Security Analyst III - SOC

Tesco Technology

Welwyn Garden City

Hybrid

GBP 70,000 - 90,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Annual bonus up to 20%
Private medical insurance
Maternity/adoption leave
24/7 virtual GP service
EAP for you and family

Job summary

Tesco Technology is seeking a Security Analyst III to act as the technical authority within the SOC, leading investigations and proactive threat hunting to protect the organisation from evolving threats. This hands-on role combines advanced technical expertise with leadership, coaching analysts, and driving SOC maturity.

You will lead maturity objectives, optimise SOC tooling, and identify opportunities for automation, AI integration, and impactful service improvements.

Qualifications

  • Deep knowledge of cybersecurity frameworks (MITRE ATT&CK, Cyber Kill Chain, IR Lifecycle).
  • Proven threat hunting and advanced investigative analysis skills.
  • Proven leadership, coaching, and ability to develop less senior analysts.

Responsibilities

  • Deliver high-quality investigative analysis to ensure rapid and accurate incident resolution.
  • Act as the escalation point and technical authority for complex SOC investigations.
  • Lead proactive threat-hunting initiatives to identify and mitigate emerging threats before they impact the business.
  • Role-model analytical excellence and decision-making, setting the benchmark for SOC performance.
  • Coach and mentor analysts to build technical depth and confidence across the team.
  • Drive SOC maturity objectives, improving processes, tooling, and automation for greater efficiency.
  • Enhance SOC tool utilisation, including workflow optimisation.
  • Identify and implement automation, AI-driven enhancements, and playbook developments.
  • Support CSIRT activities during major incidents, ensuring coordinated and effective response.
  • Monitor MSSP performance, ensuring alert triage and investigations meet quality and timeliness standards.

Skills

Threat hunting
Incident response
SIEM/XDR
TTPs knowledge
Scripting (KQL/SPL)
Mentoring
SOC tooling

Education

Relevant degree

Tools

SIEM tooling

Job description

As a Security Analyst III, you will be the
technical authority within the SOC, leading high-quality investigations and
proactive threat hunting to protect the organisation from evolving threats. This
hands-on role combines advanced technical expertise with leadership, coaching
analysts, driving SOC maturity, and optimising tools and processes to set the
standard for excellence across the team.

You will act as a role model for SOC
Analysts, coaching and guiding them to elevate technical capability and
analytical rigour. Beyond day-to-day operations, you will lead maturity
objectives, optimise SOC tooling, and identify opportunities for automation, AI
integration, and impactful service improvements. You will also play a key role
within the CSIRT team, collaborating on major incidents.

About the role

As a Security Analyst III, you will be the
technical authority within the SOC, leading high-quality investigations and
proactive threat hunting to protect the organisation from evolving threats. This
hands-on role combines advanced technical expertise with leadership, coaching
analysts, driving SOC maturity, and optimising tools and processes to set the
standard for excellence across the team.

You will act as a role model for SOC
Analysts, coaching and guiding them to elevate technical capability and
analytical rigour. Beyond day-to-day operations, you will lead maturity
objectives, optimise SOC tooling, and identify opportunities for automation, AI
integration, and impactful service improvements. You will also play a key role
within the CSIRT team, collaborating on major incidents.

You will be responsible for
  • Deliver high-quality investigative analysis
    to ensure rapid and accurate incident resolution.
  • Act as the escalation point and technical
    authority for complex SOC investigations.
  • Lead proactive threat-hunting initiatives to
    identify and mitigate emerging threats before they impact the business.
  • Role-model analytical excellence and
    decision-making, setting the benchmark for SOC performance.
  • Coach and mentor analysts to build technical
    depth and confidence across the team.
  • Drive SOC maturity objectives, improving
    processes, tooling, and automation for greater efficiency.
  • Enhance SOC tool utilisation, including
    workflow optimisation.
  • Identify and implement automation, AI-driven
    enhancements, and playbook developments.
  • Support CSIRT activities during major
    incidents, ensuring coordinated and effective response.
  • Monitor MSSP performance, ensuring alert
    triage and investigations meet quality and timeliness standards.
You will need
  • Over 2 years’ experience working in an
    internal SOC or 3 years at an MSSP in a senior role.
  • Deep knowledge of cybersecurity frameworks:
    MITRE ATT&CK, Cyber Kill Chain, Incident Response Lifecycle, Pyramid of
    Pain.
  • Expertise in threat hunting and advanced investigative
    analysis.
  • Deep understanding of attacker tactics,
    techniques, and procedures (TTPs) and threat actor behaviours.
  • Proficiency in SIEM/XDR platforms and tuning
    detection logic, use cases, and alert optimisation.
  • Advanced querying and scripting skills (e.g.,
    KQL, SPL) for data analysis and threat detection.
  • Ability to recommend tooling enhancements and
    process improvements to strengthen SOC capability.
  • Practical knowledge of networks, operating
    systems, and scripting for investigative purposes.
  • Experience in leading technical initiatives
    and driving service maturity improvements.
  • Demonstrated ability to coach and develop
    team members, fostering technical excellence.
Desirable
  • GIAC certifications
  • Other relevant certifications such as CISSP
    or CISM will be considered.
  • A relevant degree, with professional
    experience.
Whats in it for you?

We’re all about the little helps. That’s why we make sure our Tesco colleague benefits package takes care of you – both in and out of work.

  • Annual
    bonus scheme of up to 20% of base salary
  • Holiday
    starting at 25 days plus a personal day (plus Bank holidays)
  • Private
    medical insurance
  • 26
    weeks maternity and adoption leave (12 months service required at
    thequalifyingdate) at full pay, followed by 13 weeks of
    Statutory Maternity Pay or Statutory Adoption Pay, we also offer 6 weeks
    fully paid paternity leave
  • Free
    24/7 virtual GP service, Employee Assistance Programme (EAP) for you and
    your family, free access to a range of experts to support your mental
    wellbeing

The above information is a shortened summary, refer
to our policies for full detail

About Us

Our vision at Tesco is to become every customer's favourite way to shop, whether they are at home or out on the move. Our core purpose is ‘Serving our customers, communities and planet a little better every day’. Serving means more than a transactional relationship with our customers. It means acting as a responsible and sustainable business for all stakeholders, for the communities we are part of and for the planet.

We are proud to have an inclusive culture at Tesco where everyone truly feels able to be themselves. At Tesco, we not only celebrate diversity, but recognise the value and opportunity it brings. We're committed to creating a workplace where differences are valued, and make sure that all colleagues are given the same opportunities. We’re proud to have been accredited Disability Confident Leader and we’re committed to providing a fully inclusive and accessible recruitment process. For further information on the accessibility support we can offer, please click here.

We’re a big business and we can offer a range of diverse full-time & part-time working patterns across our many business areas, which means that we can find something that works for you. We work in a more blended pattern - combining office and remote working. Our offices will continue to be where we connect, collaborate and innovate. If you are applying internally, please speak to the Hiring Manager about how this can work for you - Everyone is welcome at Tesco.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst III - SOC
Security Analyst III - SOC

Tesco UK • Digswell

Hybrid
GBP 70,000 - 110,000
Senior Incident Responder (DFIR)
Senior Incident Responder (DFIR)

Tesco Technology • Welwyn Garden City

Hybrid
GBP 70,000 - 110,000
Annual bonus up to 20% of base salary
Holiday 25 days + personal day
Private medical insurance
+2
Security Engineer III
Security Engineer III

Tesco Technology • Welwyn Garden City

Hybrid
GBP 70,000 - 110,000
Annual bonus up to 20%
Private medical insurance
Paternity leave (6 weeks paid)
+1
Security Analyst III - Identity & Access Management (Authorisation & Access Automation)
Security Analyst III - Identity & Access Management (Authorisation & Access Automation)

Tesco UK • Digswell

Hybrid
GBP 65,000 - 90,000
Security Analyst III - Identity & Access Management (Authorisation & Access Automation)
Security Analyst III - Identity & Access Management (Authorisation & Access Automation)

Tesco • Welwyn Garden City

Hybrid
GBP 60,000 - 90,000
Annual bonus up to 20%
Holiday starting at 25 days + personal
Private medical insurance
+2
Penetration Tester
Penetration Tester

Tesco • Welwyn Garden City

Hybrid
GBP 50,000 - 70,000
Annual bonus scheme up to 20%
25 days holiday plus personal day
Private medical insurance
+2
Senior Security Engineer - Detection Engineering
Senior Security Engineer - Detection Engineering

Tesco • Welwyn Garden City

Hybrid
GBP 90,000 - 120,000
Annual bonus up to 20%
Private medical insurance
25 days holiday + personal day
+2
Security Analyst III - Identity & Access Management (Authorisation & Access Automation)
Security Analyst III - Identity & Access Management (Authorisation & Access Automation)

Tesco Technology • Welwyn Garden City

Hybrid
GBP 70,000 - 90,000
Annual bonus up to 20%
Holiday 25+ days + personal day + bank
Private medical insurance
+2
Cyber Incident Manager (CIM)
Cyber Incident Manager (CIM)

Tesco Technology • Welwyn Garden City

Hybrid
GBP 90,000 - 130,000
Annual bonus up to 20%
25 days holiday + personal day
Private medical insurance
+2
Senior Security Engineer - Detection Engineering
Senior Security Engineer - Detection Engineering

Tesco Technology • Welwyn Garden City

Hybrid
GBP 90,000 - 130,000