Senior SOC Analyst
Summary
Senior SOC Analyst monitors and responds to security incidents, tunes SIEM rules, hunts threats, and automates workflows across Azure and AWS for a cybersecurity-focused team.
Salary: £75,000 - 90,000 per year
Requirements:- Strong experience in senior SOC, blue team, or security operations roles.
- Hands-on SIEM engineering and detection tuning experience.
- Proven ownership of complex incident response and investigations.
- Cloud security experience across Azure and AWS.
- Experience automating SOC workflows and response processes.
- Threat hunting experience beyond basic log review.
- Comfortable engaging directly with technical stakeholders.
- Able to prioritise and operate effectively under pressure.
- Microsoft Sentinel experience is useful but not essential.
- Experience with container or Kubernetes environments is useful but not essential.
- Exposure to CI/CD security tooling is useful but not essential.
- Red team or purple team experience is useful but not essential.
- Lead complex security incidents end to end, including investigation, containment, forensics, and root cause analysis.
- Design, tune, and improve detections across SIEM and EDR platforms.
- Conduct proactive threat hunting across cloud infrastructure, applications, and CI/CD environments.
- Build and maintain automation and response playbooks using SOAR tooling.
- Work closely with DevOps, infrastructure, and engineering teams to improve security posture and response capability.
- Reduce alert fatigue, improve logging coverage, and strengthen SOC maturity.
- Align security operations and incident response practices with industry-recognised frameworks such as ISO 27001.
- Support audit readiness, documentation, and operational standards.
- Mentor and support junior analysts where required.
- AWS
- Azure
- CI/CD
- Cloud
- DevOps
- Support
- Kubernetes
- Security
More:
We are an international, industry leading software business operating in a modern cloud environment. This is a senior-level Security Operations opportunity with a hybrid working model, and team meetings in our Reading office once a month. We offer a permanent, full-time position with strong investment in tooling and automation, senior ownership and autonomy, and the opportunity to genuinely influence how security operations operate. You will join a passionate and creative team that values your contributions and supports your professional development.
last updated 32 week of 2026