Skip to main content
Posted 05 August, 2026

Cyber Security Analyst

Digital Waffle
City of London, ENG, GB Full Time

Job Description

Location: London (On-site Shift Pattern)

\n

Salary: Up to £70,000 + On-Call Allowance + Benefits

\n

Security Clearance: Active SC Clearance required (Must be a British National and eligible to obtain higher levels of UK security clearance)

\n


\n

We're working with a leading organisation supporting critical national security programmes, who are looking to recruit an experienced Security Analyst to join their 24/7 Security Operations Centre (SOC)

\n


\n

You'll play a key role in monitoring, detecting and responding to cyber security threats across complex enterprise environments, working with industry-leading technologies including Elastic and Splunk. This is an excellent opportunity for someone who thrives in a fast-paced operational environment and enjoys working on high-profile, mission-critical systems.

\n


\n

Key Responsibilities

\n
    \n
  • Monitor security alerts and events across enterprise environments using Elastic and Splunk
  • \n
  • Investigate, triage and respond to security incidents in line with established playbooks and SLAs
  • \n
  • Perform threat hunting and proactive analysis to identify malicious activity.
  • \n
  • Analyse logs from endpoints, networks, cloud services and security tools to detect suspicious behaviour
  • \n
  • Escalate incidents where appropriate and work closely with engineering and incident response teams
  • \n
  • Develop and improve SIEM detection rules and alert tuning to reduce false positives
  • \n
  • Produce clear incident reports and maintain accurate documentation
  • \n
  • Participate in the on-call rota and support major incident response when required
  • \n
  • Contribute to the continuous improvement of SOC processes, tooling and operational procedures
  • \n
\n


\n

Skills & Experience

\n
    \n
  • Experience working within a 24/7 Security Operations Centre (SOC) or equivalent cyber security environment
  • \n
  • Strong hands-on experience using Elastic and/or Splunk for security monitoring and investigations
  • \n
  • Good understanding of SIEM technologies, log analysis and threat detections
  • \n
  • Knowledge of security frameworks such as MITRE ATT&CK and the Cyber Kill Chain
  • \n
  • Experience investigating phishing, malware, endpoint, identity and network security incidents
  • \n
  • Familiarity with Windows, Linux, Active Directory and cloud environments (AWS, Azure or Microsoft 365)
  • \n
  • Strong analytical and problem-solving skills with the ability to make decisions under pressure
  • \n
  • Excellent written and verbal communication skills
  • \n
\n


\n

Essential Require

\n
    \n
  • Active SC Clearance
  • \n
  • British National, with eligibility to obtain higher levels of UK security clearance
  • \n
  • Willingness to work a 24/7 rotating shift pattern (4 days on rotation)
  • \n
  • Able to work from the London office as required
  • \n