×
Register Here to Apply for Jobs or Post Jobs. X

Tier 2 SOC Analyst

Job in London, Greater London, W1B, England, UK
Listing for: Oscar
Full Time position
Listed on 2026-09-04
Job specializations:
  • IT/Tech
    Cybersecurity, Security Management & Operations
Job Description & How to Apply Below
Tier 2 SOC Analyst | 40, DOE | London (Hybrid)
Are you passionate about cyber security and enjoy investigating complex security incidents?

We're partnering with a growing cyber security organisation that is looking to strengthen its Security Operations capability with the addition of a Tier 2 SOC Analyst.

This is an opportunity to join a collaborative cyber security team responsible for monitoring, investigating and responding to security threats across complex client environments.

You'll play a key role in identifying potential security incidents, conducting detailed investigations and supporting the response to emerging threats. The role offers exposure to a wide range of technologies, security tools and client environments, with the opportunity to develop your technical expertise within a fast-paced SOC environment.

What you'll be doing:

As a Tier 2 SOC Analyst, you'll take ownership of more complex security alerts and incidents, including:

Investigating and analysing escalated security alerts from Tier 1 analysts

Conducting detailed incident investigations to determine scope, impact and root cause

Monitoring and analysing activity across SIEM, EDR and other security platforms

Identifying indicators of compromise, suspicious activity and emerging threats

Supporting incident response and containment activities

Performing threat hunting activities to proactively identify potential security risks

Escalating significant or complex incidents where appropriate

Working closely with Tier 1 and Tier 3 analysts, incident responders and other technical teams

Tuning and improving detection rules and use cases to reduce false positives and improve threat detection

Analysing logs and security events from endpoints, networks, cloud environments and other infrastructure

Producing clear investigation reports and documenting incidents, findings and recommendations

Maintaining awareness of the latest cyber threats, vulnerabilities and attacker techniques

Contributing to the ongoing development and improvement of SOC processes and capabilities

What we're looking for:

We're interested in speaking with candidates who can demonstrate:

Previous experience working within a Security Operations Centre (SOC), cyber security operations or incident response environment

Experience investigating and responding to complex security alerts and incidents

Strong knowledge of SIEM platforms and security event analysis

Experience with endpoint detection and response (EDR) technologiesA good understanding of incident response processes and methodologies

Knowledge of common attack techniques, tactics and procedures, including the MITRE ATT&CK framework

Experience analysing logs across endpoint, network, cloud or identity environments

An understanding of threat intelligence and indicators of compromise

Strong analytical and problem-solving skills

Excellent written and verbal communication skills

The ability to clearly communicate technical findings to both technical and non-technical stakeholders

Experience with technologies such as Microsoft Sentinel, Splunk, Microsoft Defender, Crowd Strike or similar security platforms would be highly beneficial.

Why join?

You'll be joining a growing organisation that places a strong emphasis on collaboration, technical development and delivering effective cyber security outcomes.

Working as part of an experienced Security Operations team, you'll have the opportunity to investigate real-world security threats, work with a broad range of technologies and develop your career across incident response, threat hunting and advanced security operations.

The role is based in London on a hybrid working basis, with some flexibility depending on operational and client requirements.

If you're looking for an opportunity to take the next step in your SOC career and work on challenging cyber security incidents, we'd be pleased to hear from you.

Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy.

To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary