Senior SOC Analyst

Hays plc
Bletchley, UK
3 days ago
Apply on jobsthamesvalley.co.uk
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£151,840.0
Working hours
Shift work

Tech stack

Cyber Security Monitoring of Systems Intrusion Detection and Prevention Cloud Services Security Information and Event Management Mitre Att&ck Microsoft Sentinel

Job description

We are recruiting four Senior SOC Analysts to join an established 24/7 Security Operations Centre. You will independently monitor, investigate and analyse cybersecurity events and incidents, supporting the delivery of an effective round-the-clock cyberdefence capability. Key responsibilities

  • Monitor the organisation’s technology estate for cyber events, suspicious activity and indicators of compromise.
  • Independently investigate security alerts and complex cyber events.
  • Assess the significance, potential impact and appropriate response to identified threats.
  • Correlate information from multiple technical sources to establish attack timelines and identify affected systems.
  • Analyse indicators of compromise, attacker techniques and threat intelligence.
  • Escalate confirmed or suspected incidents to the Lead SOC Analyst or Incident Response team.
  • Provide Incident Responders with accurate findings, evidence, timelines and technical information.
  • Validate monitoring content, detection rules and operational procedures before live deployment.
  • Support the onboarding of new systems, applications and cloud services into SOC monitoring.
  • Maintain accurate and fully documented investigation records.
  • Mentor and provide technical guidance to developing SOC Analysts.
  • Contribute to detection tuning, monitoring improvements and post-incident reviews.

Requirements

  • Experience working within a SOC or comparable cybersecurity operations environment.
  • Strong experience investigating cybersecurity alerts using enterprise monitoring technologies.
  • Good knowledge of SIEM platforms, security-monitoring tools and log-analysis techniques.
  • Understanding of cyberattack methodologies, indicators of compromise, threat intelligence and common attacker techniques.
  • Experience analysing data from multiple technical sources to investigate security events.
  • Experience supporting cyber incident-response activities.
  • Knowledge of intrusion detection, forensics, protective security, risk management and secure operations.
  • Strong analytical and problem-solving skills with sound technical judgement.
  • Ability to produce accurate technical reports and investigation findings.
  • Ability to operate effectively within a 24/7 shift environment.
  • Relevant certification such as Microsoft SC-200, CompTIA CySA+, GIAC, GCIA or equivalent.

Experience of Microsoft Sentinel, LogRhythm, MITRE ATT&CK, NCSC guidance, detection tuning or working within Government, Defence, Critical National Infrastructure or similarly regulated environments would be advantageous. Working arrangementsThis is a fully site-based position at Hanslope Park, Milton Keynes, with no hybrid or remote-working options. The role operates a 24/7/365 Panama rota, including 12-hour day and night shifts. Security clearanceApplicants must be British nationals and capable of obtaining UK Government Developed Vetting, DV clearance. Existing DV clearance is not essential, but candidates who currently hold an active DV clearance will be at a significant advantage, particularly given the urgent nature of the requirement.

About the company

Hays EA is a trading division of Hays Specialist Recruitment Limited and acts as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this job you accept the T&C’s, Privacy Policy and Disclaimers which can be found at (url removed)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobsthamesvalley.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:41 min

Transitioning artificial intelligence infrastructure into scalable commodity cloud services

juarezjunior juarezjunior · World Congress 2024

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

47 sec

Advantages of edge inference over cloud API services

Sasha Denisov Sasha Denisov · World Congress 2026 Europe

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all