Security Operations Centre Specialist

Driver and Vehicle Licensing Agency (DVLA)

Swansea

Hybrid

GBP 36,000 - 39,000

Full time

5 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Learning and development
Flexible working options
Inclusive culture
Pension contribution 28.9%
On-site nursery
25 days holiday + bank holidays
Employee Assistance Programme
Free parking

Job summary

Driver and Vehicle Licensing Agency in Swansea is seeking a Security Operations Centre Specialist to monitor security events, manage incident response and contribute to SOC playbooks as part of the Cyber Security Services team. Hybrid working is available, with a base salary reflecting a comprehensive benefits package.

The role requires hands-on SOC activity, SIEM monitoring with LogRhythm or Sentinel, and collaboration with vendors on SOC product support and contract management.

Qualifications

  • Experience in SOC operations and security monitoring.
  • Knowledge of security events and incident handling.
  • Experience with SIEM tools such as LogRhythm or Sentinel.

Responsibilities

  • Monitor operational IT security and generate management reports.
  • Manage incident and event processes per SLAs.
  • Contribute to SOC playbooks and policies.
  • Advise on risk assessments and business impact analysis.

Skills

Security operations
SOC monitoring
SIEM tools
LogRhythm
Sentinel
Incident management
Threat intelligence
Risk assessments

Tools

LogRhythm
Microsoft Sentinel

Job description

480378 Security Operations Centre Specialist
Driver and Vehicle Licensing Agency
Apply before 11:55 pm on Sunday 4th October 2026

Location: Swansea (This role is suitable for hybrid working)

The salary of £39,163 (basic salary £35,663) includes a non-pensionable Recruitment and Retention Allowance of £3,500

A Civil Service Pension with an employer contribution of 28.97%

This role undertakes technical protective monitoring, monitoring of security events and performance of security tools, as well as investigating and handling (or assisting in handling) security events.

This role is responsible for undertaking all aspects of SOC activity, including hands‑on monitoring of SIEM (security incident and event management) tools and other sources of alerts and of threat intelligence, maintaining the relationship with the vendors and suppliers of SOC products, including where relevant contract management responsibilities.

You will work as part of our Cyber Security Services team monitoring, identifying and responding to security relevant events.

We deliver significant and high‑profile on‑line services to the public, with cyber security being viewed as an essential activity in which the organisation continues to invest.

Top Responsibilities
  • Responsible for monitoring operational IT Security, producing regular management reports, undertaking trend analysis, tracking resource, evaluating the fitness for purpose and effectiveness of security processes.
  • Manages incident and event management processes complying with SLAs.
  • Interprets and contributes to the development of SOC playbooks, alarms and policies. Ongoing assurance of fitness for purpose of SOC playbooks, alarms and policies.
  • Provides expert advice and recommendations regarding risk assessments and business impact analysis for defined information systems and managing the maintenance processes including quality review.
  • Best in class learning and development tailored to your role
  • An environment with flexible working options where we encourage a great work-life balance
  • A culture encouraging inclusion and diversity with a range of staff communities to support all our colleagues
  • Generous employer contribution of 28.9%, depending on chosen pension scheme
  • Flexible working options where we encourage a great work-life balance.
  • Digital communities with clear career frameworks
  • On-site nursery, restaurants and coffee bar
  • 25 days holiday (plus bank holidays), increasing by 1 each year (up to 30) & 8 Bank Holidays plus an additional Privilege Day to mark the King’s birthday.
  • 24-hour Employee Assistance Programme providing free confidential help and advice for staff.
  • Free parking
About You

You will be a security professional with significant experience of cyber security. You will possess a broad knowledge of the issues and techniques associated with securing a variety of technologies.

To be successful in this role you will need to have demonstrable experience of the range of activities of a security operations centre (SOC) including:

  • Responding to alerts and handling incidents.
  • Monitoring network traffic and user behaviour for potential malicious activity using a variety of tools.
  • Investigating security events and anomalous patterns of activity.
  • Practical experience of using LogRhythm or Sentinel, although experience of other SIEM (security incident and event management) tools will be considered.

This vacancy closes at 23:55 on Sunday 4th October 2026

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Hybrid SOC Security Operations Specialist
Hybrid SOC Security Operations Specialist

Driver and Vehicle Licensing Agency (DVLA) • Swansea

Hybrid
GBP 36,000 - 39,000
Learning and development
Flexible working options
Inclusive culture
+5
Senior Security Operations Centre Analyst
Senior Security Operations Centre Analyst

Sopra Steria • Farnborough

On-site
GBP 52,000 - 64,000
25 days annual leave
Health cash plan
Life assurance
+2
Senior SOC Analyst
Senior SOC Analyst

Network IT • Milton Keynes

On-site
GBP 83,000 - 124,000
Security Operations Associate
Security Operations Associate

Skipton Building Society • Skipton

Hybrid
GBP 29,700 - 36,300
Annual discretionary bonus scheme
25 days annual leave + bank holidays
Employer pension contribution (up to 10%)
+2
Security Operations Specialist
Security Operations Specialist

Cyber UK • Glasgow

Hybrid
GBP 45,000 - 65,000
Competitive salary
Private medical insurance
Life assurance
+5
Security Operations Center Analyst
Security Operations Center Analyst

Searchability NS&D • Watford

On-site
GBP 60,000 - 80,000
Cyber SOC Lead Ref No: 3594
Cyber SOC Lead Ref No: 3594

Skills Development Scotland • Glasgow

On-site
GBP 90,000 - 120,000
Flexible working
Wellbeing program
SOC Team Leader
SOC Team Leader

Techtrace Partners • Letchworth

On-site
GBP 50,000 - 70,000
Senior SOC Analyst
Senior SOC Analyst

NexGen Associates • Stoke-on-Trent

On-site
GBP 46,800 - 57,200
Senior SOC Analyst
Senior SOC Analyst

Searchability • Farnborough

On-site
GBP 63,000 - 77,000
Shift allowance
Training & certifications support
Opportunity to work on high profile UK
+1