> Markdown version of [/jobs/ext/3315956-tier-2-soc-analyst](https://www.wearedevelopers.com/jobs/ext/3315956-tier-2-soc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Tier 2 SOC Analyst - **Company:** Oscar Associates (UK) Ltd - **Location:** London, UK - **Salary:** £40,000.0 - £50,000.0 - **Contract:** Permanent contract - **Skills:** Data Analysis, Microsoft Antivirus, Cyber Security, Performance Tuning, Security Information and Event Management, Mitre Att&ck, Falcon Platform, Cybercrime, Microsoft Sentinel, 3-tier Architectures, Splunk - **Published:** September 2, 2026 - **Apply:** https://www.reed.co.uk/jobs/tier-2-soc-analyst/57301847 ## About the Role We're interested in speaking with candidates who can demonstrate: * Previous experience working within a Security Operations Centre (SOC), cyber security operations or incident response environment * Experience investigating and responding to complex security alerts and incidents * Strong knowledge of SIEM platforms and security event analysis * Experience with endpoint detection and response (EDR) technologies * A good understanding of incident response processes and methodologies * Knowledge of common attack techniques, tactics and procedures, including the MITRE ATT&CK framework * Experience analysing logs across endpoint, network, cloud or identity environments * An understanding of threat intelligence and indicators of compromise * Strong analytical and problem-solving skills * Excellent written and verbal communication skills * The ability to clearly communicate technical findings to both technical and non-technical stakeholders Experience with technologies such as Microsoft Sentinel, Splunk, Microsoft Defender, CrowdStrike or similar security platforms would be highly beneficial. ## Description Tier 2 SOC Analyst | £40,000-£50,000 DOE | London (Hybrid) Are you passionate about cyber security and enjoy investigating complex security incidents? We're partnering with a growing cyber security organisation that is looking to strengthen its Security Operations capability with the addition of a Tier 2 SOC Analyst. This is an opportunity to join a collaborative cyber security team responsible for monitoring, investigating and responding to security threats across complex client environments. You'll play a key role in identifying potential security incidents, conducting detailed investigations and supporting the response to emerging threats. The role offers exposure to a wide range of technologies, security tools and client environments, with the opportunity to develop your technical expertise within a fast-paced SOC environment. What you'll be doing: As a Tier 2 SOC Analyst, you'll take ownership of more complex security alerts and incidents, including: * Investigating and analysing escalated security alerts from Tier 1 analysts * Conducting detailed incident investigations to determine scope, impact and root cause * Monitoring and analysing activity across SIEM, EDR and other security platforms * Identifying indicators of compromise, suspicious activity and emerging threats * Supporting incident response and containment activities * Performing threat hunting activities to proactively identify potential security risks * Escalating significant or complex incidents where appropriate * Working closely with Tier 1 and Tier 3 analysts, incident responders and other technical teams * Tuning and improving detection rules and use cases to reduce false positives and improve threat detection * Analysing logs and security events from endpoints, networks, cloud environments and other infrastructure * Producing clear investigation reports and documenting incidents, findings and recommendations * Maintaining awareness of the latest cyber threats, vulnerabilities and attacker techniques * Contributing to the ongoing development and improvement of SOC processes and capabilities ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk)