or Threat Hunting, with demonstrated leadership responsibilities Strong knowledge of incident handling frameworks (e.
g. NIST, MITRE ATT&CK) and best practices Proficiency across security tooling stack (SIEM, SOAR, EDR, vulnerability management) plus relevant certifications (e.g. Security+, CySA+, GSEC, SSCP, CCNA Security) Purple Perks Medical, dental and vision coverage Generous PTO and observed holidays 2 Paid Volu. Nteer Days per year Employee Stock Purchase Program FuN-raising opportunities as part of our giving program N-ablite Learning – custom learning experience as part of our investment in you The Way We Work – our hybrid working model based on trust and flexibility About N-able At N-able , our mission is to protect businesses against evolving cyberthreats with an end-to-end cyber resilience platform to manage, secure, and recover.
Our scalable technology infrastructure includes AI-powered capabilities, market-leading third-party integrations, and the flexibility to employ technologies of choice—to transform workflows and deliver critical security outcomes. Our partner-first approach combines our products with experts, training, and peer-led events that empower our customers to be secure, resilient, and successful.
#LI-KP1 #LI-Hybrid First responder, responsible for identifying, monitoring, investigating, and analyzing computer network intrusions Perform analysis for security events as detected by various cloud, host, and network-based tools Serve as the technical escalation point and mentor for lower-level analysts Professionally manage interactions with internal stakeholders Drive the remediation efforts for security incidents Develop metrics and reports in support of Security Operations Leadership Document and communicate findings and after-action reports Contribute to the continuous improvement of monitoring and alerting Generate reports and create documentation to drive automation Strong multi-domain security experience across SIEM, IDS/IPS, firewalls, EDR/antivirus, MDR, and application security (SAST/SCA) Hands-on expertise with Splunk (or similar SIEM) including multi-source log analysis and correlation Deep understanding of threats, vulnerabilities, exploits, and attack vectors across networks, endpoints, web apps, and APIs Solid grounding in networking protocols and services (HTTP, FTP, SSH, SMB, LDAP) and associated security tooling Proven ability to perform root cause analysis, troubleshoot complex incidents, and rapidly learn new technologies Significant experience in SOC operations, Incident Response, or Threat Hunting, with demonstrated leadership responsibilities Strong knowledge of incident handling frameworks (e.
g. NIST, MITRE ATT&CK) and best practices Proficiency across security tooling stack (SIEM, SOAR, EDR, vulnerability management) plus relevant certifications (e.g. Security+, CySA+, GSEC, SSCP, CCNA Security)