Cloudflare Logo

Cloudflare

SOC Analyst

Posted Yesterday
Be an Early Applicant
Hybrid
London, Greater London, England
Junior
Hybrid
London, Greater London, England
Junior
The SOC Analyst monitors and investigates alerts for cyberattacks, collaborates with teams to mitigate threats, and communicates with customers during incidents.
The summary above was generated by AI
Available Locations: London, UK
About the Department:
Security Operations Center Engineers provide premium-level support for Cloudflare's security products and features. Our largest and most technically sophisticated customers will contact SOC for assistance and intelligence in dealing with threats or attacks on their infrastructure at OSI Layers 3, 4, and 7. This spans the range of Cloudflare security products from Magic Transit Infrastructure Protection, DDoS mitigation (including Advanced TCP Protection and Advanced DNS Protection), and Magic Firewall, to using the Web Application Firewall (WAF), Spectrum, Bot Management, API Security, and Rate Limiting to help customers.
Security Operations Center Analysts/Engineers analyze threats using customer-facing dashboards and internal tools, make detailed and informed suggestions for mitigation, and may implement mitigation strategies directly on behalf of the customer with appropriate approval. The team provides 24x7x365 proactive monitoring via our internal alerting systems, near real-time analysis of security events, and attack reporting beyond Cloudflare's self-service reports.
Responsibilities
  • Monitor and investigate proactive alerts to identify attacks
  • Work with Engineering and Operations teams to mitigate attacks, suggest steps to mitigate, and apply the appropriate mitigation when applicable
  • Work with Engineering and Product teams to improve products and tools
  • Communicate with customers via chat, email, and phone
  • Review alerts to determine relevancy and urgency; create tracking tickets for incidents requiring review or escalation
  • Adhere to SOC SLAs for alert response and customer communication
  • Configure and manage security monitoring rules; contribute to tool and threshold improvements
  • DDoS mitigation for OSI Layers 3, 4, & 7: filter malicious traffic using Cloudflare tools including Magic Transit, Magic Firewall, Advanced TCP Protection, WAF, Custom Rules, IP Access Rules, and Rate Limiting
  • Maintain customer-specific SOC runbooks and escalation matrices
  • Support SOC customer onboarding and deliver monthly security reviews

Key Skill Sets
  • Strong understanding of internet protocols (TCP, UDP, ICMP, GRE, BGP)
  • Networking fundamentals are crucial for success
  • Analysis of traffic for attack anomaly detection and creation of mitigation rules
  • Experience handling attack mitigation with knowledge of L3/4 and L7 attacks
  • Command line / Bash shell proficiency
  • Customer Facing or Technical support experience is mandatory
  • Strong communication skills, including with VIP customers during active attacks
  • Ability to remain calm under pressure
  • Ability to work 24x7 rotating shifts
  • Sysadmin skills - Linux, Mac, or Windows (Preferred)
  • Knowledge of Cloudflare Security Products & Features (Preferred)
  • Scripting skills, Python preferred (Preferred)
  • Prometheus/Grafana monitoring experience (Preferred)
  • Packet capture tools such as tcpdump or Wireshark (Preferred)
  • API/GraphQL experience (Nice to have)
  • Foundational Certifications: BTL1, ISC2 CC, Network+, Security+, CCNA Security, or equivalent (Highly Valued)
  • Advanced Certifications: GCIH, GCIA, CISSP, CCNP, or equivalent (Considered a Plus)

This role may require flexibility to be on-call outside of standard working hours to address technical issues as needed.

Top Skills

APIs
Bgp
Grafana
GraphQL
Gre
Icmp
Linux
macOS
Prometheus
Python
Tcp
Tcpdump
Udp
Windows
Wireshark

Similar Jobs at Cloudflare

An Hour Ago
Hybrid
London, Greater London, England, GBR
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
Support developers using Cloudflare's developer products, troubleshoot technical issues, guide best practices, and improve support processes.
Top Skills: AWSAzureGCPJavaScriptNode.jsReactVue
Yesterday
Hybrid
London, Greater London, England, GBR
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
The Partner Solutions Engineer builds relationships with EMEA partners, drives technical solutions, and collaborates internally to support partner success and product influence, requiring strong technical sales management skills.
Top Skills: AWSAzureBgpCdnDdosDlpDnsGCPGreHttp TechnologiesIpv4Ipv6MplsSd-WanServerless Application DevelopmentTcpTlsUdpVpnWaf
Yesterday
Hybrid
3 Locations
Senior level
Senior level
Cloud • Information Technology • Security • Software • Cybersecurity
As a Senior Software Engineer at Cloudflare, you will design, build, and maintain scalable software systems, focusing on network services and Zero Trust platforms, while collaborating with product managers and cross-functional teams.
Top Skills: DnsGoHTTPLinuxNetwork SecurityQuicRustVpns

What you need to know about the Edinburgh Tech Scene

From traditional pubs and centuries-old universities to sleek shopping malls and glass-paneled office buildings, Edinburgh's architecture reflects its unique blend of history and modernity. But the fusion of past and future isn't just visible in its buildings; it's also shaping the city's economy. Named the United Kingdom's leading technology ecosystem outside of London, Edinburgh plays host to major global companies like Apple and Adobe, as well as a growing number of innovative startups in fields like cybersecurity, finance and healthcare.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account