LevelBlue LLC
Sr. Security Analyst - SOC, German Speaking

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
LevelBlue Managed Security Services (MSS)
LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world’s most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. LevelBlue combines AI-powered security operations, advanced threat intelligence, and elite human expertise to provide the most comprehensive portfolio of strategic advisory, managed security, offensive security, and incident response services.
Sr. Security Analyst - SOC
A Sr. Security Analyst - SOC is a member of the Threat Detection and Response (TDR) team within LevelBlue Managed Security Services (MSS). This team specifically will act as the monitoring and response extension of a Digital Forensics and Incident Response Services (DFIR) team to provide 24/7 monitoring. In addition to possessing technical knowledge, a Sr. Security Analyst interacts extensively with customers and partners using polite professional etiquette and serves as a technical point of escalation within TDR.
UK-based required
Working Schedule: The working hours are 08:00–16:00 or 10:00–18:00 local time in the UK, depending on daylight saving time. The position follows a rotating working-day schedule that includes weekend coverage. Working days may rotate between Tuesday–Saturday and Sunday–Thursday, according to the team rotation.
We are currently requiring candidates with Fluent German along with fluent English for this role. French language skills would be a plus.
Duties
Sr. Security Analyst perform the following duties:
- Analyze escalated, complex cases involving a pattern of security events from endpoint detection and response technologies.
- Resolve intractable technical problems within managed security solutions as part of a sustained improvement project.
- Create, improve, and document processes for the management and monitoring of security solutions.
- Tune devices for blocking and reporting based on customer business need.
- Baseline threat detection devices for complex and potentially breached customer environments.
- Test and improve endpoint detection, protection, and response policies.
- Take responsibility for customer satisfaction and overall success of managed services.
- Timely respond to questions and concerns of the DFIR and client security teams concerning incident investigation and response.
- Adhere to policies, procedures, and security best practices.
- Resolve problems independently and understand appropriate documentation and escalation procedures.
- Perform rotating on-call duties (nights/weekend rotations).
- Act as a mentor and escalation point for analysts within the Threat Detection and Response team.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Skills & Knowledge Requirements
Must have intermediate skills/knowledge in some of the following:
- Cyber investigation and incident handling best practices
- Endpoint Detection and Response
- Unix/Linux and Windows system administration
- Current exploit and remediation techniques
- Threat Hunting and Investigation
- Web Services Administration
- Log collection and analysis tools
Desired experience:
- Advanced Palo Alto Cortex XDR
- Intrusion analysis experience
- Incident handling and documentation
- Excellent customer service skills
- Excellent analytical thinking and problem-solving skills
- Strong oral and written communication skills
- Self-managed and team oriented
- Deadline and detail oriented
- Highly motivated
Required:
- English: Demonstrated Fluency
Preferred:
- Intermediate to advanced experience in Information Security related areas
- Certified in Security related Industry, Vendor or Professional Certification - GCIA, GCIH, Security+, OSCP, or CEH preferred.
- Certified in Vendor Specific Incident Handling and Investigation Certifications:
- Palo Alto Networks Systems Engineer: Cortex Associate
- Palo Alto Networks Systems Engineer: Cortex Professional
- Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
- SentinelOne Incident Response
- Crowdstrike Certified Falcon Responder (CCFR)


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Education
- A high school diploma or equivalent is required; a college or university degree is a plus.
Why Join LevelBlue?
At LevelBlue, you’re not just an employee—you’re part of a team making a real difference in the world of cybersecurity. We foster a culture of innovation and creativity where your contributions are valued, and you’ll have the support and resources to grow and thrive.
This role is open to candidates legally authorized to work in the UK. At LevelBlue, we support flexible work and bring people together in person for key moments based on role, team, and business needs.
LevelBlue is committed to a culture of respect, inclusion, and equal opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other status protected under applicable law.
To all agencies: Please do not contact LevelBlue employees outside of the Talent Acquisition team. LevelBlue’s policy is to only accept resumes from agencies through its approved agency process and with a valid agreement in place. Any resume submitted outside this process will be considered the property of LevelBlue, and no fee will be paid if a candidate is hired from such a submission.
#LI-KD1
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location