×
Register Here to Apply for Jobs or Post Jobs. X

Security Analyst II - SOC

Job in Welwyn Garden City, Hertfordshire, AL8, England, UK
Listing for: Tesco Technology
Full Time position
Listed on 2025-11-25
Job specializations:
  • IT/Tech
    Cybersecurity, Security Manager, Network Security
Job Description & How to Apply Below

About the role

Our Security Operations Centre (SOC) is at the forefront of protecting Tesco’s technology estate. We lead real‑time threat monitoring, incident response, and proactive threat hunting across the Tesco Group. We also collaborate with Digital Forensics & Incident Response, Threat Intelligence, Automation, and Detection Engineering teams to ensure rapid detection, analysis, and mitigation of security threats. Beyond investigating security incidents, we use our expertise to work with other teams, driving continuous service improvements and enhancing our overall security capabilities.

We are seeking a highly skilled SOC Analyst to join the team. In this role, you will monitor, analyse, and respond to security events across multiple environments and locations, while proactively hunting for threats and driving continuous improvement of detection and response mechanisms.

Responsibilities
  • Follow our Business Code of Conduct and always act with integrity and due diligence.
  • Proactively monitor and analyse security events using SIEM/XDR platforms and other security tools to identify and respond to potential threats across various environments.
  • Evaluate and handle alerts, bring your technical expertise to analyse risk, gauge the severity of incidents, and promptly initiate necessary actions for resolution.
  • Respond to security incidents with a focus on thorough investigation, containment, remediation, and post‑incident analysis to prevent future occurrences.
  • Conduct proactive threat hunting across the environment to detect unknown threats and enhance early detection capabilities.
  • Maintain situational awareness of the current operational and threat landscape by staying informed of new attacker techniques, vulnerabilities, and trends.
  • Help build and implement security measures, standards, and playbooks to ensure compliance with industry standards.
  • Support the continuous improvement of SOC processes, detection, and automation use‑cases to enhance operational efficiency and effectiveness.
  • Collaborate with Incident Managers, the Cyber Threat Intelligence team, and other partners to ensure a unified response and situational awareness across the organisation.
Qualifications
  • 3+ years of experience in successful SOC analyst positions, preferably within an internal SOC environment.
  • Proficient in technical analysis, investigations, and handling security incidents in large‑scale, fast‑paced corporate environments, both on‑premises and in the cloud.
  • Proficient in security monitoring tools and technologies.
  • In‑depth knowledge of operating systems and networking concepts (e.g., TCP/IP, DNS).
  • Experience with enterprise security technologies including XDR, SOAR, and SIEM.
  • Familiarity with cloud platforms and their security features.
  • Understanding of incident response frameworks (e.g., NIST, MITRE ATT&CK).
  • Strong analytical and problem‑solving skills for identifying and responding to security incidents.
  • Ability to work effectively in a team and communicate clearly with both technical and non‑technical partners.
  • Experience with scripting languages such as Python or Power Shell for automating tasks.
  • Excellent written and verbal skills for documenting incidents and communicating with partners.
  • Critical thinking for making informed decisions during incidents.
  • Ability to handle high‑stress situations with composure, efficiency, and integrity.
  • Relevant certifications (e.g., CompTIA Security+/CSA+) are a plus. Certifications (or equivalents) are desirable but not a requirement.
  • Desirable – completion of relevant training courses such as SEC
    450 (Blue Team Fundamentals), SEC
    511 (Continuous Monitoring and Security Operations), SEC
    530 (Defensible Security Architecture and Engineering), and SEC
    555 (SIEM with Tactical Analytics).
  • Commitment to staying updated with the latest security trends and threats to ensure effective performance in the role.
Benefits
  • Annual bonus scheme of up to 20% of base salary
  • Holiday starting at 25 days plus a personal day (plus Bank holidays)
  • Private medical insurance
  • 26 weeks maternity and adoption leave (after 1 years’ service) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay; we also…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary