SOCAnalyst Location: Home based/Remote – Must be Based in the United Kingdom Salary: Up to £35,000, shift based role with 24/7 coverage Qualifications: Must be eligible for SC Clearance The company An exciting opportunity has arisen at an award-winning Microsoft Partner for a SOC Analyst. The business is a fast … growing, industry-leading managed service and managed service security provider, delivering in to mid and large enterprise clients. This is a fantastic opportunity for a SOCAnalyst to continue their development at an established Microsoft Partner. The business has a keen focus on developing their staff by providing support for training and earning certifications. You will also … role; you must however be based in the UK to be considered. This role will also require eligibility to gain SC Clearance due to government-based customers. About The SOCAnalyst Role As a SOCAnalyst, you will support the SOC Manager, acting as an escalation point and technical SME for stakeholders within More ❯
Northampton, Northamptonshire, England, United Kingdom
VIQU IT Recruitment
SOCAnalyst – 3-month contract – Northampton My Customer is looking for a proactive SOCAnalyst to join their team and take ownership of monitoring, triaging, and responding to security alerts across their Microsoft security ecosystem. Strong experience troubleshooting and responding to alerts would be the main focus of the role. Strong expertise with Microsoft … Defender and Sentinel is needed. Key Skills & Experience from the SOCAnalyst Strong experience with Microsoft Sentinel (SIEM) and Microsoft Defender suite (Defender for Endpoint, Identity, Cloud, etc.). Proven track record in security monitoring, incident response, and alert troubleshooting . Working knowledge of SOAR platforms (preferably within Sentinel or similar). Understanding of threat detection, log … analysis, and automation within Microsoft’s security ecosystem. Key Responsibilities of the SOCAnalyst Monitor, investigate, and respond to security alerts and incidents in Microsoft Sentinel and Microsoft Defender . Perform detailed security event analysis and correlation, escalating incidents where necessary. Develop and optimise SOAR (Security Orchestration, Automation and Response) playbooks to enhance incident response and efficiency. More ❯
The Role As an Associate SOCAnalyst, you bring a strong background in IT or cybersecurity to a transitory role that builds towards full SOCAnalyst responsibilities. You use your foundational knowledge to independently triage, investigate, and validate alerts using established playbooks. While you handle basic incident investigations and documentation, you escalate cases requiring … deeper analysis to Shift Leads or Senior SOC Analysts. This role focuses on developing your skills through mentoring, continuous learning, and hands-on experience, with the expectation of advancing to a full SOCAnalyst position within 18 months following your successful probationary period. Key Responsibilities Incident Triage & Investigation – You review and prioritise new alerts from security … basic checks to distinguish genuine threats from false positives. You rely on established playbooks and make initial validation decisions while escalating more complex incidents to Shift Leads or Senior SOC Analysts Continuous Improvement – You contribute to the enhancement of detection logic by identifying recurring or redundant alerts. You participate in threat hunting and skills development sessions to help reduce More ❯
Job Summary: The Senior SOCAnalyst is a key member of the 24/7/365 SecurityOperations Center, which serves as the escalation point for advanced investigations, incident response, and proactive threat hunting. This role conducts higher-level analysis than other analysts on the team. A senior SOCanalyst performs deep forensic … investigations, correlates multi-source threat intelligence information, and guides containment and remediation strategies. The Senior SOCAnalyst identifies and mitigates advanced threats across enterprise IT endpoints, cloud environments, and OT systems. They leverage frameworks like the MITRE ATT&CK framework and others to detect, disrupt, and prevent malicious activity from occurring in the enterprise environment. They work … closely with the SOC manager and leads. They mentor junior staff, assist to refine SOC processes, and ensures the organization maintains a strong cybersecurity posture. They collaborate with engineers, threat intelligence and forensics teams to enhance detection capabilities, improve incident response readiness, and deliver actionable security insights to leadership. Duties and Responsibilities: Lead advanced incident detection, investigation, and More ❯
Senior Incident Responder - SOCAnalyst (L3) £71000 GBP Hybrid WORKING Location: Central London, Greater London - United Kingdom Type: Permanent Senior Incident Responder - SOCAnalyst (L3) Location: UK-wide (hybrid/on-site as required) Salary: £71,000 + Bonus Clearance: Must be eligible for SC Clearance Our client is a global consulting and technology … services firm, supporting public and private sector organisations with complex digital and cyber transformation. They are building out their UK Security Practice and are seeking a Senior Incident Responder - SOCAnalyst (L3) to lead investigations, manage escalations, and strengthen cyber resilience for mission-critical environments. The Role As a Senior Incident Responder, you'll be the escalation … point for L1 and L2 SOC Analysts, taking ownership of security incidents from investigation through to containment and remediation. You'll drive root cause analysis, ensure runbooks and playbooks are followed, and directly engage with clients and delivery managers to provide expert guidance on incident handling. This is a hands-on technical leadership role that combines investigation, response, threat More ❯
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
City of London, London, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
East London, London, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Bolton, Greater Manchester, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Bury, Greater Manchester, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Leeds, West Yorkshire, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Leigh, Greater Manchester, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Central London / West End, London, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Altrincham, Greater Manchester, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
London, South East, England, United Kingdom Hybrid / WFH Options
Atrium Workforce Solutions Ltd
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
Ashton-Under-Lyne, Greater Manchester, United Kingdom Hybrid / WFH Options
Atrium (EMEA)
Cyber SecuritySOCAnalyst – London/Remote Atrium EMEA is looking for an accomplished Cyber SecuritySOCAnalyst to support the Security Incident Response Team. The team is growing, we require a strong individual contributor that will investigate, analyse, and contain security incidents. This is a fully remote role, with the occasional London office … automation (Python, Powershell, Bash, KQL etc) • Financial services sector, a benefit/Shift work NOT required Click Apply now/contact Lianne to be considered for the Cyber SecuritySOCAnalyst – London/Remote role More ❯
advanced technologies, elite minds, and unparalleled agility-leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation's vital interests. Requisition: Job Title: Tier 2 SOCAnalyst Location: Onsite 5x/week - 2070 Chain Bridge Road in Vienna, VA, OR 1750 Pennsylvania Avenue, NW, Washington, DC. Clearance Level: Active DoD - Secret SUMMARY We … s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individual's technical and professional growth. We are seeking a Tier 2 SOCAnalyst for a potential opportunity to support enterprise SOCoperations by reviewing and responding to escalated tickets from Tier 1. This role applies working knowledge of … cybersecurity to improve incident detection, analyze threat intelligence and support both classified and unclassified environments. The Tier 2 SOCAnalyst position requires the ability to work under limited supervision while applying technical expertise to moderately complex problems. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in More ❯
Hampshire, South East, United Kingdom Hybrid / WFH Options
Experis
ROLE TITLE: SOCAnalyst - SC Cleared LOCATION: flexible (can be predominantly remote) The ideal candidate must have active SC clearance We are actively looking to secure an SOCAnalyst to join Experis. Experis Consultancy is a Global entity with a well-established team with over 1000 consultants on assignment across 20 clients globally. Our … approach is a very personal one, with both our clients and our own employees. We are passionate about training, technology and career development. Skills required: Microsoft Certified: SecurityOperationsAnalyst Associate Certification (SC200) is a mandatory requirement for role fulfilment Experience working with SIEM technologies and security tooling An understanding of IT Infrastructure and Networking An understanding of … in a close team and independently The ability to be adaptable to a high pace changeable workload An interest in security and threat management Nice to have skills A SOCAnalyst will be responsible for providing Protective Monitoring Services across a range of Secure Customers. They will be responsible for the day to day monitoring using various More ❯
advanced technologies, elite minds, and unparalleled agility-leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation's vital interests. Requisition: Job Title : Tier 3 SOCAnalyst Location: Onsite 5x/week - 2070 Chain Bridge Road in Vienna, VA, OR 1750 Pennsylvania Avenue, NW, Washington, DC. Clearance Level: Active DoD - Secret SUMMARY We … s critical infrastructure while building meaningful and exciting career development opportunities in a culture tailored to the individual's technical and professional growth. We are seeking a Tier 3 SOCAnalyst for a potential opportunity, with deep expertise in cybersecurity operations. This role provides advanced support for issues escalated from Tier 2, investigates anomalies in vulnerability data … and ensures effective response across both classified and unclassified environments. The Tier SOC 3 Analyst position requires expert technical knowledge, creativity in developing solutions and the ability to address complex problems impacting multiple disciplines. This is a unique opportunity to shape the growth, development and culture of an exciting and fast-growing company in the cybersecurity market. More ❯
Reading, Berkshire, South East, United Kingdom Hybrid / WFH Options
Stott & May Professional Search Limited
SOCAnalyst Location: Reading (Hybrid - 3 days onsite per week) Contract Type: Contract (Inside IR35) Duration: 6 Months Day Rate: £382.50 per day Inside IR35 The Role We are seeking an experienced SOC Level 2 Analyst to join our SecurityOperations Center, supporting threat detection, investigation, and response across enterprise systems. You'll work … processes, and maintain accurate incident documentation. Collaborate with IT and security teams to strengthen overall detection and response capability. Essential Skills & Experience 6-8 years in cybersecurity, with strong SOC or incident response experience. Proficient in SIEM (Splunk, ArcSight) and EDR (Defender, CrowdStrike, Carbon Black). Strong knowledge of digital forensics, malware analysis, and threat hunting. Skilled across Windows … Linux, and cloud environments. Familiar with frameworks such as MITRE ATT&CK, NIST, and ISO 27001. Scripting experience (Python, PowerShell) beneficial. Preferred Certifications SOC-related (CySA+, Blue Team L1, GCIH, GCIA, GCFA). CISSP or equivalent desirable. Additional Information Fast-paced environment; occasional out-of-hours work may be required. More ❯
ROLE TITLE: SOCAnalyst LOCATION: flexible (can be mostly remote, must be based in UK) CLEARANCE: SC cleared, or eligible for SC clearance Salary: £35k - £41k The ideal candidate will have active SC Clearance or be eligible to undergo SC Clearance. We are actively looking to secure an SOCAnalyst to join Experis. Experis … approach is a very personal one, with both our clients and our own employees. We are passionate about training, technology and career development. Key accountabilities of the role A SOCAnalyst will be responsible for providing Protective Monitoring Services across a range of Secure Customers. They will be responsible for the day to day monitoring using various … Trend reporting Rule tuning and continual service improvement The role involves working alongside other team members including SOC engineers and Service Managers. Skills required: Microsoft Certified: SecurityOperationsAnalyst Associate Certification (SC200) is a mandatory requirement for role fulfilment Experience working with SIEM technologies and security tooling An understanding of IT Infrastructure and Networking An understanding of More ❯
SOCAnalyst – 1st UK Hire! Want to be part of the founding UK team for a $300m Global Cyber group? If you're a driven SOCAnalyst who wants more than just “another ops role” and want autonomy to shape a new function with global backing, this could be the role for you! You … growth across Europe, this is a rare opportunity to join early & help shape a new security capability. Why join? You'll play a key role establishing & scaling UK & EU SOC capability. You'll be backed by a $300m global organisation, with proven SOC frameworks & tooling in place. You'll report to the CISO, a recognised industry voice, frequently … are shaped. You'll be positioned for fast progression as the UK cyber practice scales, with forward growth for your role already scoped The Role You’ll support US SOC across UK/EU timezones and UK/EU customers with autonomy to shape local processes, tools & culture. Monitor, investigate and respond to security alerts (Tier 2-level responsibility More ❯
SOCAnalyst – 1st UK Hire! Want to be part of the founding UK team for a $300m Global Cyber group? If you're a driven SOCAnalyst who wants more than just “another ops role” and want autonomy to shape a new function with global backing, this could be the role for you! You … growth across Europe, this is a rare opportunity to join early & help shape a new security capability. Why join? You'll play a key role establishing & scaling UK & EU SOC capability. You'll be backed by a $300m global organisation, with proven SOC frameworks & tooling in place. You'll report to the CISO, a recognised industry voice, frequently … are shaped. You'll be positioned for fast progression as the UK cyber practice scales, with forward growth for your role already scoped The Role You’ll support US SOC across UK/EU timezones and UK/EU customers with autonomy to shape local processes, tools & culture. Monitor, investigate and respond to security alerts (Tier 2-level responsibility More ❯