> Markdown version of [/jobs/ext/3158384-soc-analyst](https://www.wearedevelopers.com/jobs/ext/3158384-soc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Analyst - **Company:** Allwyn UK - **Location:** Warrington, UK - **Experience:** Expert - **Salary:** £44,656.0 - **Contract:** Temporary contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing, Cyber Security, Monitoring of Systems, Intrusion Detection and Prevention, Security Information and Event Management, Cyber Threat Analysis, Cybercrime, Servicenow - **Published:** September 5, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5870887477 ## About the Role * Experience working within a Security Operations Centre, cyber security function or equivalent operational security environment. * Understanding of cyber security principles, threats and attack methodologies. * Experience investigating security alerts and incidents. * Familiarity with SIEM, EDR and security monitoring technologies. * Understanding of incident management processes. * Strong analytical and problem-solving skills. * Excellent written and verbal communication skills. * Ability to work effectively within a shift-based operational environment. Desirable * Experience with Microsoft Defender technologies. * Experience with Elastic SIEM. * Familiarity with cloud platforms including AWS and Azure. * Experience using ServiceNow or similar ticketing platforms. * Knowledge of threat intelligence frameworks. * Basic scripting or automation experience. ## Description The SOC Analyst is responsible for monitoring, investigating, analysing and responding to cyber security events and incidents across the organisation's technology estate. The role forms part of a 24x7 Security Operations Centre and plays a critical role in maintaining cyber threat detection, incident response, operational resilience and information security assurance. The SOC Analyst serves as the primary operational practitioner within the SOC and is responsible for delivering consistent, high-quality monitoring and investigation activities while supporting continuous service improvement and professional development. What you'll be doing Security Monitoring & Threat Detection * Monitor security monitoring platforms and technologies on a continuous basis. * Review, triage and investigate security alerts. * Identify indicators of compromise, suspicious activity and potential cyber threats. * Escalate validated incidents in accordance with defined procedures. * Maintain awareness of current threat activity and attack techniques. Cyber Security Incident Response * Participate in cyber security incident investigations. * Collect, analyse and document relevant evidence. * Support containment, eradication and recovery activities where required. * Ensure incident records remain accurate and complete. * Assist in the preparation of incident reports and post-incident reviews. Operational Excellence * Follow established playbooks, procedures and security operations processes. * Ensure investigations are conducted consistently and accurately. * Maintain documentation to required quality standards. * Support operational handovers between shifts. * Contribute to service continuity across the SOC operating model. Continuous Improvement * Identify opportunities to improve operational processes. * Provide feedback on alert quality and detection effectiveness. * Contribute to knowledge sharing and operational learning activities. * Support implementation of service improvements and new capabilities. Professional Development * Maintain current knowledge of cyber security threats and technologies. * Participate in structured learning and development activities. * Work towards development objectives aligned to the SOC Capability & Career Framework., This role forms part of the Security Operations career pathway and provides progression opportunities to Senior SOC Analyst and future specialist pathways through demonstrated capability, performance and professional development. ## Related Videos - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)