Cyber Security Analyst vacancy in Hybrid (Remote 40%/London 60%) (250lw)
Region: London and South East, Remote/Home working
Cyber Security Analyst
Location: London / Hybrid - approximately 60% office-based
Contract: Initial engagement through to 31 December 2026
IR35: Inside IR35
Working pattern: Includes participation in an out-of-hours on-call rota
Rate: Excellent - due to client confidentiality, can be discussed at the time of application
We're supporting a confidential public-sector cyber security programme and are looking for 2 x experienced Associate Security Analyst / Cyber Security Analyst to join a specialist Cyber Defence environment.
This is a particularly strong opportunity for ex-military personnel with a background in cyber defence, security operations, intelligence, communications or related technical roles, especially those accustomed to working in high-pressure environments where disciplined analysis, incident response and sound decision-making are critical.
The opportunity
You'll be part of a Cyber Defence function focused on detecting, investigating and responding to cyber threats affecting important digital and information assets.
The role will involve:
- Investigating and triaging security alerts and potential cyber incidents.
- Analysing activity across endpoints, networks, cloud environments and other technical sources.
- Supporting incident containment, eradication and recovery.
- Using SIEM and security monitoring technologies to investigate suspicious activity.
- Contributing to incident reviews, playbooks and continuous improvement.
- Working closely with wider cyber security and technical teams.
- Supporting and mentoring less experienced analysts.
The role also provides the opportunity to contribute to the development of security operations and incident response capability within a high-profile government environment.
What we’re looking for
We're particularly interested in professionals who can demonstrate:
- 2–3+ years’ experience in a Cyber Security Analyst / Security Operations environment.
- Practical experience investigating and responding to cyber security incidents.
- Hands-on experience with Splunk or a comparable SIEM platform.
- Experience across the Microsoft security ecosystem, particularly Defender, Sentinel and/or KQL.
- Strong analytical and problem-solving ability.
- The confidence to investigate ambiguous or fast-moving security events and make sound decisions.
- Clear written and verbal communication skills.
Ex-Military Backgrounds. We'd particularly welcome applications from former military personnel whose service has included cyber, signals, intelligence, information security, communications, technical security or operational analysis.
Transferable experience from military environments can be highly relevant where you have worked with structured incident response, threat assessment, operational decision-making, security monitoring, technical investigations or high-consequence environments.
Why consider it?
- High-profile public-sector cyber security environment.
- Meaningful involvement in operational cyber defence and incident response.
- Opportunity to apply military security and operational experience within a civilian cyber environment.
- Hybrid London working arrangement.
- Contract opportunity through to the end of December 2026 with prospect to extend/renew.
Security eligibility: Candidates must be able to meet the role's security requirements. Further details can be discussed during the recruitment process.
#J-18808-Ljbffr