SOC Analyst
Job Description
SOC Analyst
\nLocation: London (Hybrid, 2 days a week on-site)Hours: 2PM - 10PM (Supporting US East Coast business hours)Salary: £60,000 + Benefits
\nWe're partnering with a leading global digital media organisation to recruit a SOC Analyst who will play a key role in protecting a large-scale, international technology environment.
\nThis is an excellent opportunity for a security professional with experience in SOC operations, threat detection, incident response, and threat hunting to join a mature security function that is investing heavily in its cyber capabilities. You'll work within a hybrid Security Operations model alongside an MSSP, helping to strengthen detection capabilities, improve threat visibility and drive continuous security improvement across cloud and on-premises environments.
\nYour role:
\n- \n
- Investigate, triage and respond to cyber security alerts, incidents and threats \n
- Act as the key operational contact for the Managed Security Service Provider (MSSP), ensuring effective monitoring and incident response \n
- Prioritise and manage security incidents based on business risk and impact \n
- Conduct proactive threat hunting across endpoint, network, identity and cloud environments \n
- Develop and optimise SIEM detection rules, correlation logic and monitoring use cases \n
- Investigate security activity across cloud platforms including AWS, Azure and GCP \n
- Analyse threat intelligence and emerging attack trends to enhance detection and response capabilities \n
- Identify gaps in monitoring coverage and implement improvements to strengthen security visibility \n
- Investigate and respond to DLP alerts and potential data security incidents \n
- Support vulnerability management by helping prioritise remediation activities based on risk and exploitability \n
- Contribute to SOC maturity through automation, process improvements, playbook development and post-incident reviews \n
- Support and optimise security tooling including SIEM, EDR, email security, cloud security and threat intelligence platforms \n
- Produce security reports, operational metrics and technical documentation while collaborating with technology and security teams \n
What We're Looking For
\nWe're keen to speak with candidates who have:
\n- \n
- Experience within a Security Operations Centre (SOC), Cyber Security Operations or Incident Response environment \n
- Hands-on experience investigating security alerts using SIEM, EDR and security monitoring tools \n
- A strong understanding of Modern cyber threats, attacker techniques and the MITRE ATT&CK framework \n
- Experience analysing security events across endpoint, network, identity and cloud platforms \n
- Knowledge of incident response and risk-based incident prioritisation \n
- Experience working with or alongside an MSSP \n
- Exposure to threat hunting, threat intelligence and detection engineering \n
- Strong analytical and problem-solving skills with the ability to identify root causes and recommend improvements \n
- Excellent communication skills with the ability to produce clear technical documentation and incident reports \n
- A proactive mindset and genuine passion for cyber security and continuous learning \n
Why Apply?
\n- \n
- Join a recognised global organisation with a large and complex technology estate \n
- Work with modern security technologies across cloud and hybrid environments \n
- Opportunity to influence detection engineering, threat hunting and SOC maturity initiatives \n
- Collaborative security culture with strong investment in cyber security \n
