The team you'll be working with: SOCAnalyst (L1) We are currently recruiting for an Associate level Managed Detection and Response SOCAnalyst Level 1 to join our growing SecurityOperationsCentre business. This role will be based on-site in Birminham, we need canddiates that are able towork in a job that … to play a pivotal role in helping to shape our client's transformation journeys. What you'll be doing: What you will be doing; The primary function of the SOCAnalyst (L1) is to analyse any incidents and undertake the detailed investigation of the Security Event. The role is a 'hands-on' shift-based roles, working as … part of a 24/7 operation working in a standard rotation shift pattern. They are responsible for utilising the SOC's SIEM and SOAR toolsets to detect and investigate potential Security and Service Incidents occurring within the monitored networks. Main Duties Monitor, triage, analyse and investigate alerts, log data and network traffic using the Protective Monitoring platform and More ❯
Senior SOCAnalyst (Level 2) Farnborough, UK – Onsite | 24/7 Shift Pattern Competitive Salary | DV Clearance Eligible (British Citizens Only) Are you an experienced SOCAnalyst ready to play a crucial role in defending the UK's most critical systems? Join a top-tier consultancy that operates at the sharp end of cybersecurity … within defence, aerospace, and national security. We’re looking for an experienced SOCAnalyst to join our high-performing SecurityOperationsCentre in Farnborough. This is a unique chance to contribute to real-world cyber defence, on country critical technology, pitting your SCO skills against state of the art attacks. As the SOCAnalyst … Contributing to threat intelligence initiatives Staying ahead of the curve on emerging threats, tactics, and techniques To secure this SOC role: Proven experience in a SecurityOperationsCentre (SOC) environment Hands-on knowledge of SIEM tools (Microsoft Sentinel, Splunk, etc.) Familiarity with MITRE ATT&CK and threat detection methodologies Strong analytical mindset with log, endpoint, and network analysis More ❯
Farnborough, Hampshire, South East, United Kingdom
Mondas Consulting Limited
SOCAnalyst Mondas Consulting Mondas are looking for a skilled SecurityOperations Center (SOC) Analyst to strengthen our security team. The ideal candidate will be responsible for monitoring, detecting, and responding to security incidents, as well as conducting thorough investigations to ensure the security of our clients' IT environments. This role requires a proactive … and detail-oriented individual with a deep understanding of Cyber Security threats and defences. About Us Our head office located in central Hampshire is the home of our SOC which is the heart and soul of our business identity as a whole. We strive for excellence and our team is full of ambitious, skilled and hard working professionals who … corrective actions ? Mentor and train junior analysts, promoting knowledge sharing and skill development within the team ? Produce and maintain Incident Response plans and playbooks ? Develop, implement and refi ne SOC processes, procedures and tools ? Produce technical and expertly written incident reports to clients ? Collaborate with other IT teams to enhance overall security posture and implement security best practices ? Ensure More ❯
A large enterprise organisation is seeking an experiencedLevel 3 SOCAnalyst for an initial 6-month rolling contract. This is a key role within a mature and well-established SecurityOperationsCentre, offering the opportunity to work on complex threats and contribute to a high-performing cybersecurity function. This is a challenging, rewarding role for a seasoned … SOC professional looking to make a tangible impact. Apply now to join a team focused on protecting enterprise assets against evolving cyber threats. Key Responsibilities: Lead investigations and response efforts for high-severity security incidents. Conduct proactive threat hunting using Microsoft Sentinel and the Defender suite. Develop and fine-tune analytic rules, workbooks, and automation playbooks in Sentinel. Perform … Maintain and enhance incident response procedures and documentation. Skills/Must have: Over 5 years of experience in cybersecurity, including a minimum of 2 years in a Level 3 SOC or equivalent role. Expert-level proficiency with Microsoft Sentinel, including KQL, custom analytic rules, and automation. Hands-on experience with Microsoft Defender for Endpoint, Identity, and Office 365. Strong More ❯
The team you'll be working with: SOCAnalyst (L1) NTT DATA is one of the world's largest global security service providers, partnering with some of the most recognized security technology brands. We're looking for passionate, curious, and motivated individuals to join our team. What you'll be doing: What you'll be doing: Monitor … Threat Hunting to identify attacks that may not have been captured. Support incident response to national-scale incidents in a coaching capacity. Assist in the development and implementation of SOC Use Cases. Collaborate with other teams within NTT DATA to improve services based on customer needs. Prepare disaster recovery plans. What experience you'll bring: Skills and Experience: Ability … work with minimal supervision. Willingness to work in a 24/7 operations environment. Education & Experience: Minimum of 2-3 years of experience in IT security, preferably in a SOC/NOC environment. Cyber Security Certifications such as ISC2 CC or EPQ are preferred. Experience with Cloud platforms (AWS and/or Microsoft Azure). Proficiency in Microsoft Office More ❯
SOC and Vulnerability Analyst Logiq Consulting is a fantastic place to work. Our ethos is based on our core values of innovation, collaboration, and quality delivery which has created a genuine "Yes" culture. Being a fast growing SME working alongside some of most prestigious clients in the UK we can offer not only a varied and interesting … the Private and The Role: An increase in clients across our Managed Services, along with the maturing of our service offering as driven the requirement for this new role, SOC and Vulnerability Analyst. The role will be reporting to our Information Security Lead and sit within our Information Security Team. The ideal candidate will have current or recent experience … working in a SOC environment and/or have a strong focus on vulnerability management. Key Responsibilities: As SOC and Vulnerability Analyst you be responsible for: Monitoring the clients IT infrastructure. Monitoring Logiq IT security systems, applications and networks for irregularities and alerts which may indicate incidents, breaches and events. Investigation of alerts and incidents to More ❯
cyber incidents while supporting the development and training of Tier 1 Analysts. The Tier 2 Analyst works closely with senior and junior analysts to ensure a seamless SOC operation and acts as a bridge between foundational and advanced threat detection and response functions. Responsibilities: • Conduct escalated triage and analysis on security events identified by Tier 1 Analysts … enhancements and suggesting updates to streamline CTAC processes and improve threat response times. • Coordinate with Tier 3 Analysts and management to refine detection and response workflows, contributing to continuous SOC maturity. • Collaborate with Tier 3 Analysts on tuning SIEM and detection tools to reduce false positives and improve alert fidelity, submitting tuning requests and testing configurations when necessary. • Identify … in Cyber Security or Equivalent experience • Other IT certifications or experience such as CISSP, COMPTIA CySA+, GCIA, GCIH Desirable • IT certifications such as CASP or ITIL • Experience in a SOC or SOC equivalent • SC/DV clearance Other Requirements • Full Driving Licence • Fluent in written and spoken English At DXC Technology, we believe strong connections and community are More ❯
A leading insurance business in London is looking to hire a SOCAnalyst to support their in-house SecOps Manager. Their cyber function is expanding, and this SOCAnalyst is part of this expansion SOCAnalyst Skills and Experience The successful applicant for the role of a SOCAnalyst will: Have come from either cyber analyst or SOC L1 background Possess hands on experience of: SIEM tools for example, Splunk, ArcSight, Rapid7 or QRadar EDR tooling for example: SentinelOne, CrowdStrike or Carbon Black Vulnerability tools for example: Nessus or Qualys Threat Intelligence tools, SOAR platforms and Firewalls Have strong operating systems knowledge in Microsoft … Be strong at Scripting for example with Python, Bash or PowerShell Have strong Cloud Security monitoring experience Be familiar with industry frameworks for example NIST, MITRE and ATT&CK SocAnalyst Your Background The ideal applicant for this role will Have some experience operating as a SOC L1 or Cybersecurity Analyst Have a positive More ❯
Farnborough, Hampshire, South East, United Kingdom
Sopra Steria Limited
that there is no boredom in our role. We have a growing Cyber practice in our Defence sector and support enterprise scale clients. Now we have opportunities for L2 SOC Analysts to join in our success and work with multiple, high profile clients. You must have proven experience working in a busy SOC with a tech-first approach … infrastructure. In-depth analysis of network traffic, logs, and system events to identify potential security threats and vulnerabilities. Provide Incident Response support. Maintain, improve and develop team knowledge of SOC tools, securityoperations and triage. Prepare reports for managed clients to both technical and non-technical audiences and continuously improve their content and presentation. Maintain and update security incident More ❯
Employment Type: Permanent
Salary: 25 days holidays, 6% Contributory pension, 4 x life Insurance
We are rapidly growing our SOC team, offering serious career growth and exciting work with multiple high-profile clients! Join our expanding Cyber practice in the Aerospace Defence and Security sector. This team supports enterprise-scale clients and requires proven experience working in a busy SOC with a tech-first approach. The team is on the cusp of … investigating security incidents on critical client infrastructure. Analyzing network traffic, logs, and system events to identify threats and vulnerabilities. Providing Incident Response support. Maintaining and developing team knowledge of SOC tools and security operations. Preparing reports for technical and non-technical audiences and improving their content. Updating security incident documentation, including reports, analysis, and mitigation strategies. Qualifications and experience More ❯
Are you an experienced SOCAnalyst looking for your next contract role? Join a leading provider of advanced cybersecurity solutions and critical services to governments and Global 2000 companies. Specializing in solving complex problems, achieving compliance, and helping organizations attain leadership in their respective industries, the company empowers businesses to drive productivity. With a global reach, the … assess host, network, and identity data. Tune and reduce false positives, improving SIEM efficiency and alerting accuracy. Lead incident investigations across Windows, macOS, and Linux environments. Design and implement SOC runbooks, use cases, and alert rules to enhance incident response capabilities. Collaborate with stakeholders to conduct hunts across host data, vulnerability data, network logs, Active Directory, and other sources. … Coordinate timely security response efforts and document incident communications for both technical and management audiences. Work with vendors to develop and implement new SOC use cases. Skills/Must have: 5+ years' recent experience in a Tier 2 or Tier 3 SOCanalyst role, ideally within a government or critical infrastructure organisation. Deep experience with SIEM More ❯
Redscan (a trading name of Redscan Cyber Security Limited)
As part of our accelerating expansion, we are looking for additional Junior SOC Analysts to work within our 24/7 cyber securityoperationscentre delivering our MDR/EDR and IR service to clients. This Junior SOCAnalyst role will be an integral member of … the Security Operation Centre. They will help identify and analyse potential threats utilising a number of different SIEM & EDR tools. To be a key member of SecurityOperationsCentre (SOC) and provide real-time threat analysis and detection. Respond to system generated alerts, analyse logs and traffic patterns. Provide analysis and trending of security log data from many monitoring … customers. Redscan has an experienced, skilled and talented workforce that can help you excel and grow your skillset. Plus, we're a friendly bunch!" Senior Developer "All of the SOC team undergo rigorous training to enable us to provide the best support and advice to our customers. Each of us loves what we do, which means we go the More ❯
of the amazing things we offer. Did we also mention that we've been awarded Gold Investors in People for a fourth consecutive time? About the role As a SOCAnalyst within our Cyber Division, you will build relationships with prospective and active clients across the business and act as their trusted advisor, helping them to secure … Stay up to date on the latest security trends. Some of the skills we are looking for Essential A Strong understanding of IT and Cybersecurity Experience working in a SOC or Helpdesk role Analytical and problem-solving abilities Customer service mindset Passion for continuous learning Waterstons perks As well as offering a competitive salary, we have an attractive benefits More ❯
by five Starling values: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness. About the Role To support our growth, we are looking for SOC Analysts to join our growing cyber security function. This role will be supporting our 24/7 operational capabilities (On-call rota, not shift based). As a member … of the Starling SOC team, you will be working with the industries brightest SecOps professionals to protect Starling customers, assets, and systems using the latest technologies. Incident Triage, Response, and Investigations based on Alerts received from multiple sources which include: Cloud Infrastructure/Security. Endpoint Detection and Response. Perimeter detection tooling. Investigating and responding to security alerts raised by … when it comes to hiring and we care more about aptitude and attitude than specific experience or qualifications. Below is an overview: 3+ years experience in an in-house SOC role and team Understanding of AWS Security Solutions (or other Public Cloud Solutions) Analysis and Incident Response experience with Cloud systems such as AWS or GCP Experience working and More ❯
exceptional issue resolution and strict SLA adherence, organizations can trust in a security partner that prioritizes protection and continuous innovation. The company is in search for a skilled L3 SOCAnalyst to join the growing team. If you would like to learn more about this opportunity, feel free to reach out and apply today! Responsibilities: Monitor and … analyse security events within the SOC, ensuring timely detection and response. Perform threat analysis, vulnerability assessments, and implement mitigation strategies. Develop and refine incident response playbooks and procedures. Conduct root cause analysis (RCA) for high-priority incidents to prevent recurrence. Collaborate with internal teams and clients to strengthen security posture. Provide technical expertise and guidance on security incidents and … resolutions. Participate in the on-call rota to provide 24/7 incident response support. Contribute to process improvements and knowledge-sharing within the SOC team. Required Skills/Must Have: Minimum of two years' experience in a SOC or managed security environment. Strong knowledge of network security (firewalls, IDS/IPS, VPNs). Proficiency in incident response More ❯
Southampton, Hampshire, South East, United Kingdom Hybrid / WFH Options
Department For Transport
SecurityOperationsCentreAnalyst Maritime and Coastguard Agency Apply before 11:55 pm on Sunday 20th July 2025 ?? Location … Southampton (Hybrid) ?? Salary: £34,233 - A Civil Service Pension with an employer contribution of 28.97% ?? Contract Type: Permanent Flexible working, Full-time, Job share, Part-time The SecurityOperationsCentre (SOC) is responsible for monitoring and analysing security events to identify, investigate, and respond to potential threats. The SOCAnalyst plays a critical role in supporting … the SOC by providing essential day-to-day support. Top Responsibilities Monitoring security information and event management (SIEM) systems for suspicious activity Analysing and investigating security alerts to determine their legitimacy and potential impact Documenting security incidents according to established procedures Escalating high-priority or complex incidents to senior analysts for further investigation Maintaining up-to-date knowledge of More ❯
Stockport, Lancashire, United Kingdom Hybrid / WFH Options
zyncgroup.io
I am hiring a Junior SOCAnalyst on behalf of an industry-leading cybersecurity solutions company specializing in innovative services across various sectors. Known for their commitment to excellence, the company leverages cutting-edge technology and a customer-centric approach to drive efficiency and growth. With a focus on sustainability and collaboration, they foster an inclusive work … contributing to their vision of shaping a better future. In this role, you will be responsible for: Contributing to the setup and ongoing enhancement of the SecurityOperations Center (SOC). Investigating security incidents and implementing effective countermeasures. Utilizing SOC tools such as SIEM, vulnerability scanners, and incident response solutions. Performing threat hunting by analyzing and assessing security … automated vulnerability scans, interpreting results, and reporting findings to clients. This role is hybrid in Schleswig-Holstein. Essential qualifications: At least one year of professional experience working in a SOC or similar role (working student experience is acceptable). Experience working with EDR/XDR. Strong knowledge of IT networks and operating systems. Basic knowledge of offensive security concepts. More ❯
Job Description SOCAnalyst Location: Cheltenham Please Note: Due to the nature of client work you will be undertaking, you will need to be willing to go through a Security Clearance process as part of this role, which requires 5+ years UK address history at the point of application. Accenture is a leading global professional services company … service, coupled with analysing data sets gathered from Incident Response investigations and assisting Investigative Consultants to deliver positive investigative outcomes to our breach investigation consultancy engagements. Qualification As a SOCAnalyst you will: Be an integral part of our SOC team, responsible for monitoring, analyzing, and responding to security incidents. This entry-level position provides an More ❯
SOCAnalyst A Global Organisation requires a Contract L2 SOCAnalyst to join their Incident Response team - Splunk, Defender Day Rate: £400 - £420pd IR35 Status: Inside Duration: 6 months initially Travel: 2 days a week in Berkshire This L2 SOCAnalyst will have the previous following experience: Monitor and investigate security … root cause analysis efforts, providing detailed documentation and recommendations based on findings. Collaborate with L1 analysts, engineering teams, and threat intelligence functions to enhance detection capabilities and improve overall SOC effectiveness. More ❯
L3 SOCAnalyst A Global Organisation requires a Contract L3 SOCAnalyst to join their Incident Response team acting as an escalaton point - Splunk & Defender Day Rate: £475 - £500pd IR35 Status: Inside Duration: 6 months initially Travel: 2 days a week in Berkshire This L3 SOCAnalyst will have the previous … advanced threats. Develop and fine-tune detection rules and correlation logic in SIEM platforms (e.g., Splunk). Collaborate with engineering and threat intelligence teams to improve detection coverage and SOC workflows. Mentor and guide L1/L2 analysts, providing training, quality reviews, and escalation support. Design and execute proactive threat hunting campaigns using tools such as Defender, CrowdStrike, and More ❯
Bracknell, Berkshire, United Kingdom Hybrid / WFH Options
WeAreTechWomen
office, primarily Tuesdays, with ad-hoc visits as required by business needs), we support a healthy work-life balance. What you'll be doing: As the Partnership's Junior SOCanalyst, you'll be on the front lines of our cybersecurity defenses, responsible for monitoring and triaging security alerts, conducting initial incident investigations, and either resolving basic … excellence. If you're eager to learn and develop, this is the perfect opportunity to build your career in Information Security. What you'll have: A demonstrable experience in SOC and knowledge gained through working within a technical IT department or helpdesk A proven ability to work under pressure in a fast-paced environment and to succeed in ambiguity. More ❯