Cybersecurity SOC Analyst II

Chaos, Inc.

Greater London

On-site

GBP 70,000 - 110,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health benefits

Job summary

CHAOS Industries is seeking a SOC Analyst II to join our Security Operations team and defend against cyber threats across enterprise systems, endpoints, cloud, and collaboration platforms. You will work with senior engineers, IT, and infrastructure teams to investigate alerts, contain incidents, and protect sensitive data in a fast-paced startup environment.

The role emphasizes threat detection, log analysis, and proactive monitoring, with exposure to MSSPs and leading security tools.

Qualifications

  • 3–5+ years of experience in Cybersecurity, IT support, systems administration, or SOC operations.
  • Foundational understanding of cybersecurity concepts including networking, endpoint security, identity management, and incident response.
  • Familiarity with security monitoring and alert triage processes.
  • Experience working with MSSPs and external vendors.
  • Experience with enterprise security platforms such as Microsoft GCC High and CrowdStrike.

Responsibilities

  • Monitor and triage security alerts and events across enterprise systems, endpoints, cloud platforms, and networks.
  • Investigate suspicious activity, indicators of compromise, phishing attempts, malware detections, and unauthorized access attempts.
  • Escalate validated security incidents to senior analysts or engineering teams as appropriate.
  • Support containment, remediation, and recovery activities during cybersecurity incidents.
  • Assist with root cause analysis and incident documentation.
  • Review logs and security telemetry from SIEM, endpoint, network, and cloud security platforms.
  • Identify anomalous or malicious behavior patterns.
  • Participate in threat hunting and proactive security monitoring initiatives.

Skills

Security Monitoring
Incident Response
Threat Hunting
Vulnerability Management
MSSPs
Cloud Security
Team Collaboration

Tools

Microsoft GCC High
CrowdStrike
EDR/XDR
SIEMs
Azure Sentinel
PIM/PAM Tools

Job description

CHAOS Industries is redefining modern defense with a multi-product portfolio that gives the ultimate advantage—domain dominance. The company's products are powered by Coherent Distributed Networks (CDN™), empowering warfighters, commercial air operators, and border protection teams to act faster, adapt rapidly, and stay ahead of evolving threats.

CHAOS Industries was founded in 2022 and has raised a total of $1 billion in funding from leading investors, including 8VC, Accel, and Valor Equity Partners. The company is headquartered in Los Angeles, with offices in Washington, D.C., San Francisco, San Diego, Seattle, and London. For more information, please visit www.chaosinc.com .

Role Overview:

We are seeking a SOC AnalystII to join our growing Security Operations team and help defend the organization against evolving cyber threats. This role will support day-to-day monitoring, triage, investigation, and response activities across enterprise systems, endpoints, cloud infrastructure, and collaboration environments.

The ideal candidate isamid-career cybersecurity professional with a strong technical foundation, curiosity for threat analysis, and a desire to grow within a mission-focused defense technology environment. This individual will work closely with senior security engineers, IT, and infrastructure teams toidentifysuspicious activity, investigate alerts, and support the protection of sensitive company and government-related data.

This position is ideal for someone who thrives in a fast-paced startup environment and is passionate about operational cybersecurity.

Responsibilities:
  • Security Monitoring & Incident Response
    • Monitor and triage security alerts and events across enterprise systems, endpoints, cloud platforms, and networks
    • Investigate suspicious activity, indicators of compromise, phishing attempts, malware detections, and unauthorized access attempts
    • Escalate validated security incidents to senior analysts or engineering teams as appropriate
    • Support containment, remediation, and recovery activities during cybersecurity incidents
    • Assistwith root cause analysis and incident documentation
  • Security Operations & Tool Administration
    • Support administration and monitoring of cybersecurity platforms including:
    • Microsoft GCC High
    • Crowdstrikeand other EDR/XDRs
    • PIM/PAM Tools
    • Various SIEMs
    • Azure Sentinel
    • Monitor endpoint detection and response (EDR/XDR) alerts and telemetry
    • Assistwith tuning alerting rules and reducing false positives
    • Support vulnerability management and remediation tracking activities
    • Helpmaintainendpoint, identity, and cloud security configurations
  • Review logs and security telemetry from SIEM, endpoint, network, and cloud security platforms
  • Identifyanomalous or malicious behavior patterns
  • Assistwith development and improvement of detection rules, playbooks, and response procedures
  • Participate in threat hunting and proactive security monitoring initiatives
  • Compliance & Documentation
    • Support cybersecurity compliance initiatives includingUK CE/CE+,ISO27001andUK-specificrequirements
    • Maintainaccurateincident records, investigation notes, and operational documentation
    • Assistwith audit preparation, evidence collection, and remediation tracking
    • Follow established security procedures and escalation processes
  • Security Awareness & Collaboration
    • Collaborate with IT, Engineering, and business teams to improve organizational security posture
    • Assistwith phishing response and user security awareness efforts
    • Contribute to continuous improvement of SOC processes and operational maturity
  • 3–5+ years of experience inCybersecurity, IT support, systems administration, or SOC operations
  • Foundational understanding of cybersecurity concepts including networking, endpoint security, identity management, and incident response
  • Familiarity with security monitoring and alert triage processes
  • Experience working with Managed Security Service Providers (MSSPs)and external vendors
  • Experience or exposure to enterprise security platforms such as:
  • Microsoft GCC High
  • Crowdstrikeand other EDR/XDRs
  • App Allow/Block-listing tools
  • PIM/PAM Tools
  • Strong understanding of Windows, Linux, macOS, and cloud-based environments
  • Understanding of SIEM, EDR/XDR, phishing analysis, and log analysis
  • Strong analytical, troubleshooting, and problem-solving skills
  • Excellent written and verbal communication skills
  • Ability to prioritize and manage multiple tasks in a fast-paced environment
Preferred Requirements:
  • Experience supporting defense, aerospace, government contracting, or regulated technology environments
  • Familiarity with Microsoft GCC High environments
  • Familiarity with using AI and LLM tools within the SOC
  • Familiarity withmonitoringthe use ofAI and LLM tools
  • Exposure to compliance frameworks such asUKCE,/CE+, UK CSM,CIS Controls, or ISO 27001
  • Experience with scripting or automation using PowerShell, Python, or Bash
  • Familiarity with digital forensic process and chain of custody
  • Knowledge of MITRE ATT&CK framework and common threat actor techniques
  • Security certifications such as Security+,CySA+, SC-900, Network+, or equivalent
  • Experience working in a 24/7 or operational security environment preferred
  • Fast-paced, high-growth defense technology startup environment
  • Collaborative and highly cross-functional culture with direct access to leadership
  • Hybrid work environment with regular interaction across multipleoffices in theUS, UK and elsewhere.
  • May require occasional travel between office locations and customer or government sites
  • Work may involve access to sensitive information, secure facilities, and regulated systems
Why CHAOS?
  • Health Benefits: private medical, dental and vision benefits (for employees & dependents) will be 100% paid for by the company
  • Compensation Components: competitive base salaries, generous pre-IPO stock option grants, relocation assistance + (coming soon!) annual bonuses
  • Team Growth: 350 employees and counting across 5 global offices

The stated compensation range reflects only the targeted base compensation range and excludes additional earnings such as bonus, equity, and benefits. If your compensation requirements fall outside of the range, we still encourage you to apply. The salary range for this role is an estimate based on a range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations.

As set forth in CHAOS Industries's Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity SOC Analyst II
Cybersecurity SOC Analyst II

CHAOS Industries • Greater London

Hybrid
GBP 60,000 - 90,000
Private medical, dental, vision
5% pension match
Stock options
+2
IT Support Specialist
IT Support Specialist

CHAOS Industries • Greater London

On-site
GBP 48,000 - 75,000
Health benefits
5% pension match
Stock option grants
+2
Forward Deployed Engineer - Software
Forward Deployed Engineer - Software

Chaos, Inc. • Greater London

On-site
GBP 75,000 - 120,000
Health benefits
Pension match
Life insurance
+3
Forward Deployed Engineer - Software
Forward Deployed Engineer - Software

CHAOS Industries • Greater London

Hybrid
GBP 90,000 - 130,000
Health benefits
Pension match
Life insurance
+7
Forward Deployed Engineer - Software
Forward Deployed Engineer - Software

Chaosindustries • Greater London

On-site
GBP 70,000 - 100,000
Health benefits
5% pension match
Relocation assistance
+2
SOC Analyst II: Incident Response & Threat Defense
SOC Analyst II: Incident Response & Threat Defense

CHAOS Industries • Greater London

Hybrid
GBP 60,000 - 90,000
Private medical, dental, vision
5% pension match
Stock options
+2
SOC Analyst II — Hybrid Threat Response
SOC Analyst II — Hybrid Threat Response

Chaos, Inc. • Greater London

Hybrid
GBP 70,000 - 110,000
Health benefits
SOC Analyst
SOC Analyst

Inforcer • Richmond

Hybrid
GBP 42,000 - 64,000
Steep learning curve
Real impact
Transparent culture
+3
EMEA CSOC Lead
EMEA CSOC Lead

Northrop Grumman Corp. (AU) • Cheltenham

Hybrid
GBP 52,000 - 77,000
Flexible working (hybrid)
Private healthcare
Pension
+2
Level 1 SOC Analyst - MSP
Level 1 SOC Analyst - MSP

Hamilton Barnes Associates Limited • West Yorkshire

On-site
GBP 29,250 - 35,750
Career progression pathways
Hands-on experience with industry-leading security tools
Mentorship from experienced analysts
+2