Apply to the vacancy...
Unfortunately, something went wrong while opening the page. Please try again.

Loading window...

Apply to the vacancy...
Unfortunately, something went wrong while opening the page. Please try again.

Loading window...

Sign up for Jobbird
An error occurred while opening the sign-up page. Please try again.

Loading window...

Forgot my password
Unfortunately, something went wrong while opening the page. Please try again.

Loading window...

Log out
Unfortunately, something went wrong while signing out. Please try again.

Loading window...

Job application sent
Something went wrong while logging in. Please try again.
Something went wrong while signing up. Please try again.

Loading window...

logo
  • 5 km
  • 10 km
  • 30 km
  • 50 km

  • All
  • 5 km
  • 10 km
  • 30 km
  • 50 km

  • All
Filters
Filters
Location and distance
  • 5 km
  • 10 km
  • 30 km
  • 50 km

  • All
Jobs posted from
Salary from (per month)
Closed vacancy

You are currently viewing a closed vacancy. You can no longer apply for this vacancy.

Filters
How our sorting works

The order in which job vacancies are displayed is determined by a composite score based on the following factors:

  • Keyword Relevance: How well your search terms match the vacancy details. We prioritize matches found in the job title, followed by job requirements, location names, and educational levels. Matches within general employer information or the organization's name carry a lower weight.
  • Commercial Prioritization (Premium Jobs): Vacancies paid for by employers ('Premium' or 'Sponsored') receive a ranking boost and will appear higher in the search results.
  • Recency (Date Relevance): Newer vacancies are prioritized. The relevance score of a vacancy is reduced by half once the posting is older than 30 days.
  • Proximity (Distance Relevance): Vacancies located closer to your search location are ranked higher. For vacancies located more than 30 km from the search center, the relevance score is halved.
The final ranking is established by multiplying all these individual factors to calculate the total relevance score.

Closed
T

SOC Analyst

Tank Recruitment London
32 - 40 hour
new


Show Recently closed jobs

    Closed vacancy

    You are currently viewing a closed vacancy. You can no longer apply for this vacancy.

    T

    SOC Analyst

    Closed
    Tank Recruitment London
    32 - 40 hour
    new
    Status Closed
    Applications are no longer accepted

    What we ask

    Education

    No minimum education required

    What we offer

    Hours
    32 to 40 hours per week
    Employment type
    contract

    Job description

    Incident Response Analyst

    We are seeking an experienced Incident Response Analyst to support the detection, triage, investigation, containment and resolution of cyber security incidents across a complex enterprise environment.

    Key Responsibilities

    Monitor and investigate alerts from SIEM, EDR/XDR, identity, email, cloud and network security technologies.

    Triage incidents, assess severity and business impact, and coordinate containment, eradication and recovery.

    Investigate phishing, malware, account compromise, data loss, unauthorised access and suspicious network activity.

    Collect, preserve and analyse endpoint, server, identity, network, email and cloud artefacts.

    Analyse logs, packet captures, forensic images and security telemetry to establish scope, root cause and attacker activity.

    Identify IOCs, attacker behaviours, TTPs and map findings to MITRE ATT&CK where appropriate.

    Develop and execute threat hunts and contribute to detection rule, monitoring and logging improvements.

    Maintain incident records, investigation timelines, evidence and post-incident reports.

    Develop and maintain incident response playbooks, procedures and communication processes.

    Conduct post-incident reviews, root-cause analysis and lessons-learned activities.

    Provide clear technical and management updates to senior stakeholders.

    Essential Skills & Experience

    Practical experience in cyber security incident response, security monitoring or a SOC environment.

    Hands-on experience with SIEM and EDR/XDR technologies.

    Experience investigating Windows and Linux systems, authentication activity, security logs and network traffic.

    Strong understanding of the incident response lifecycle.

    Knowledge of MITRE ATT&CK, Cyber Kill Chain and NIST.

    Good understanding of enterprise networking, IAM, cloud, email and endpoint security.

    Experience with digital forensics and evidence handling.

    Strong communication, investigation and analytical skills.

    Desirable

    Banking, financial services or other regulated-sector experience.

    Microsoft Sentinel, Defender XDR, Defender for Identity or Defender for Cloud.

    KQL, PowerShell, Python or similar scripting/automation.

    Threat hunting, malware analysis and detection engineering.

    Azure and Microsoft 365 investigation experience.

    EnCase, FTK, Velociraptor, Volatility or Wireshark.

    Certifications such as GCIH, GCIA, GCFA, GNFA, SC-200, CySA+ or CISSP.

    Qualifications

    Relevant cyber security experience, degree or equivalent practical experience. Knowledge of NIST, CIS Controls and recognised information security standards
    Applications are no longer accepted
    Applications are no longer accepted

    Vacancy actions

    Save as favorite
    Share vacancy
    Or apply later


    London England

    Jobs

    • Search for jobs
    • Jobs per location
    • Jobs per job profession
    • Jobs per employment
    • Jobs per educational attainment

    Jobbird

    • Switch to different region
    • Terms and Conditions
    © 2026 Jobbird