T2 SOC Analyst

Oscar Technology
Stoke-on-Trent, United Kingdom
Today
£50,000 pa

Salary

£50,000 pa

Posted
25 Aug 2026 (Today)

T2 SOC Analyst | Stoke-on-Trent | £50,000 + Shift Allowance

I'm currently working with a high-profile UK security organisation that is looking to add an experienced Tier 2 SOC Analyst to its growing Security Operations function.

This is a great opportunity for someone who has moved beyond purely monitoring and alert triage and wants to take genuine ownership of security incidents, investigations, threat analysis and detection improvement.

The role supports a 24/7 SOC environment protecting highly sensitive UK environments, so you'll be working on meaningful security challenges rather than simply dealing with a high volume of alerts.

£50,000 base salary + shift allowance

Stoke-on-Trent

3 days on / 3 days off

DV cleared environment

The Opportunity:

You'll initially be office-based in Stoke-on-Trent, getting fully embedded within the team and environment.

Once established, you'll move onto a 3-on / 3-off shift pattern, working shifts. A shift allowance will be paid on top of the £50,000 base salary.

As a Tier 2 analyst, you'll sit above the first line of defence and become a key escalation point for more complex security events.

You'll be involved across areas including:

  • Investigating and responding to medium and high-severity security incidents
  • Performing detailed analysis of alerts, logs and suspicious activity
  • Working with SIEM, EDR and wider security tooling
  • Escalating and coordinating containment and remediation activity
  • Acting as a technical escalation point for Tier 1 analysts
  • Identifying indicators of compromise and supporting threat intelligence activity
  • Improving detection rules, correlation logic and SOC playbooks
  • Investigating recurring alerts and reducing false positives
  • Supporting vulnerability management and remediation activity
  • Contributing to post-incident reviews and lessons learned
  • Producing incident, vulnerability and SOC reporting
  • Working closely with wider infrastructure, network, architecture and development teams
  • Sharing knowledge and helping develop more junior members of the SOC

What are we looking for?

You'll ideally have 1-5 years' experience within a SOC or security operations environment, with solid hands-on exposure to areas such as:

  • Security monitoring and alert triage
  • Incident response
  • SIEM platforms
  • EDR technologies
  • Threat analysis / threat intelligence
  • Vulnerability management
  • Detection engineering or SIEM tuning

I'm particularly interested in speaking with analysts who can demonstrate that they've dealt with real security incidents and are comfortable taking ownership rather than simply escalating everything to someone else.

Relevant certifications such as BTL1/BTL2, Security+, CEH, CISSP, CCSP or vendor/SIEM-specific qualifications are beneficial, but practical capability is more important.

Security Clearance:

Due to the nature of the environment, candidates will need to beeligible for DV security clearance.

Drop me a message directly, or apply now so we can discuss in more detail.

Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy.

To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.