Graduate SOC Analyst

CyPro
London, UK
14 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Working hours
Shift work
Languages
English

Tech stack

Microsoft Antivirus JIRA Microsoft Azure Cyber Security Intrusion Detection and Prevention Microsoft Office Kusto Query Language Datadog Mitre Att&ck Cyber Threat Analysis Infrastructure Automation Frameworks Information Technology
+1 more
Microsoft Sentinel

Job description

  • This isn’t your typical SOC Analyst role where you’re pigeonholed into one narrow specialism. At CyPro, you’ll have the opportunity to get involved in a wide range of areas including monitoring, incident response, threat intelligence, detection engineering, automation and internal security operations.
  • You’ll play a key role in our Security Operations Centre, delivering 365-day monitoring, detection and response to our growing customer base. You’ll contribute to building out our capabilities, improving tooling and processes, and shaping how we operate as the function matures.
  • As the team grows further, you’ll have the flexibility to focus more deeply on the areas that interest you most - whether that’s advanced detection engineering, threat intelligence, incident response leadership or platform automation. If you’re ambitious and want to help shape something rather than simply follow a process, this is the right environment for you., * Prepare weekly and monthly SOC reports highlighting activity, incidents and trends.
  • Join governance calls with senior analysts or managers to present SOC insights.
  • Communicate independently with clients via email, messenger and Teams call to address queries around incidents, detection coverage and service issues.

Security Monitoring & Incident Response

  • Monitor security alerts generated by Microsoft Sentinel, Microsoft Defender, Datadog and Elastic.
  • Assess severity and impact of alerts, triage and investigate incidents independently.
  • Execute containment and remediation actions using defined runbooks and playbooks.
  • Correlate data across platforms to identify anomalies, malicious patterns and attacker behaviour.
  • Produce detailed incident reports, RCA and after-action reviews for internal and client use.
  • Maintain accurate incident records in JIRA Service Management.

Detection Engineering

  • Develop and implement new detection rules in Microsoft Sentinel aligned to the MITRE ATT&CK framework.
  • Draft and optimise KQL queries for detection and threat hunting.
  • Refine existing detection logic based on false positive analysis and threat evolution.
  • Analyse threat intelligence feeds to identify relevant threats and vulnerabilities.
  • Review and tag IOCs and TTPs observed in client environments.
  • Participate in proactive threat hunting sprints to identify risks before they elevate.

Requirements

  • Education: You must hold a 2:1 degree (ideally in a science, mathematics or technical subject) or have completed an apprenticeship in a relevant subject area (e.g. Cyber Security, Information Security, Computer Science) studied at a UK/US/Australian/New Zealand/Canadian University or college. You must also hold grade BBB at A-Level (or equivalent) or a Merit T-Level in a relevant subject.
  • Experience: No experience is necessary, but you should be able to clearly articulate what a role in a Cyber Security Operations Centre entails.
  • IT literacy: highly confident using Microsoft Office 365 with some experience of other Microsoft tools such as Defender or Azure.
  • Fluent in English: you must be highly proficient with business-level written and spoken English
  • Location: must be within a reasonable commute of Canary Wharf, London

Benefits & conditions

  • Holiday: 25 days paid holiday plus bank holidays (increases by 1 day per year worked up to 30 days)
  • Flexible Working: We love getting the team together in the office, so we typically spend three days per week together in our lovely London office (39 floors up in Canary Wharf). The rest of the time, you can work wherever you’re most productive.
  • Working Hours: Monday to Friday 9:00am - 5:30pm with the potential to move to be part of a 24/7 shift rota on promotion.
  • Training: Budget for one certification/course per year
  • Socials: We meet regularly to have a drink, throw some axes
  • Start Date: September/October 2026

About the company

  • We are an innovative cyber security start-up united in a shared mission: to redefine cyber security for small and medium-sized businesses (SMBs).
  • Our Founders - Jonny & Rob - spent most of their early careers delivering cyber security for large enterprises and central government. They saw a clear need for a new approach to cyber security as SMBs became increasingly targeted by cyber criminals.
  • Together, CyPro is already setting new standards, defining innovative solutions and equipping its clients with the cyber security they need to prevent attacks, secure bigger clients and scale to new heights.
  • We are growing quickly, and the next few years promise more of the same. Joining CyPro means becoming an integral part of our mission and joining a team of industry experts embarking on this journey.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

1:36 min

Visualizing memory limits and isolating suspicious endpoints

Dina Matveev Dina Matveev · Europe 2026 Virtual

3:05 min

Integrating an assistant application with Jira software

Felix Augenstein · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:08 min

Analyzing error logs and root causes using artificial intelligence

Nishil Patel Nishil Patel · World Congress 2025

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all