Security Operations Centre (SOC) Analyst

Insight
Sheffield, UK
20 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
£39,598.0
Working hours
Regular working hours

Tech stack

Artificial Intelligence Cyber Security Security Information and Event Management Web Traffics Large Language Models Software Security Mitre Att&ck QRadar Microsoft Sentinel Cortex XSOAR Platform Splunk Vulnerability Analysis

Job description

Monitor, detect, and respond to security events related to Claude Code usage, with focus on AI-specific threats.

  • Analyze SIEM dashboards/alerts for anomalies such as unusual prompt volumes, DLP triggers, and authentication failures.
  • Investigate and triage security events; escalate confirmed incidents as necessary.
  • Develop and refine SIEM detection rules for AI/LLM threat scenarios, including prompt injection and data exfiltration.
  • Conduct daily review of audit logs and generate weekly security metrics reports.
  • Participate in incident response exercises, especially those involving AI-specific scenarios.
  • Maintain and update SOC runbooks for Claude Code incident response procedures.
  • Collaborate with cybersecurity teams to ensure best practices in AI security monitoring and incident handling.
  • Utilize tools such as Splunk, Microsoft Sentinel, or IBM QRadar for security monitoring.
  • Leverage strong analytical and investigation skills to identify and mitigate security risks.

Requirements

Apply knowledge of MITRE ATT&CK framework, API security, and web traffic analysis.

  • Preferred: Experience with AI/LLM technologies, prompt-based attack vectors, SOAR platforms (e.g., Palo Alto XSOAR, Splunk SOAR), and Security+ or equivalent certification.
  • Target candidates with 3+ years’ experience in SOC or security monitoring roles, ideally with enterprise or BFSI sector exposure.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:23 min

Boosting security operations center productivity with intelligent data analysis

Chris Wysopal Chris Wysopal +2 · WWC 2024

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:43 min

Generative search interfaces threaten modern traffic attribution and advertising

Chris Heilmann +2 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:35 min

Dead internet theory and the rise of automated traffic

Colleen Lake Colleen Lake · WWC Europe 2026

Videos

See all

Related articles

See all