> Markdown version of [/jobs/ext/3332117-associate-security-analyst](https://www.wearedevelopers.com/jobs/ext/3332117-associate-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Associate Security Analyst - **Company:** Opportunitywe - **Location:** London, UK - **Experience:** Experienced - **Salary:** £169,000.0 - £182,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Agile Methodology, Amazon Web Services, Cloud Computing Security, Cyber Security, Kusto Query Language, Runbook, Security Information and Event Management, SC Clearance, Microsoft Sentinel, Splunk - **Published:** September 1, 2026 - **Apply:** https://www.apply4u.co.uk/jobs/associate-security-analyst/45620098 ## About the Role including containment, eradication and recovery. Assist with the coordination and management of security incidents. Contribute to post-incident reviews, lessons learned and improvement actions. Develop and improve incident response processes, playbooks and security documentation. Work collaboratively with wider Cyber Defence and security functions. Act as an escalation point for apprentice and junior security analysts. Coach and mentor junior members of the team. Support line management responsibilities for apprentice security analysts. Participate in an out-of-hours cyber incident response/on-call rota. Essential Skills & Experience Active SC security clearance. At least 2-3 years' experience as a Cyber Security Analyst or in a comparable security operations role. Proven experience investigating and responding to cyber security incidents. Practical experience with SIEM and EDR technologies. Hands-on experience with Splunk. Experience with Microsoft 365 security technologies, including: Microsoft Defender Microsoft Sentinel KQL Strong understanding of common cyber threat actor tactics, techniques and procedures (TTPs). Experience analysing alerts, identifying potential threats and assessing the scope and impact of incidents. Strong analytical and problem-solving skills. Excellent verbal and written communication skills. Experience working within a SOC, Cyber Defence or Security Operations environment. Desirable Experience Advanced hands-on experience with Splunk. Experience working in an Agile environment. Experience with cloud security, particularly AWS. Experience creating or maintaining incident response playbooks and security documentation. Experience coaching, mentoring or supporting junior/apprentice security analysts. Experience contributing to continual improvement of security operations and incident response capabilities. The Ideal CandidateWe are looking for an analytical, proactive and technically capable security professional with practical experience in cyber incident investigation and response. You should be confident working with SIEM and EDR technologies, investigating security alerts, understanding attacker behaviour and communicating technical findings clearly to both technical and non-technical stakeholders. Government Success ProfilesCandidates will be assessed against relevant experience, career history, achievements, technical/specialist skills and behaviours. The key behaviours for this role are: Making Effective Decisions Changing and Improving Working Together Apply NowIf you have active SC clearance, strong Cyber Security Analyst experience and hands-on expertise with Splunk, Microsoft Defender, Sentinel and KQL, we'd like to hear from you. Apply now for this exciting Cyber Defence contract opportunity. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Technical Documentation - How Can I Write Them Better and Why Should I Care?](https://www.wearedevelopers.com/videos/681-technical-documentation-how-can-i-write-them-better-and-why-should-i-care) - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) - [Bridging AI and Nomad: a Go-based MCP Server for Cluster Control](https://www.wearedevelopers.com/videos/2063-bridging-ai-and-nomad-a-go-based-mcp-server-for-cluster-control) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)