SOC Analyst - SC Cleared
- charing cross, london, SW1A, United Kingdom
- Contract·On-site
Job Description
Is your CV ready If so, and you are confident this is the role for you, make sure to apply asap.
SOC Analyst x2
Location: UK (Hybrid, 3 days per week in London)
Security Clearance: Active SC Clearance Required
Contract Length: 6-18 Months
Rate: £545-£590 per day (Inside IR35)
Positions Available: 2
About the Role
We are seeking two experienced SOC Analysts to join a specialist consultancy delivering cyber security services across a portfolio of government projects and digital transformation programmes.
This is an excellent opportunity to work within complex and dynamic security environments, helping clients protect critical services, systems, and data against evolving cyber threats. The successful candidates will play a key role in security monitoring, incident response, detection engineering, and threat analysis, working alongside Security Operations, Threat Intelligence, and Incident Response teams.
You will act as a cyber security subject matter expert, helping to strengthen defensive capabilities while contributing to the continuous improvement of security operations, threat detection, and incident response functions.
Key Responsibilities
Security Monitoring & Incident Response
- Monitor and triage security alerts generated through SIEM and security tooling.
- Investigate and respond to cyber security incidents across cloud, endpoint, and network environments.
- Analyse security events to determine impact, severity, and appropriate response actions.
- Support incident containment, remediation, and post-incident review activities.
- Participate in incident response exercises and security simulations.
Detection Engineering
- Develop, maintain, and optimise security detection content within Splunk SIEM.
- Create and refine correlation searches, use cases, alerts, and detection rules.
- Identify gaps in detection coverage and recommend improvements.
- Work closely with security teams to improve visibility and enhance monitoring capabilities.
- Support the onboarding and optimisation of new log sources.
Security Operations Improvement
- Review and enhance security operations processes, standards, and procedures. xwwtmva
- Identify trends in incidents, attack patterns, and security monitoring activity.


