Talent.com
Integrity360
Principal SOC AnalystIntegrity360 • Roma, Provincia di Roma; Lazio, Italy
Principal SOC Analyst

Principal SOC Analyst

Integrity360 • Roma, Provincia di Roma; Lazio, Italy
4 giorni fa
Descrizione dell’offerta di lavoro

About Us

Integrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and the Caribbean. With over 700 employees, across 12 locations, and six Security Operations Centres (SOCs)—including locations in Dublin, Sofia, Stockholm, Madrid, Rome and Cape Town—we support more than 2,500 clients across a wide range of industries.

Over 80% of our team are technical experts, focused on helping clients proactively identify, protect, detect and respond to threats in an ever-evolving cyber landscape. Our security-first approach positions cyber resilience as a business enabler, empowering organisations to operate with confidence.

At Integrity360, people come first. We invest heavily in learning, development and progression, fostering a dynamic culture where innovation, collaboration and continuous growth are at the heart of what we do. If you're ready to take your cyber security career to the next level, we’d love to hear from you.

Job Role / Responsibilities

In this role, you will act as a Level 3 escalation point within the MDR/SOC function, providing advanced technical support to Level 2 analysts during complex or high-severity investigations. You will be expected to bring deep operational knowledge across modern security technologies, including SIEM, EDR, Network Intrusion Detection Systems, SOAR, DLP and related security monitoring platforms.

The Principal SOC Analyst will support the investigation, containment and remediation of advanced threats, ensuring that incidents are analysed in the correct business and technical context. The role requires strong hands-on experience in security operations, incident response, threat analysis and detection tuning, as well as the ability to work directly with customers and internal stakeholders to improve detection capability and strengthen cyber security posture.

You will contribute to the continuous improvement of the MDR service by supporting the definition of security monitoring strategies, improving detection logic, tuning security technologies, reviewing investigation processes and advising customers on technical optimisation opportunities. A strong understanding of malware behaviour, adversary tactics, techniques and procedures, and emerging threats will be critical to success.

Primary Duties/Responsibilities include:

  • Act as the Level 3 escalation point for advanced, complex or high-impact security investigations.
  • Support Level 2 analysts during complex investigations, providing technical guidance, validation and direction.
  • Perform in-depth analysis of security events, alerts, logs, endpoint telemetry, network traffic and other relevant data sources.
  • Lead advanced incident investigations, including scoping, containment, eradication and remediation recommendations.
  • Analyse malicious activity, suspicious files, attacker behaviour and adversary TTPs.
  • Support customers from a technical perspective in the optimisation, tuning and improvement of their security monitoring capabilities.
  • Review and improve SIEM, EDR, NIDS, SOAR and other security tool configurations to reduce false positives and improve detection quality.
  • Contribute to the development and refinement of detection use cases, correlation rules, alerting logic and investigation playbooks.
  • Support the definition of customer security monitoring strategies based on risk profile, threat landscape and available telemetry.
  • Provide technical recommendations to strengthen customer cyber security posture and improve resilience against current and emerging threats.
  • Conduct threat hunting and proactive analysis based on indicators, behaviours, intelligence and attack patterns.
  • Document investigation findings, evidence, timelines, containment actions and remediation recommendations in a clear and structured manner.
  • Prepare and deliver technical reports to customers, partners and internal stakeholders.
  • Monitor trusted sources for emerging threats, vulnerabilities and adversary activity relevant to customer environments.
  • Contribute to the continuous improvement of SOC processes, procedures, documentation and knowledge base material.
  • Support mentoring and technical development of Level 1 and Level 2 analysts where required.

Desired Skills

  • Strong hands-on experience in Security Operations Centre or MDR environments.
  • Deep operational knowledge of SIEM, EDR, Network Intrusion Detection Systems, SOAR, DLP and related security monitoring technologies.
  • Strong experience with security event triage, correlation, investigation and escalation.
  • Ability to analyse endpoint, network, identity, cloud and application telemetry in support of complex investigations.
  • Experience with SIEM query languages and detection logic, such as KQL, SPL, Sigma or equivalent.
  • Experience tuning security controls and detection content to improve alert fidelity and reduce false positives.
  • Strong understanding of attacker tactics, techniques and procedures, including MITRE ATT&CK.
  • Ability to perform host-based and network-based threat analysis.
  • Experience analysing packet captures, endpoint artefacts, logs, scripts, documents and potentially malicious files.
  • Strong understanding of incident response lifecycle, including preparation, identification, containment, eradication, recovery and lessons learned.
  • Strong understanding of enterprise network architecture, TCP/IP, firewalls, proxies, VPNs, DNS, email security and cloud environments.
  • Understanding of security protocols, encryption technologies and common authentication mechanisms.
  • Experience supporting customer-facing technical discussions, including investigation reviews, tuning recommendations and posture improvement activities.
  • Ability to manage multiple complex incidents and make effective decisions under pressure.
  • Strong written and verbal communication skills, with the ability to explain technical findings to both technical and non-technical stakeholders.
  • Experience with Microsoft Sentinel, Microsoft Defender, Splunk, QRadar, CrowdStrike, SentinelOne, Palo Alto, Suricata, Zeek, Snort or similar technologies is highly beneficial.
  • Experience with cloud security monitoring across Microsoft Azure, AWS or Google Cloud is beneficial.
  • Experience with threat hunting, detection engineering or purple team activities is beneficial.
  • Ability to produce clear technical documentation, investigation reports and customer-facing recommendations.

Certifications/Qualifications

  • Security industry certifications such as GCIH, GCFA, GCIA, GNFA, GCTI, GSEC, CISSP, CySA+, SC-200, AZ-500 or equivalent are highly beneficial.
  • Minimum 2–3 years of experience in a SOC, MDR, incident response, CSIRT or cyber security operations role.
  • Proven experience handling complex security incidents and supporting advanced investigations.
  • Working knowledge of SIEM, EDR, SOAR, NIDS, DLP and threat intelligence platforms.
  • Experience working with threat hunting methodologies and security detection frameworks.
  • Experience supporting customers or internal stakeholders with security optimization, detection tuning and cyber security posture improvement.

Creare un avviso di lavoro per questa ricerca

Principal SOC Analyst • Roma, Provincia di Roma; Lazio, Italy

Offerte simili

SOC Analyst Senior

ITDM Grouproma, lazio, Italia

Information technology e si propone come Hybrid Cloud Integrator con l’obiettivo di accompagnare il cliente nel processo di digital transformation verso il Cloud.L'esperienza sul campo, maturata in... Mostra di più

 • In evidenza

SOC Security Principal

Clariterroma, lazio, Italy

Clariter Group è alla ricerca di un SOC Security Principal Senior da inserire in un team strategico presso un cliente di rilievo nel settore della Pubblica Amministrazione.La risorsa opererà allint... Mostra di più

 • In evidenza

Soc Analyst

BV TECHRoma, IT

Unisciti al Team BV TECH come Soc Analyst I livello!📢 Chi siamo?Il Gruppo BV TECH, fondato nel 2005, è tra i principali attori nel panorama italiano dell’Information & Communication Technology... Mostra di più

 • In evidenza

SOC Analyst L2

AGM SOLUTIONSroma, lazio, Italy

AGM Solutions si occupa di studiare ed implementare soluzioni tecnologiche ed innovative offrendo servizi per ICT Governance, ICT Security GDPR Compliance.Siamo un’azienda certificata bGreat Place... Mostra di più

 • In evidenza

Junior SOC Analyst

NTT DATA Europe & LatamRoma, lazio, Italy

La Business Service Line Security di NTT DATA Italia è alla ricerca di profili interessati a consolidare e sviluppare competenze in ambito Cyber & Information Security, sia sotto il profilo tecnolo... Mostra di più

 • In evidenza

Principal Soc Analyst

Integrity360Remote, italia, Italy

About Us /strong /ppbr / /ppIntegrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and th... Mostra di più

 • In evidenza • Novità!

SOC Analyst...

Tesys GroupRoma, IT

Tesys Group, operante nel settore IT, fornendo servizi specialistici e mettendo a disposizione dei propri clienti, competenze e professionalità altamente specializzate nella consulenza, ricerca, un... Mostra di più

 • In evidenza

SOC Analyst

Clariterroma, lazio, Italy

Clariter Group /b, azienda multinazionale IT, è alla ricerca di un bAnalista SOC Senior /b con comprovate competenze su tecnologie Fortinet e Check Point da inserire su un importante progetto in am... Mostra di più

 • In evidenza

SOC Analyst Middle

DPWAYroma, lazio, Italy

Information Communication Technology, sta cercando per ampliamento organico: /p pSOC Analyst Middle /p pIl candidato ideale ha almeno 2 anni di esperienza.Requirements /h3 ul liSistema Splunk in a... Mostra di più

 • In evidenza

SOC Analyst L2

Engineering Grouproma, lazio, Italy

Overview /h3pAll’interno della divisione ENG DIGITAL, per la Business Line bEng Security /b, stiamo ricercando una figura di bSOC Analyst di II Livello /b.La risorsa sarà responsabile del monitorag... Mostra di più

 • In evidenza

Senior Soc Analyst

aizoOn Technology Consultingroma, italia, Italia

Siamo alla ricerca di un/a Senior SOC Analyst da inserire all’interno della nostra divisione di Cyber Security.La figura selezionata sarà principalmente coinvolta presso un nostro importante client... Mostra di più

 • In evidenza

Lead SOC Analyst

Axians ItaliaRoma, lazio, Italy

HR Recruiting Specialist presso Axians Italia | Employer Branding Specialist Axians , brand del Gruppo VINCI Energies, è un global system integrator e player di riferimento per le soluzioni e i ser... Mostra di più

 • In evidenza

SOC Analyst Middle

DPWAY S.r.l.roma, lazio, Italy

Information Communication Technology, sta cercando per ampliamento organico: SOC Analyst Middle.Il candidato ideale ha almeno 2 anni di esperienza.Competenze richieste obbligatorie: /h3 ul liSiste... Mostra di più

 • In evidenza

Senior SOC Analyst (Rif. 2025-10)

aizoOn Technology ConsultingRoma, lazio, Italy

On , società di tecnologia e consulenza, indipendente, operante a livello globale, ricerca un / a Senior SOC Analyst.Siamo alla ricerca di un/a Senior SOC Analyst da inserire all'interno della... Mostra di più

 • In evidenza

SOC Analyst - L1

NEVERHACK ItalyRome, Latium, Italy, Italy

NEVERHACK is an international cybersecurity group with over 40 years of experience.With a presence in more than 10 countries and a team of over 1,200 professionals, our mission is to design and imp... Mostra di più

 • In evidenza

SOC Analyst L1

DGS S.P.A.roma, lazio, Italia

Cyber Security Strategy & Organizations Management.Per il potenziamento del nostro Security Operations Center siamo alla ricerca di un.Cyber Security Strategy & Organizations Management.Per il pote... Mostra di più

 • In evidenza

Stage SOC Analyst

S3K | Security of the Third MillenniumRoma, provincia di roma; lazio, Italy

S3K – Security of the Third Millennium.Italia per aziende del settore pubblico e privato su tematiche di.Security e Digital Transformation.S3K è specializzata nella progettazione e nello sviluppo d... Mostra di più

 • In evidenza

Principal SOC Analyst

Integrity360latium, rome, Italy

About Us /strong /ppbr / /ppIntegrity360 is the largest independent cyber security provider in Europe, with a growing international presence spanning the UK, Ireland, mainland Europe, Africa and th... Mostra di più

 • In evidenza

Lead SOC Analyst — Hybrid, Mentorship & IR Leadership

Axians ItaliaRoma, lazio, Italy

Un'azienda innovativa è alla ricerca di un Lead SOC Analyst per unirsi al loro Security Operations Center.Questa posizione chiave richiede un'esperienza consolidata nella sicurezza informatica, con... Mostra di più

 • In evidenza

SOC Analyst

Randstad Enterpriserome, latium, Italia

Per conto di una delle principali realtà mondiali nei settori Aerospazio, Difesa e Sicurezza , protagonista dei più importanti programmi strategici globali, ricerchiamo un SOC Analyst da inserire a... Mostra di più