Lead SOC Analyst in London

Lead SOC Analyst in London

London Full-Time No working from home possible
A

I’m working with one of the world's largest Technology Services firms as they build out a new high-performance Security Operations capability supporting some of the UK’s most advanced, secure and next-generation compute infrastructure.

We’re looking for an experienced Lead SOC Analyst / L3 SOC Analyst who enjoys being hands‑on with complex security incidents and wants to work at the sharp end of Incident Response, Threat Analysis and Security Operations.

This isn’t just alert monitoring.

You’ll act as an escalation point for complex and high‑severity incidents, investigating attack vectors and impact, correlating activity across multiple data sources and helping drive incidents through containment, eradication and recovery.

What you’ll be doing:

  • Leading investigations into medium and high‑severity security incidents
  • Performing root cause analysis and building detailed incident narratives
  • Working extensively with SIEM and EDR tooling
  • Supporting containment, eradication and recovery activities
  • Identifying gaps in detection coverage and existing playbooks
  • Tuning detection rules and thresholds alongside Security Content Engineers
  • Mentoring and providing technical guidance to L1 SOC Analysts
  • Taking part in SOC exercises and simulated Incident Response scenarios

What we’re looking for:

  • 3+ years’ experience across SOC, Incident Response or Threat Analysis
  • Strong hands‑on experience with SIEM / EDR platforms
  • Good understanding of malware behaviour and incident handling methodologies
  • Strong analytical and investigative skills
  • Experience handling escalated or high‑severity incidents
  • Certifications such as GCIH, GCIA, CompTIA CySA+, Microsoft SC-200 or Splunk are advantageous, but not essential.

Salary & benefits

  • Competitive salary + package + shift premium

Due to the sensitive nature of the programme, candidates will need to satisfy specific BPSS and security clearance requirements, including the required UK residency/address history and nationality criteria.

#CyberSecurity #SOC #SecurityOperations #IncidentResponse #ThreatDetection #SIEM #EDR #CyberJobs #LondonJobs

#J-18808-Ljbffr

Lead SOC Analyst in London employer: ANSON MCCADE

Anson McCade is an exceptional employer that prioritises employee well-being and professional growth, offering a flexible remote working environment in the UK. With a strong focus on security and digital transformation, employees benefit from comprehensive training programmes and clear pathways for career advancement, all while contributing to impactful projects alongside talented teams and senior stakeholders.

A

Contact Details:

ANSON MCCADE Recruitment Team