Overview
In this role you will monitor, detect, investigate, and respond to cybersecurity threats within a high‑velocity SOC. You will lead complex incidents, support escalation, and help mature the SOC across a cross‑functional tech environment. You will work with AI-enabled security tools, applying sound judgement to security decisions. This is a hands‑on, cross‑team role that contributes to resilient business operations and security maturity.
Pay / Benefits
- 4x Life Insurance
- Pension Scheme – 5% employer contribution
- Private Healthcare
- 25 days annual leave
- Access to LinkedIn Learning
- Gratitudes rewards and discounts
Responsibilities
- Serve as a subject matter expert for a 24/7 SOC team
- Monitor, investigate, and respond to cybersecurity incidents including on-call rotations
- Act as escalation point and lead high-severity or complex incidents
- Analyse, triage, and resolve complex investigations using multiple data sources
- Correlate security alerts, execute advanced queries, and apply anomaly-detection techniques
- Leverage AI-enabled tools to automate tasks and improve threat detection and response
- Identify opportunities to automate SOC processes and improve efficiency
- Assess programme strengths and recommend AI solutions to enhance capabilities
- Stay current with threats, AI developments, and adversary AI use
- Refine security playbooks, policies, and guidelines with best practices and AI evolution
- Adjust tools and processes to reduce false positives and improve detection quality
- Examine and correlate log data across endpoints, databases, apps, identity, networks, mobile, and cloud
- Work with SOAR, SIEM, MCP solutions, threat intel, endpoints, apps, network devices, and cloud environments
- Mentor junior analysts and develop the wider SOC team’s capabilities
- Collaborate cross-functionally with technical and business teams to secure operations
Key requirements
- Minimum 5+ years in cybersecurity, particularly SOC, IR, and IT environments
- Strong understanding of emerging threats, including adversary AI usage
- Experience with SOAR, SIEM, threat intelligence platforms, identity systems, sandboxes, vulnerability management, and EDR/XDR tools
- Broad understanding of endpoints, apps, network devices, databases, cloud environments, and monitoring technologies
- Solid incident response principles and ability to analyze large volumes of security events and logs
- Proven ability to perform advanced security investigations and make decisions during high-severity incidents
- Strong critical-thinking, analytical, and problem-solving skills
- Ability to use AI-enabled tools with appropriate human judgment
- Excellent communication skills across organizational levels
- Integrity, curiosity, adaptability, attention to detail, and commitment to high-quality work
- Experience in a 24/7 operational environment and willingness to on-call
- Certifications preferred: GCIH, GCED, Microsoft Security Operations Analyst Associate, CISSP
- critical-thinking
- analytical
- problem-solving
- SOAR
- SIEM
- threat intelligence platforms
Senior SOC Analyst in Swindon employer: Corpay
Corpay is an exceptional employer that fosters a dynamic work culture centred on innovation and collaboration, making it an ideal place for a Global Travel Operations Specialist. With a strong commitment to employee growth, we offer comprehensive training and development opportunities, ensuring that our team members thrive in their careers. Located in the heart of a vibrant city, our office provides a stimulating environment where you can engage with diverse colleagues and contribute to shaping the future of commercial payments.