Cyber Defence Analyst: Incident Response, SIEM & SOAR Expert

Plannedlink

West Midlands

On-site

GBP 55,000 - 76,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Plannedlink in the West Midlands region is seeking a Cyber Defence Analyst to join a growing security team. You will design, deliver and maintain operational cybersecurity capabilities, performing proactive, risk-based monitoring of priority networks to identify threats and respond to incidents.

The role involves mentoring Level 2 analysts, developing dashboards, and coordinating with Level 3 engineers to keep security alerts current and actionable.

Qualifications

  • Previous experience with Enterprise ICS/network architectures.
  • Experience with SIEM solutions and tuning.
  • Mentoring or coaching junior analysts.
  • Familiarity with MITRE ATT&CK and Cyber Kill Chain.
  • Experience maintaining directory services and virtualization tools.
  • Knowledge of security frameworks (ISO, NIST 800-53).
  • Experience writing Defence/Government documentation.
  • Broad cyber course background (SANS SEC401/501 or equivalent).
  • Experience managing cyber incidents and investigations.

Responsibilities

  • Develop and integrate security event monitoring and incident management services.
  • Respond to security incidents as part of an incident response team.
  • Implement metrics and dashboards for visibility of the Enterprise infra.
  • Lead a composite cyber response team during incidents and investigations.
  • Utilise the SOAR platform for playbook automation and case management.
  • Document standard operating procedures and repeatable processes.
  • Develop investigative methods using the Authority's tooling to enhance detections.
  • Maintain baseline security aligned with threat intelligence and trends.
  • Participate in root cause analyses with analysts and engineers.
  • Provide SME guidance on information security standards and practices.

Skills

Cyber incident response
Security monitoring
Threat detection
Mentoring junior analysts
Dashboards & metrics
SOAR playbooks
Documentation
Root cause analysis
SME on security standards
Strategic/tactical security guidance
Stakeholder liaison
Incident response leadership
CRM process involvement
Team leadership
Incident investigations
Security governance

Tools

SOAR platform
Virtualisation software
Microsoft directory services

Job description

Plannedlink in the West Midlands region is seeking a Cyber Defence Analyst to join a growing security team. You will design, deliver and maintain operational cybersecurity capabilities, performing proactive, risk-based monitoring of priority networks to identify threats and respond to incidents.

The role involves mentoring Level 2 analysts, developing dashboards, and coordinating with Level 3 engineers to keep security alerts current and actionable.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Defence Engineer: SIEM & SOC Data Expert
Cyber Defence Engineer: SIEM & SOC Data Expert

Plannedlink • West Midlands

On-site
GBP 60,000 - 90,000
Cyber Defence Analyst
Cyber Defence Analyst

Plannedlink • West Midlands

On-site
GBP 55,000 - 76,000
Senior Security Analyst
Senior Security Analyst

La Fosse • East Midlands

Hybrid
GBP 36,000 - 60,000
Incident Response Consultant - Systems Integrator
Incident Response Consultant - Systems Integrator

Hamilton Barnes Associates Limited • England

Hybrid
GBP 40,000 - 50,000
Mentorship
Exposure to advanced tools
Flexible working arrangement
Cyber Security Analyst
Cyber Security Analyst

Russell Tobin • Corsham

On-site
GBP 45,000 - 55,000
Level 1 SOC Analyst - MSP
Level 1 SOC Analyst - MSP

Hamilton Barnes Associates Limited • West Yorkshire

On-site
GBP 29,250 - 35,750
Career progression pathways
Hands-on experience with industry-leading security tools
Mentorship from experienced analysts
+2
Cyber Security Analyst: Threat Detection & Incident Response
Cyber Security Analyst: Threat Detection & Incident Response

Radiuslimited • Crewe

On-site
GBP 45,000 - 65,000
Lead Incident Response Analyst
Lead Incident Response Analyst

IntaPeople: STEM Recruitment • Cardiff

Hybrid
GBP 55,000
Bespoke learning plans
Bonus plan
Cyber Security Analyst – 24/7 SOC & Incident Response
Cyber Security Analyst – 24/7 SOC & Incident Response

Northern Powergrid • Leeds

On-site
GBP 45,000 - 55,000
25 days holiday
10% Performance Bonus
L1 SOC Analyst - Telecommuncations
L1 SOC Analyst - Telecommuncations

Hamilton Barnes Associates Limited • West Yorkshire

On-site
GBP 29,000 - 36,000
Career progression into threat hunting
Mentorship from experienced analysts
Support for certifications and ongoing
+2