About this role
Salary: £? - ? per year
Requirements: Active DV clearance.Demonstrable knowledge and skills in cyber security operations, forensics, incident management, incident investigation and response, information risk assessment and management, intrusion detection analysis, protective security, secure operations management, and threat intelligence and assessment.Experience working in a SOC or comparable cyber security operations environment.Experience investigating cyber security alerts and security events using enterprise monitoring techniques.Good knowledge of SIEM platforms, security monitoring tools, and log analysis techniques.Understanding of cyber attack methodologies, indicators of compromise, threat intelligence, and common attacker techniques.Experience analysing information from multiple technical sources to investigate cyber security events.Experience supporting cyber incident response activities.Strong analytical and problem-solving skills, with the ability to make sound technical judgements.Good written and verbal communication skills, with the ability to produce accurate technical reports and investigation findings.Ability to work effectively in a shift-based, 24/7 environment.Professional certifications such as Microsoft SC-200, CompTIA CySA+, GIAC, GCIA, or equivalent.Desirable: Experience using Microsoft Sentinel, LogRhythm, or equivalent enterprise SIEM platforms.Desirable: Experience developing monitoring improvements, detection tuning, or operational processes.Desirable: Experience supporting Incident Responder activities during major cyber security incidents.Desirable: Experience contributing to the development of monitoring use cases and detection improvements.Desirable: Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks. Responsibilities: Provide operational leadership for the Security Monitoring function, ensuring consistent delivery of high-quality security monitoring, investigation, and escalation activities.Monitor our organisations technology estate using approved monitoring platforms and analytical tools to identify cyber security events, suspicious activity, and indicators of compromise.Independently investigate security alerts and complex cyber security events, determining their significance, potential impact, and appropriate course of action.Correlate information from multiple data sources to establish attack timelines, identify affected systems, and support the assessment of cyber security incidents.Analyse indicators of compromise, attacker techniques, and available threat intelligence to determine the nature and severity of security events.Escalate confirmed or suspected cyber security incidents to the Lead SOC Analyst or Incident Responder team in accordance with established operational procedures.Support Incident Responders with accurate analytical findings, supporting evidence, timelines, and technical information throughout incident investigations.Identify opportunities to improve alert quality, investigation processes, monitoring coverage, and detection effectiveness.Validate new monitoring content, detection rules, and operational procedures before deployment in the live SOC environment.Assist with onboarding new systems, cloud services, and applications into SOC monitoring, validating operational visibility and monitoring effectiveness.Maintain accurate investigation records and document analytical activities in accordance with organisational procedures.Share knowledge, provide technical guidance, and support the development of Practitioner SOC Analysts through coaching and day-to-day mentoring.Contribute to operational reviews, lessons identified, and post-incident activities, recommending improvements to monitoring capability and operational processes.Maintain awareness of emerging cyber threats, attacker techniques, and monitoring technologies to support professional development and operational effectiveness. Technologies: CloudIncident ManagementSupportSecurity More:
We are recruiting four Senior SOC Analysts for a six-month contract initially, based in Buckinghamshire. The rate is £75 per hour. The role follows 12-hour shifts (7am–7pm and 7pm–7am), with seven days and seven nights across a four-week pattern.
last updated 39 week of 2026