Security Monitoring & SIEM Analyst

Reading, United Kingdom
2 days ago
£45,000 – £60,000 pa

Salary

£45,000 – £60,000 pa

Job Type
Permanent
Work Pattern
Full-time
Work Location
On-site
Seniority
Mid
Education
Degree
Security Clearance
Required
Posted
2 Jun 2026 (2 days ago)

Benefits

Excellent benefits Training

Security Monitoring & SIEM Analyst
Location: Berkshire (Onsite)
Salary: £45,000 - £60,000 + excellent benefits & training
Security Clearance: Ideally SC Cleared or eligible for SC (UK Nationals only)
________________________________________
Company Overview
An exciting opportunity to join a global technology organisation with a well-established cyber security capability supporting mission-critical environments.
Cyber security is central to the organisation's strategy, with ongoing investment in tooling, threat intelligence, and specialist talent. The security function operates at a mature level, combining Security Operations, threat detection, incident response, and continuous improvement practices to defend against evolving threats.
________________________________________
Role Overview
As a Security Monitoring & SIEM Analyst, you will play a key role within the Security Operations function, focused on real-time detection, investigation, and response to cyber threats using SIEM and security tooling.
This role combines hands-on SIEM analysis, alert triage, investigation, and detection improvement, alongside exposure to incident response and proactive threat detection activities.
You will work across multiple data sources to identify suspicious behaviour, analyse events, and support the organisation's cyber defence posture through effective monitoring and rapid response.
________________________________________
Key Responsibilities
* Monitor, analyse, and investigate security alerts across SIEM and security tooling
* Conduct detailed investigations across log, endpoint, identity, and network telemetry
* Develop and optimise detection logic and SIEM queries to improve alert fidelity
* Analyse security events and correlate activity across multiple data sources
* Support incident response activities, including containment, escalation, and remediation
* Perform IOC analysis, enrichment, and validation using threat intelligence sources
* Identify gaps in detection capabilities and contribute to continuous improvement
* Work closely with infrastructure, SOC, and incident response teams to enhance response capability
* Produce clear and structured investigation reports and escalation summaries
________________________________________
Skills & Experience Required
Core SIEM & Detection Skills
* Strong knowledge of SIEM platforms (e.g. Microsoft Sentinel, Splunk, Elastic)
* Experience writing and tuning queries using:
o Kusto Query Language (KQL)
o ES|QL / Kibana Query Language
o Splunk SPL
* Understanding of event correlation, alerting, and detection use-case development
________________________________________
Technical Foundations
* Strong knowledge of:
o Linux and Windows operating systems
o Core networking concepts (TCP/IP, DNS, HTTP/S, firewalls, VPNs)
* Experience analysing logs across:
o Endpoint, identity, network, and cloud environments
________________________________________
Threat Detection & Security Tooling
* Strong knowledge of:
o EDR/XDR concepts and workflows
o IDS/IPS technologies and signature-based detection
* Experience working with tools such as:
o Microsoft Defender, CrowdStrike, SentinelOne, or similar
________________________________________
Threat & Adversary Knowledge
* Understanding of attacker Tactics, Techniques and Procedures (TTPs) and how they manifest in logs and telemetry
* Familiarity with MITRE ATT&CK framework
* Evidence of staying up to date with:
o Emerging threats
o Adversary tradecraft
o Defensive techniques
________________________________________
Incident Handling & Investigation
* Experience handling security incidents through:
o Detection and triage
o Investigation and analysis
o Handover to Incident Response teams
* Strong understanding of:
o Incident management processes
o Host-based forensic concepts
* Ability to apply post-incident review (PIR) learnings to improve detection and response
________________________________________
Desirable Experience
* Experience within a SOC or cyber defence environment
* Exposure to threat hunting or detection engineering
* Experience in high-security or regulated environments
________________________________________
Certifications (Beneficial)
* Microsoft SC-200 (Security Operations Analyst)
* GIAC / SANS certifications (GCIH, GCIA, GCED, etc.)
* CREST (CPIA, CRIA, CCTIA, CCBTP)
* Other recognised cyber security certifications
________________________________________
Why Join?
* Work within a mature Security Operations environment
* Exposure to advanced SIEM tooling and large-scale environments
* Strong investment in training, certifications, and progression
* Opportunity to develop into:
o Senior SIEM Analyst
o Detection Engineer
o Threat Hunter
________________________________________

About Adecco
Adecco is acting as an Employment Agency. We are proud to be an equal opportunities employer. We are on the client's supplier list for this role.
________________________________________
Keywords
SIEM Analyst, Security Monitoring Analyst, SOC Analyst, Cyber Security Analyst, Microsoft Sentinel, Splunk, Elastic SIEM, KQL, SPL, ES|QL, Threat Detection, Incident Response, EDR, IDS/IPS, MITRE ATT&CK, Cyber Defence

Related Jobs

View all jobs

Lead Cyber Security Analyst

Harvey Nash Knutsford, United Kingdom
£67,000 – £96,000 pa

Senior Security Operations Centre Analyst

Searchability NS&D Farnborough, GU14 7JT, United Kingdom
£50,000 – £70,000 pa On-site Clearance Required

Cyber Security Analyst (SOC) – Mostly

Interface Recruitment Leeds, West Yorkshire, United Kingdom
£55,000 – £60,000 pa Remote

Senior SOC Analyst

CBSbutler Holdings Limited trading as CBSbutler Corsham, Wiltshire, SN13 0HB, United Kingdom
£575 – £650 pd Hybrid Clearance Required

Associate SOC Analyst

Claranet Leeds, West Yorkshire, United Kingdom
On-site

Associate SOC Analyst

Claranet Ls11Az, LS1 1AZ, United Kingdom
On-site

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Where to Advertise Cyber Security Jobs in the UK (2026 Guide)

Where to advertise cyber security jobs UK in 2026: the specialist boards, communities and channels that reach offensive, defensive and GRC security talent. The candidate pool is small, heavily vetted and in high demand across government, financial services, critical national infrastructure and the private sector simultaneously. Many of the strongest candidates hold active security clearances, are not actively job-searching through general platforms, and move primarily through specialist networks and trusted referrals. General job boards reach a broad audience but lack the specificity that security professionals expect. Specialist platforms, government-affiliated channels and cleared candidate networks each serve a different part of the market. This guide, published by CybersecurityJobs.tech, covers where to advertise cyber security roles in the UK in 2026, how the main platforms compare, what employers should expect to pay, and what the data says about hiring across different role types.

Cyber Security Jobs UK 2026: What to Expect Over the Next 3 Years

Cyber Security Jobs UK 2026: roles, salaries and the threat intelligence, cloud security and zero-trust hiring trends shaping UK cyber careers. Cyber security is one of the few sectors where demand for talent has never once dipped. Every major technological shift of the past decade — cloud migration, remote working, AI adoption, the proliferation of connected devices — has expanded the attack surface that security professionals are expected to defend. And every expansion of that attack surface has generated more jobs. But the cyber security jobs market of 2026 is not simply a larger version of what it was three years ago. It is a structurally different market. The threats have evolved, the technologies used to combat them have changed, the regulatory environment has tightened considerably, and the roles being created reflect all of that. A job seeker who understands only the cyber security landscape of 2023 is already working with an outdated map. The candidates who will thrive over the next three years are those who understand where the sector is heading — which specialisms are attracting the most investment, which technologies are reshaping defensive and offensive security practice, and how the definition of a cyber security professional is broadening well beyond the traditional image of a network defender in a SOC. This article breaks down what the UK cyber security jobs market is likely to look like through to 2028 — covering the titles emerging right now, the technologies driving employer demand, the skills that will matter most, and how to position your career ahead of the curve.