About AccentureAccenture is a leading global professional services company helping the world's leading enterprises reinvent — building their digital core, unleashing the power of AI, and creating value at speed and scale. We bring together deep industry expertise, cutting-edge technology, and bold thinking to deliver outcomes that matter.
You'll be the escalation point for complex security incidents, bringing deeper analytical capability and investigative rigor to threats that go beyond first-line triage. This is a role for someone who thrives on getting to the bottom of an incident — and who can turn that experience into better processes for the whole team.
Handle escalated incidents from L1, taking ownership of investigation, analysis, and resolution in line with defined processes and SLAs
Analyze and categorize events of interest in accordance with agreed severity levels and runbooks, applying sound judgment to ambiguous or complex cases
Perform detailed triage and in-depth analysis of detected or escalated security events across client environments
Build and maintain SOC operating procedures and documentation, including playbooks and incident response plans
Support the SIEM administrator in use case creation, helping translate threat intelligence and operational learnings into improved detection logic
Act as a point of guidance for L1 analysts, contributing to knowledge sharing and team capability developmentWhat You'll NeedSolid experience in SOC operations with a strong track record of handling escalated and complex security incidents
Deep understanding of threat analysis, attack techniques, and incident response methodologies
Proficiency with SIEM, SOAR, EDR, and related security monitoring platforms
Ability to develop and maintain playbooks, runbooks, and IR documentation to a high standard
Experience supporting or contributing to SIEM use case development and tuning
Strong analytical mindset — able to work through ambiguity, connect the dots, and communicate findings clearly
Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or a related fieldBonus PointsHands-on experience with MITRE ATT&CK for threat mapping and detection improvement
Exposure to threat hunting, malware analysis, or digital forensics
Familiarity with cloud security monitoring across Azure, AWS, or GCP
Relevant certifications such as CEH, BTL2, GCIH, or equivalent