SOC Analyst
SOC Analyst
Location: London (Hybrid, 2 days a week on-site)Hours: 2PM - 10PM (Supporting US East Coast business hours)Salary: £60,000 + Benefits
We're partnering with a leading global digital media organisation to recruit a SOC Analyst who will play a key role in protecting a large-scale, international technology environment.
This is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work within a hybrid Security Operations model alongside an MSSP, helping to strengthen detection capabilities, improve threat visibility and drive continuous security improvement across cloud and on-premises environments.
Your role:
- Investigate, triage and respond to cyber security alerts, incidents and threats
- Act as the key operational contact for the Managed Security Service Provider (MSSP), ensuring effective monitoring and incident response
- Prioritise and manage security incidents based on business risk and impact
- Conduct proactive threat hunting across endpoint, network, identity and cloud environments
- Develop and optimise SIEM detection rules, correlation logic and monitoring use cases
- Investigate security activity across cloud platforms including AWS, Azure and GCP
- Analyse threat intelligence and emerging attack trends to enhance detection and response capabilities
- Identify gaps in monitoring coverage and implement improvements to strengthen security visibility
- Investigate and respond to DLP alerts and potential data security incidents
- Support vulnerability management by helping prioritise remediation activities based on risk and exploitability
- Contribute to SOC maturity through automation, process improvements, playbook development and post-incident reviews
- Support and optimise security tooling including SIEM, EDR, email security, cloud security and threat intelligence platforms
- Produce security reports, operational metrics and technical documentation while collaborating with technology and security teams
What We're Looking For
We're keen to speak with candidates who have:
- Experience within a Security Operations Centre (SOC), Cyber Security Operations or Incident Response environment
- Hands-on experience investigating security alerts using SIEM, EDR and security monitoring tools
- A strong understanding of Modern cyber threats, attacker techniques and the MITRE ATT&CK framework
- Experience analysing security events across endpoint, network, identity and cloud platforms
- Knowledge of incident response and risk-based incident prioritisation
- Experience working with or alongside an MSSP
- Exposure to threat hunting, threat intelligence and detection engineering
- Strong analytical and problem-solving skills with the ability to identify root causes and recommend improvements
- Excellent communication skills with the ability to produce clear technical documentation and incident reports
- A proactive mindset and genuine passion for cyber security and continuous learning
Why Apply?
- Join a recognised global organisation with a large and complex technology estate
- Work with modern security technologies across cloud and hybrid environments
- Opportunity to influence detection engineering, threat hunting and SOC maturity initiatives
- Collaborative security culture with strong investment in cyber security