Security Operations Analyst

Hewett Recruitment
Worcestershire, UK
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£65,000.0
Working hours
Regular working hours

Tech stack

Cyber Security Microsoft Security Essentials Security Information and Event Management Software Vulnerability Management Cybercrime

Job description

A growing technology business is looking for a Senior Security Operations Analyst to join its Managed Security Services team.

This is a hands-on role within a smaller, developing security function, so it would suit someone who enjoys ownership, variety and customer interaction rather than being one person in a large corporate SOC. You’ll be involved in monitoring, investigating and responding to security activity across customer environments, while also helping improve detection capability, playbooks, processes and the overall maturity of the service.

The role could suit an experienced Senior SOC Analyst, Security Operations Analyst, Cyber Security Analyst, Incident Response Analyst or someone from an MDR / MSSP background who is ready for a role with more ownership and visibility.

What you’ll be doing

Monitoring, triaging and investigating security alerts across customer environments

Supporting incident response activity through to resolution

Carrying out root cause analysis and recommending remediation actions

Working with SIEM platforms such as Microsoft Sentinel, Splunk, QRadar or similar

Improving alerting, detection rules, use cases, playbooks and SOC processes

Supporting threat hunting, vulnerability management and security improvement activity

Working with Microsoft security tooling such as Defender, Defender XDR, M365 Security or Azure security

Producing clear documentation and communicating findings to customers

Requirements

Experience in a SOC, Security Operations, Cyber Security Analyst, CSIRT, MDR or similar role

Hands-on experience with SIEM tools such as Microsoft Sentinel, Splunk, QRadar, LogRhythm or similar

Good understanding of incident response, alert triage, log analysis and security investigations

Exposure to Microsoft security tooling, such as Defender, Defender XDR, M365 Security or Azure security

Ability to investigate incidents, identify root cause and recommend practical remediation steps

Strong communication skills and confidence working with customers or internal stakeholders

A proactive mindset, with an interest in improving processes, playbooks and detection capability

Experience in an MSP, MSSP, MDR or managed security environment would be highly beneficial

Exposure to OT, CNI, operational environments, utilities, manufacturing or industrial environments would also be useful, but is not essential

Benefits & conditions

Senior, hands-on security operations role

Opportunity to work across varied customer environments

Smaller team environment with genuine ownership and influence

Exposure to SIEM, incident response, threat hunting, vulnerability management and Microsoft security tooling

Chance to help shape and mature a growing managed security service

Progression opportunity as the team continues to grow

Salary up to £65,000 depending on experience

This role would suit someone who enjoys security operations, wants to stay hands-on, and is looking for more ownership, customer involvement and influence than a traditional large SOC environment.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.hewett-recruitment.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

Videos

See all

Related articles

See all