> Markdown version of [/jobs/ext/2041636-soc-analyst](https://www.wearedevelopers.com/jobs/ext/2041636-soc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst - **Company:** Reed - **Location:** London, UK - **Salary:** £50,000.0 - £60,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing Security, Cyber Security, Data Security, Intrusion Detection and Prevention, Security Information and Event Management, Software Vulnerability Management, Google Cloud, Mitre Att&ck, Cyber Threat Analysis, Cybercrime - **Published:** August 13, 2026 - **Apply:** https://www.reed.co.uk/jobs/soc-analyst/57232913 ## About the Role We're keen to speak with candidates who have: * Experience within a Security Operations Centre (SOC), Cyber Security Operations or Incident Response environment * Hands-on experience investigating security alerts using SIEM, EDR and security monitoring tools * A strong understanding of Modern cyber threats, attacker techniques and the MITRE ATT&CK framework * Experience analysing security events across endpoint, network, identity and cloud platforms * Knowledge of incident response and risk-based incident prioritisation * Experience working with or alongside an MSSP * Exposure to threat hunting, threat intelligence and detection engineering * Strong analytical and problem-solving skills with the ability to identify root causes and recommend improvements * Excellent communication skills with the ability to produce clear technical documentation and incident reports * A proactive mindset and genuine passion for cyber security and continuous learning ## Description We're partnering with a leading global digital media organisation to recruit a SOC Analyst who will play a key role in protecting a large-scale, international technology environment. This is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work within a hybrid Security Operations model alongside an MSSP, helping to strengthen detection capabilities, improve threat visibility and drive continuous security improvement across cloud and on-premises environments. Your role: * Investigate, triage and respond to cyber security alerts, incidents and threats * Act as the key operational contact for the Managed Security Service Provider (MSSP), ensuring effective monitoring and incident response * Prioritise and manage security incidents based on business risk and impact * Conduct proactive threat hunting across endpoint, network, identity and cloud environments * Develop and optimise SIEM detection rules, correlation logic and monitoring use cases * Investigate security activity across cloud platforms including AWS, Azure and GCP * Analyse threat intelligence and emerging attack trends to enhance detection and response capabilities * Identify gaps in monitoring coverage and implement improvements to strengthen security visibility * Investigate and respond to DLP alerts and potential data security incidents * Support vulnerability management by helping prioritise remediation activities based on risk and exploitability * Contribute to SOC maturity through automation, process improvements, playbook development and post-incident reviews * Support and optimise security tooling including SIEM, EDR, email security, cloud security and threat intelligence platforms * Produce security reports, operational metrics and technical documentation while collaborating with technology and security teams ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Cloud Run- the rise of serverless and containerization](https://www.wearedevelopers.com/videos/106-cloud-run-the-rise-of-serverless-and-containerization) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)