SOCAnalyst Location: Home based/Remote – Must be Based in the United Kingdom Salary: Up to £35,000, shift based role with 24/7 coverage Qualifications: Must be eligible for SC Clearance The company An exciting opportunity has arisen at an award-winning Microsoft Partner for a SOC Analyst. The business is a fast … growing, industry-leading managed service and managed service security provider, delivering in to mid and large enterprise clients. This is a fantastic opportunity for a SOCAnalyst to continue their development at an established Microsoft Partner. The business has a keen focus on developing their staff by providing support for training and earning certifications. You will also … role; you must however be based in the UK to be considered. This role will also require eligibility to gain SC Clearance due to government-based customers. About The SOCAnalyst Role As a SOCAnalyst, you will support the SOC Manager, acting as an escalation point and technical SME for stakeholders within More ❯
Northampton, Northamptonshire, England, United Kingdom
VIQU IT Recruitment
SOCAnalyst – 3-month contract – Northampton My Customer is looking for a proactive SOCAnalyst to join their team and take ownership of monitoring, triaging, and responding to security alerts across their Microsoft security ecosystem. Strong experience troubleshooting and responding to alerts would be the main focus of the role. Strong expertise with Microsoft … Defender and Sentinel is needed. Key Skills & Experience from the SOCAnalyst Strong experience with Microsoft Sentinel (SIEM) and Microsoft Defender suite (Defender for Endpoint, Identity, Cloud, etc.). Proven track record in security monitoring, incident response, and alert troubleshooting . Working knowledge of SOAR platforms (preferably within Sentinel or similar). Understanding of threat detection, log … analysis, and automation within Microsoft’s security ecosystem. Key Responsibilities of the SOCAnalyst Monitor, investigate, and respond to security alerts and incidents in Microsoft Sentinel and Microsoft Defender . Perform detailed security event analysis and correlation, escalating incidents where necessary. Develop and optimise SOAR (Security Orchestration, Automation and Response) playbooks to enhance incident response and efficiency. More ❯
SOCAnalyst £57000 GBP Hybrid WORKING Location: Glasgow, Scotland - United Kingdom Type: Permanent Senior SOCAnalyst Location: Glasgow (hybrid) Salary: Up to £57,000 + package NOTE: Candidates for this role must be eligible for UK Security Clearance (SC). We are seeking a Senior SOCAnalyst to join a growing … is a hybrid role based in Glasgow, offering the opportunity to take a leading role in incident response and advanced security monitoring within a dynamic environment. As a Senior SOCAnalyst, you will take ownership of escalated incidents from L1 and L2 analysts, leading investigations, performing root cause analysis, and guiding appropriate remediation actions. You will play … a key role in developing SOC use cases, enhancing monitoring capabilities, and ensuring incident response follows best practice standards. This role combines technical depth, client interaction, and leadership, requiring someone who thrives in a fast-moving environment and is comfortable working with both technical and non-technical stakeholders. Key Responsibilities Lead investigations into escalated security incidents, including detailed analysis More ❯
Senior Incident Responder - SOCAnalyst (L3) £71000 GBP Hybrid WORKING Location: Central London, Greater London - United Kingdom Type: Permanent Senior Incident Responder - SOCAnalyst (L3) Location: UK-wide (hybrid/on-site as required) Salary: £71,000 + Bonus Clearance: Must be eligible for SC Clearance Our client is a global consulting and technology … services firm, supporting public and private sector organisations with complex digital and cyber transformation. They are building out their UK Security Practice and are seeking a Senior Incident Responder - SOCAnalyst (L3) to lead investigations, manage escalations, and strengthen cyber resilience for mission-critical environments. The Role As a Senior Incident Responder, you'll be the escalation … point for L1 and L2 SOC Analysts, taking ownership of security incidents from investigation through to containment and remediation. You'll drive root cause analysis, ensure runbooks and playbooks are followed, and directly engage with clients and delivery managers to provide expert guidance on incident handling. This is a hands-on technical leadership role that combines investigation, response, threat More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Atrium Workforce Solutions Ltd
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
glasgow, central scotland, united kingdom Hybrid / WFH Options
Anson McCade
GBP Hybrid WORKING Location: Glasgow, Scotland - United Kingdom Type: Permanent Senior SOCAnalyst Location: Glasgow (hybrid) Salary: Up to £57,000 + package NOTE: Candidates for this role must be eligible for UK Security Clearance (SC). We are seeking a Senior SOCAnalyst to join a growing SecurityOperationsCentre team. This is … a hybrid role based in Glasgow, offering the opportunity to take a leading role in incident response and advanced security monitoring within a dynamic environment. As a Senior SOCAnalyst, you will take ownership of escalated incidents from L1 and L2 analysts, leading investigations, performing root cause analysis, and guiding appropriate remediation actions. You will play a … key role in developing SOC use cases, enhancing monitoring capabilities, and ensuring incident response follows best practice standards. This role combines technical depth, client interaction, and leadership, requiring someone who thrives in a fast-moving environment and is comfortable working with both technical and non-technical stakeholders. Key Responsibilities Lead investigations into escalated security incidents, including detailed analysis and More ❯
SOCAnalyst – 1st UK Hire! Want to be part of the founding UK team for a $300m Global Cyber group? If you're a driven SOCAnalyst who wants more than just “another ops role” and want autonomy to shape a new function with global backing, this could be the role for you! You … growth across Europe, this is a rare opportunity to join early & help shape a new security capability. Why join? You'll play a key role establishing & scaling UK & EU SOC capability. You'll be backed by a $300m global organisation, with proven SOC frameworks & tooling in place. You'll report to the CISO, a recognised industry voice, frequently … are shaped. You'll be positioned for fast progression as the UK cyber practice scales, with forward growth for your role already scoped The Role You’ll support US SOC across UK/EU timezones and UK/EU customers with autonomy to shape local processes, tools & culture. Monitor, investigate and respond to security alerts (Tier 2-level responsibility More ❯
SOCAnalyst – 1st UK Hire! Want to be part of the founding UK team for a $300m Global Cyber group? If you're a driven SOCAnalyst who wants more than just “another ops role” and want autonomy to shape a new function with global backing, this could be the role for you! You … growth across Europe, this is a rare opportunity to join early & help shape a new security capability. Why join? You'll play a key role establishing & scaling UK & EU SOC capability. You'll be backed by a $300m global organisation, with proven SOC frameworks & tooling in place. You'll report to the CISO, a recognised industry voice, frequently … are shaped. You'll be positioned for fast progression as the UK cyber practice scales, with forward growth for your role already scoped The Role You’ll support US SOC across UK/EU timezones and UK/EU customers with autonomy to shape local processes, tools & culture. Monitor, investigate and respond to security alerts (Tier 2-level responsibility More ❯
SOCAnalyst – 1st UK Hire! Want to be part of the founding UK team for a $300m Global Cyber group? If you're a driven SOCAnalyst who wants more than just “another ops role” and want autonomy to shape a new function with global backing, this could be the role for you! You … growth across Europe, this is a rare opportunity to join early & help shape a new security capability. Why join? You'll play a key role establishing & scaling UK & EU SOC capability. You'll be backed by a $300m global organisation, with proven SOC frameworks & tooling in place. You'll report to the CISO, a recognised industry voice, frequently … are shaped. You'll be positioned for fast progression as the UK cyber practice scales, with forward growth for your role already scoped The Role You’ll support US SOC across UK/EU timezones and UK/EU customers with autonomy to shape local processes, tools & culture. Monitor, investigate and respond to security alerts (Tier 2-level responsibility More ❯
SOCAnalyst – 1st UK Hire! Want to be part of the founding UK team for a $300m Global Cyber group? If you're a driven SOCAnalyst who wants more than just “another ops role” and want autonomy to shape a new function with global backing, this could be the role for you! You … growth across Europe, this is a rare opportunity to join early & help shape a new security capability. Why join? You'll play a key role establishing & scaling UK & EU SOC capability. You'll be backed by a $300m global organisation, with proven SOC frameworks & tooling in place. You'll report to the CISO, a recognised industry voice, frequently … are shaped. You'll be positioned for fast progression as the UK cyber practice scales, with forward growth for your role already scoped The Role You’ll support US SOC across UK/EU timezones and UK/EU customers with autonomy to shape local processes, tools & culture. Monitor, investigate and respond to security alerts (Tier 2-level responsibility More ❯
london, south east england, united kingdom Hybrid / WFH Options
Anson McCade
GBP Hybrid WORKING Location: Central London, Greater London - United Kingdom Type: Permanent Senior Incident Responder - SOCAnalyst (L3) Location: UK-wide (hybrid/on-site as required) Salary: £71,000 + Bonus Clearance: Must be eligible for SC Clearance Our client is a global consulting and technology services firm, supporting public and private sector organisations with complex … digital and cyber transformation. They are building out their UK Security Practice and are seeking a Senior Incident Responder - SOCAnalyst (L3) to lead investigations, manage escalations, and strengthen cyber resilience for mission-critical environments. The Role As a Senior Incident Responder, you'll be the escalation point for L1 and L2 SOC Analysts, taking ownership … a hands-on technical leadership role that combines investigation, response, threat intelligence, and collaboration with stakeholders. You'll also support service improvement, tool optimisation, and the development of new SOC capabilities. Key Responsibilities Lead investigations into escalated incidents, providing detailed analysis and containment strategies. Perform malware analysis, reverse engineering, and develop detection signatures. Integrate threat intelligence into SOCMore ❯
SOCAnalyst - 1st UK Hire! Want to be part of the founding UK team for a $300m Global Cyber group? If you're a driven SOCAnalyst who wants more than just "another ops role" and want autonomy to shape a new function with global backing, this could be the role for you! You … growth across Europe, this is a rare opportunity to join early & help shape a new security capability. Why join? You'll play a key role establishing & scaling UK & EU SOC capability. You'll be backed by a $300m global organisation, with proven SOC frameworks & tooling in place. You'll report to the CISO, a recognised industry voice, frequently … are shaped. You'll be positioned for fast progression as the UK cyber practice scales, with forward growth for your role already scoped The Role You'll support US SOC across UK/EU timezones and UK/EU customers with autonomy to shape local processes, tools & culture. Monitor, investigate and respond to security alerts (Tier 2-level responsibility More ❯
L2 SOCAnalyst London based (1-3 days office) £40-45k Our client are looking for a Level 2 SOC Engineer. This is a key role in the detection and response lifecycle within our SecurityOperations Centre. The role You will be responsible for triaging, investigating, and responding to cybersecurity incidents across customer environments using … Threat monitoring and detection Threat intelligence and hunting SOAR and automation Skills MS Sentinel/Defender for Endpoint Understanding Mitre Att&ck framework Required 2+ years exp in a SOC environment Experience from MSSP/MSP supporting multiple clients British Citizen SC Clearance More ❯
Junior SOCAnalyst Up to 34kHybrid (London) Overview: We are seeking an enthusiastic Junior Cyber SecurityAnalyst to join our client's dedicated SOC team. In this role, you will help monitor and defend networks, systems, and applications against evolving threats. You'll work as part of a team that provides 24/… in Computer Science, Cybersecurity, or a related field (or equivalent experience) Evidence of self-learning and continual development outside of a university degree 1+ years of experience in cybersecurity (SOC or MSSP experience preferred) is advantageous but not required. Familiarity with monitoring tools such as SIEM, IDS/IPS, EDR, and threat intelligence platforms. Basic understanding of networking, operating … to offer sponsorship for this role. In order to be considered you must have full, unrestricted right to work in the UK. Keywords: Cyber Security/Incident Response/SOC/SecurityOperationsCentre/Detect and Response/Blue Team/Junior/London Circle Recruitment is acting as an Employment Agency in relation to this vacancy. Earn More ❯
Job Title: L1 SOCAnalyst Our client is a well-established Managed Security Service Provider (MSSP) and a leading Fortinet and Microsoft partner, delivering high-impact cybersecurity solutions to clients in the defense, government, and financial services industries. Committed to nurturing talent, our client offers a comprehensive training and development program to help you advance from entry … level to a fully-fledged SOC Analyst. As an L1 SOCAnalyst, you’ll be at the frontline of cybersecurity defense. You’ll handle real-time triaging of 80-100 security alerts per shift, utilizing Fortinet and Microsoft SIEM/EDR technologies to detect and mitigate threats. This is an excellent opportunity for those passionate about … alerts to identify potential threats and escalate as needed. Provide rapid response to incidents and maintain a high level of vigilance across multiple security events. Collaborate closely with the SOC team to ensure seamless threat detection and incident management. Skills/Must have: Passion for cybersecurity and a desire to grow in the field. Relevant cybersecurity certifications (e.g., CompTIA More ❯
Job Title: L1 SOCAnalyst Our client is a well-established Managed Security Service Provider (MSSP) and a leading Fortinet and Microsoft partner, delivering high-impact cybersecurity solutions to clients in the defense, government, and financial services industries. Committed to nurturing talent, our client offers a comprehensive training and development program to help you advance from entry … level to a fully-fledged SOC Analyst. As an L1 SOCAnalyst, you’ll be at the frontline of cybersecurity defense. You’ll handle real-time triaging of 80-100 security alerts per shift, utilizing Fortinet and Microsoft SIEM/EDR technologies to detect and mitigate threats. This is an excellent opportunity for those passionate about … alerts to identify potential threats and escalate as needed. Provide rapid response to incidents and maintain a high level of vigilance across multiple security events. Collaborate closely with the SOC team to ensure seamless threat detection and incident management. Skills/Must have: Passion for cybersecurity and a desire to grow in the field. Relevant cybersecurity certifications (e.g., CompTIA More ❯
Essential Roles & Responsibilities (Full job description on Claranet careers site) As a Senior SOCAnalyst (Team Leader), you apply your advanced securityoperations expertise to lead a team of SOC Analysts while performing advanced investigations and, when required, first-line triage to maintain queue health and SLA compliance. You are responsible for high-quality service delivery … when necessary, stepping into first-line triage to guarantee prompt alert handling and escalation. • Team Leadership - You provide day-to-day leadership and line management for a team of SOC Analysts, conducting performance reviews, appraisals, one-to-one meetings, and development planning. • Quality Assurance - You own QA for the team’s outputs, ensuring consistency, accuracy, and completeness of incident … documentation across the team. • Training and Onboarding - You lead knowledge-transfer sessions, support structured onboarding of new team members, and coordinate internal training to drive skill development and reinforce SOC best practices. • Continual Improvement - You identify opportunities to optimise workflows, enhance detection logic, and contribute to service-improvement initiatives across the SOC, including backlog reduction, knowledge-base expansion More ❯
Birmingham, England, United Kingdom Hybrid / WFH Options
Anson McCade
SOCAnalyst (L3) - Senior Incident Responder Location: Birmingham (Hybrid) Salary: Up to £70,000 (depending on experience) + bonus NOTE: Candidates for this role must be eligible for UK Security Clearance (SC). We’re looking for a hands-on L3 Senior Incident Responder who can lead on complex security investigations, manage high-severity incidents, and bring … real expertise in Splunk and wider SIEM technologies. This is a critical role within the SOC, where you’ll be the escalation point for L1 and L2 analysts and take ownership of incident containment, remediation, and post-incident review. What you’ll do: Act as the L3 escalation point , leading investigations into complex incidents escalated by L1/L2 … to security events. Perform detailed forensic analysis, root cause analysis, and malware investigation. Lead incident response activities end-to-end, ensuring containment, eradication, and recovery. Develop, refine, and own SOC use cases, runbooks, and playbooks to drive continual service improvement. Liaise directly with clients, providing clear guidance and recommendations. Mentor and support junior SOC analysts, ensuring best practice More ❯
glasgow, central scotland, united kingdom Hybrid / WFH Options
Anson McCade
SOCAnalyst (L3) - Senior Incident Responder Location: Glasgow (Hybrid) Salary: Up to £70,000 (depending on experience) + bonus NOTE: Candidates for this role must be eligible for UK Security Clearance (SC). We’re looking for a hands-on L3 Senior Incident Responder who can lead on complex security investigations, manage high-severity incidents, and bring … real expertise in QRadar and wider SIEM technologies. This is a critical role within the SOC, where you’ll be the escalation point for L1 and L2 analysts and take ownership of incident containment, remediation, and post-incident review. What you’ll do: Act as the L3 escalation point , leading investigations into complex incidents escalated by L1/L2 … to security events. Perform detailed forensic analysis, root cause analysis, and malware investigation. Lead incident response activities end-to-end, ensuring containment, eradication, and recovery. Develop, refine, and own SOC use cases, runbooks, and playbooks to drive continual service improvement. Liaise directly with clients, providing clear guidance and recommendations. Mentor and support junior SOC analysts, ensuring best practice More ❯
paisley, central scotland, united kingdom Hybrid / WFH Options
Anson McCade
SOCAnalyst (L3) - Senior Incident Responder Location: Glasgow (Hybrid) Salary: Up to £70,000 (depending on experience) + bonus NOTE: Candidates for this role must be eligible for UK Security Clearance (SC). We’re looking for a hands-on L3 Senior Incident Responder who can lead on complex security investigations, manage high-severity incidents, and bring … real expertise in QRadar and wider SIEM technologies. This is a critical role within the SOC, where you’ll be the escalation point for L1 and L2 analysts and take ownership of incident containment, remediation, and post-incident review. What you’ll do: Act as the L3 escalation point , leading investigations into complex incidents escalated by L1/L2 … to security events. Perform detailed forensic analysis, root cause analysis, and malware investigation. Lead incident response activities end-to-end, ensuring containment, eradication, and recovery. Develop, refine, and own SOC use cases, runbooks, and playbooks to drive continual service improvement. Liaise directly with clients, providing clear guidance and recommendations. Mentor and support junior SOC analysts, ensuring best practice More ❯
milton, central scotland, united kingdom Hybrid / WFH Options
Anson McCade
SOCAnalyst (L3) - Senior Incident Responder Location: Glasgow (Hybrid) Salary: Up to £70,000 (depending on experience) + bonus NOTE: Candidates for this role must be eligible for UK Security Clearance (SC). We’re looking for a hands-on L3 Senior Incident Responder who can lead on complex security investigations, manage high-severity incidents, and bring … real expertise in QRadar and wider SIEM technologies. This is a critical role within the SOC, where you’ll be the escalation point for L1 and L2 analysts and take ownership of incident containment, remediation, and post-incident review. What you’ll do: Act as the L3 escalation point , leading investigations into complex incidents escalated by L1/L2 … to security events. Perform detailed forensic analysis, root cause analysis, and malware investigation. Lead incident response activities end-to-end, ensuring containment, eradication, and recovery. Develop, refine, and own SOC use cases, runbooks, and playbooks to drive continual service improvement. Liaise directly with clients, providing clear guidance and recommendations. Mentor and support junior SOC analysts, ensuring best practice More ❯
Primary Details Time Type: Full time Worker Type: Employee SOC Principal Analyst Permanent London/Hybrid At QBE, our purpose is to enable a more resilient future. We are an international insurer and reinsurer with a local presence in 27 countries. The Opportunity QBE Europe is currently recruiting a SOC Principal Analyst to join … our cyber security team in our London Office. Reporting to regional team leads, the SOC Principal Analyst will be a key member of our rapidly growing Global SecurityOperations team. Your new role This is an exciting hands-on technical role in which the specialist will use their security skills and knowledge to perform advanced analysis on … response to cyber security-related incidents to prevent QBE from becoming compromised by modern attack methods and techniques. Main responsibilities: Act as point of escalation and mentor to junior SOC analysts. Translates business objectives into security objectives by providing support in design/architecture for new security applications to improve the current security posture globally for QBE. Recommends and More ❯
At CGI, we empower our people to make a real impact in securing the digital future of our clients. As a SOCAnalyst, you’ll be at the forefront of protecting critical systems, working within a CGI team to strengthen defence operations and respond to evolving cyber threats. Based on-site in Chippenham, this role is central … responsibilities In this role, you will be a key member of the SecurityOperationsCentre, monitoring, analysing, and resolving incidents in partnership with senior engineers. You’ll enhance the SOC’s capability by continually improving configuration and automation, adding new detection rules, and ensuring services remain resilient against emerging threats. Working in a mixed CGI and client environment, you … ownership of solutions is encouraged, and where support and training are available to help you grow. Key responsibilities include: • Monitor, analyse, and respond to security incidents • Develop & deliver new SOC rules and automation to meet client priorities • Support test, assurance, and compliance activities • Optimise & improve SOC configuration and service delivery • Collaborate in a mixed CGI/client team More ❯
SOCAnalyst (Level 2) | Birmingham | On-site | DV-Clear | 24/7 rota, 8 hr shifts | £500 a day outside IR35 Pigment Consulting is a bold and disruptive digitally-enabled transformation consultancy delivering impactful change across Central Government & Defence. Due to continued success across our Cyber Security portfolio, we are currently seeking DV-Cleared SOC Analysts … to work closely with others, empowering the wider team through knowledge transfer and teamwork. If you are passionate about making a difference to the public sector while leveraging your SOC expertise, then we would love to hear from you! Please apply promptly and one of our team will be in touch to discuss. More ❯
rich heritage of technological excellence and a strong focus on digital transformation, they empower organisations worldwide to solve complex challenges and achieve sustainable growth. Your new role As a SOCAnalyst, you will be responsible for providing Protective Monitoring Services across a range of Secure Customers. You will be responsible for the day-to-day monitoring using … following: Security Analytics Incident investigation, triage and escalation Threat monitoring and response Trend reporting Rule tuning and continual service improvement The role involves working alongside other team members including SOC engineers and Service Managers. The role acts as part of a 24/7 shift team and shift work will be required. This role is based in Hursley and … to succeed Must be prepared to work on shift as part of a 24/7 shift team based onsite - 4 days on - 4 days off.Microsoft Certified: SecurityOperationsAnalyst Associate Certification (SC200) is a mandatory requirement for role fulfilmentExperience working with SIEM technologies and security toolingAn understanding of IT Infrastructure and NetworkingAn understanding of vulnerability and threat More ❯