SOC Analyst Jobs

The eyes and ears of an organisation's cyber defences. SOC Analysts monitor, detect, and respond to security incidents in real-time.

Open roles
15
Salary range
£30k – £65k
Hiring companies
6

SOC Analysts are the front-line defenders in the world of cyber security. Working in Security Operations Centres (SOCs), they monitor and analyse security events to identify and respond to potential threats. These roles are critical for organisations of all sizes, from scaleups to large enterprises, ensuring that security incidents are detected and mitigated quickly. SOC Analysts often work in shifts, providing 24/7 coverage to maintain a constant watch over the organisation's digital assets.

What the role does

Inside the role of an SOC Analyst

A typical week for a SOC Analyst is a mix of monitoring, incident response, and reporting. They spend a significant amount of time analysing security alerts and collaborating with other teams.

  1. 01
    Monitor security dashboards and alerts for suspicious activity.
  2. 02
    Analyse and triage security incidents to determine their severity.
  3. 03
    Collaborate with incident response teams to mitigate threats.
  4. 04
    Document and report findings to management and other stakeholders.
  5. 05
    Stay updated on the latest security threats and best practices.
  6. 06
    Participate in regular team meetings and training sessions.
Salary on the board

£30k – £65k

Based on advertised midpoints across the 22 priced listings posted in the last 12 months. Base salary only.

By seniority
£k base
Entry
42
58
1 job
Junior
30
36
3 jobs
Mid
30
60
7 jobs
Senior
42
65
11 jobs
Skills & tools

What hiring managers ask for

% of 27 listings posted in the last 12 months that mention each skill, extracted from job descriptions.

SIEM
63%
Incident Response
56%
Microsoft Sentinel
44%
Threat Hunting
37%
Splunk
30%
MITRE ATT&CK
30%
Microsoft Defender XDR
26%
PowerShell
26%
TCP/IP
26%
KQL
26%
Vulnerability Management
26%
Microsoft Defender
22%
Career ladder

From Junior to Principal

A typical UK progression for soc analysts. Years are guidance — strong people move faster, and many senior folks sidestep into research, product or management.

  1. Level 1

    Junior SOC Analyst

    0–2 yrs

    Assists in monitoring security events and performs basic triage under supervision.

  2. Level 2

    SOC Analyst

    2–5 yrs

    Takes primary responsibility for incident detection and response, and contributes to the development of security policies.

  3. Level 3

    Senior SOC Analyst

    5–8 yrs

    Leads incident response efforts, mentors junior analysts, and advises on security strategy.

  4. Level 4

    Principal SOC Analyst

    8+ yrs

    Oversees the SOC's operations, drives strategic initiatives, and ensures compliance with regulatory requirements.

Pathway

How to become a SOC Analyst

There's no single route, but most people follow some version of these steps.

  1. 1

    Entry-Level Analyst

    Start with foundational roles, learning the basics of security monitoring and incident response.

  2. 2

    Specialisation

    Develop expertise in specific areas such as threat hunting, malware analysis, or forensic investigation.

  3. 3

    Advanced Incident Response

    Take on more complex incidents and lead response efforts, often working closely with other security teams.

  4. 4

    Leadership Role

    Move into a leadership position, managing a team of analysts and driving the SOC's strategic direction.

  5. 5

    Strategic Advisor

    Advise senior management on security policies and contribute to the organisation's overall security posture.

Live jobs

15 live roles

See all 15 roles
Experis logo

SOC Analyst

This SOC Analyst role involves real-time monitoring, triage, and incident response within a modern enterprise security environment. The candidate will investigate security events, fine-tune detection rules, and collaborate with internal teams to strengthen security operations. Focus is on proactive threat detection, incident documentation, and continuous improvement of SOC processes using tools like Microsoft Sentinel and Microsoft Defender.

Experis London, City And County Of the City Of London, United Kingdom £400 – £500 pd
Hybrid Contract Clearance Required

SOC Analyst

This role involves monitoring and responding to security threats within a Security Operations Centre, conducting incident triage, forensic analysis, and remediation. The analyst will work with SIEM tools, IDS/IPS, and vulnerability scanners, supporting network security and threat detection in a government environment. A strong background in cyber security operations and real-time event analysis is essential.

Summer Browning Associates East Kilbride, Lanarkshire, G74 1LJ, United Kingdom
Hybrid Contract Clearance Required

SOC Analyst

Monitor and investigate security alerts, triage incidents, and support incident response within a Security Operations Center. Work with SIEM and EDR tools to improve detection rules and document responses. Operate in a fast-paced environment with a focus on continuous improvement of SOC processes.

Fynity Lower Hartwell, Buckinghamshire, United Kingdom £40,000 – £45,000 pa
Hybrid Permanent

SOC Analyst - Lv2

As a Level 2 SOC Analyst, you will lead the technical response to security incidents, using Microsoft's security platform to validate threats, contain attackers, and coordinate remediation. You will also drive continuous improvement in detection, automation, and analyst capabilities, ensuring the SOC operates at a high standard.

Methods Central London, W3 0BJ, United Kingdom £100 pa
On-site Permanent Clearance Required

Senior SOC Analyst / Leeds

This role involves end-to-end investigation of security incidents, proactive threat hunting, and detection engineering within a modern Microsoft security environment. The analyst will monitor cloud, endpoint, identity, and network security events using tools like Microsoft Sentinel and Defender XDR. Responsibilities also include vulnerability management, alert tuning, and contributing to cyber defence strategies across a 24/7 shift pattern with remote night shifts.

Interface Recruitment Leeds, West Yorkshire, United Kingdom £58,600 pa
Hybrid Permanent

Senior SOC Analyst / Bristol

This role involves end-to-end investigation and management of security incidents within a modern Microsoft security environment. The analyst will conduct proactive threat hunting, perform detection engineering, and optimise security tooling using platforms like Microsoft Sentinel and Defender XDR. The position supports vulnerability management, compliance, and cyber defence across cloud, endpoint, identity, and network domains.

Interface Recruitment Bristol, Bristol (county), United Kingdom £58,600 pa
Hybrid Permanent

Senior SOC Analyst Level 2

This role involves monitoring, triaging, and investigating real-time security alerts within a high-stakes SOC environment focused on national defence and critical infrastructure. The analyst will use SIEM tools, endpoint and network data to detect and respond to advanced threats, aligning detection strategies with MITRE ATT&CK. The position operates on a 24/7 shift pattern and plays a key role in incident response and threat improvement within a highly secure setting.

Fynity Hemel Hempstead, Hertfordshire, HP1 1EW, United Kingdom £50,000 – £58,000 pa
On-site Permanent Clearance Required

Senior SOC Analyst

Defend Critical Infrastructure. Hunt Threats. Make a Real Impact.Cyber threats never stand still—and neither do we.We're looking for a Senior Security Operations Centre (SOC) Analyst to join our growing Cyber Security team and play a key role in protecting some...

Sopra Steria Gu140Aa, GU14 0AA, United Kingdom £42,000 – £48,000 pa
Hiring locations

Where this role is hiring

The locations with the most live listings for this role today.

FAQs

Common questions

  • A degree in a relevant field such as computer science or information security is beneficial. Certifications like CompTIA Security+, CEH, or CISSP can also enhance your credentials.

  • SOC Analysts often work in shifts to provide 24/7 coverage, which can include evenings, weekends, and holidays.

  • Gaining experience, specialising in areas like threat hunting or incident response, and obtaining relevant certifications can help you advance to senior and leadership roles.

  • Salaries can vary based on experience, location, and the size of the organisation. For more detailed salary information, refer to the salary section on this page.

Hiring soc analysts?

Post your role in 90 seconds and reach the specialist audience that already reads this page.