SOC Analyst

Cyro Cyber Ltd

Farnborough

Hybrid

GBP 35,000 - 50,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

25 days holiday
Company pension
Family friendly policies
Car leasing scheme
Occupational health support

Job summary

Cyro Cyber Ltd is seeking a proactive Security Analyst to monitor networks, endpoints and email security systems within the Cyro CSOC. You will help extend capabilities under the CSOC Senior Analyst, contribute to policy and standards, and support incident response efforts across the Cyro digital estate.

The role requires experience in security operations, familiarity with EDR, SIEM and network security, and the ability to work in a hybrid setup in Farnborough/Home.

Qualifications

  • Minimum experience 1–2 years in a SOC/CSOC environment.
  • Basic understanding of IT security and networking concepts.
  • Experience with security tooling and incident handling.
  • Ability to document activity and follow procedures.

Responsibilities

  • Monitor networks, hosts and endpoints for malicious activity.
  • Perform initial triage, investigation and incident response.
  • Contribute to CSOC policy, standards and procedures.
  • Escalate incidents as appropriate and document actions in ticketing systems.
  • Communicate incident issues clearly following Cyro processes.

Skills

Security operations
Incident response
Threat detection
Policy development
Stakeholder communication

Education

CompTIA Network+ or Security+ or CASP or CYSA
Microsoft Qualifications (AZ-900, SC-900, SC-200)
Cisco CC CyberOps Associate or Cyber Technologist L4

Tools

SIEM
EDR
Microsoft Sentinel
PowerShell
nmap/Wireshark

Job description

Location: Hybrid - Farnborough/Home
Type of Job: Permanent
Ref No: V11565

Cyro Cyber is looking for an Enthusiastic, Proactive, Security Analyst with a good broad IT knowledge who is keen to learn and develop their skills.

The Vacancy:

Your duties will include monitoring networks, hosts and endpoints for malicious activity using Security Incident and Event Management (SIEM) tools, Endpoint Detection and Response (EDR) tools, Antivirus and Malware detection tools and email security systems. You will also help to extend and enhance this capability under the direction of the CSOC Senior Analyst. Other activities will include, updating policy, including input into wider CSOC Strategy Policy,, procedures and processes etc. Please note these are illustrative examples. Input to and ownership of the formulation of policy and standards will be expected. Specific security tooling will be under your remit. Understanding of common security ‘controls’ in order that guidance can be proffered in the event that an incident or event would require intervention.

Ideally you will have some of the following qualifications and / or experience

CompTIA Network+, Security+ or CASP, & CYSA

Microsoft Qualifications eg AZ-900, SC-900, SC-200

Security or SOC-related security qualification or apprenticeship such as:

Cisco Certified CyberOps Associate, or Cyber Technologist L4 Apprenticeship

Sentinel, PowerShell, M365, InTune, MS Dynamics, Tenable

You will be required to have / go through SC vetting.

Role Profile

Working within CSOC, this key function supports the group in providing a monitoring, detection and incident response capability across the entire Cyro digital estate.

As an Analyst we want you to provide monitoring, detection, and response activities in the Cyro Cyber Security Operations Centre (CSOC). The CSOC work underpins organisational cyber, security and IT Governance policies, plans and standards.

You will be required to go through Security Vetting to at least SC level if you do not already have this.

Responsibilities:

Your duties will include monitoring networks, hosts and endpoints for malicious activity using Security Incident and Event Management (SIEM) tools, Endpoint Detection and Response (EDR) tools, Antivirus and Malware detection tools and email security systems. You will also help to extend and enhance this capability under the direction of the CSOC Senior Analyst. Other activities will include, updating policy, including input into wider CSOC Strategy Policy,, procedures and processes etc. Please note these are illustrative examples. Input to and ownership of the formulation of policy and standards will be expected. Specific security tooling will be under your remit. Understanding of common security ‘controls’ in order that guidance can be proffered in the event that an incident or event would require intervention.

You will have relevant work experience in Cyber Security Operations, specifically monitoring, detection and incident response duties, have experience with using at least some of the tools related to EDR, DNS and email security, as well as with IOCs.

Typical Deliverables :

The key deliverables of this role are as follows:

Using available tools, timely and accurate monitoring of events within the Cyro estate.

Clear communication of the incident issues in keeping with Cyro processes.

You will be responsible for initial triage, investigation and incident response.

Understanding and making a judgement on how and when to elevate detected incidents.

Responsible for your own professional development.

Ensuring all investigative activity is properly documented in our ticketing systems and followed up with relevant support teams.

Requirements:

Minimum experience 1 – 2 years in a SOC or CSOC environment or using security tooling.

Preferable to have some experience in other aspects of IT and a basic understanding of business processes.

Background ideally within Rail, Public Sector. HMG or within Critical National Infrastructure (CNI).

Some knowledge & understanding of, and experience in IT security

Relevant experience in a Security Operations environment or similar environment.

Understanding of networking protocols, routing & firewall functionality

Hands-on experience with security technologies, including:

Network Mapping and Analysis tools – nmap, Wireshark etc.

Some experience with any scripting tools, such as Python, Bash, PowerShell

Understanding of Windows and Linux Operating Systems

Some understanding of penetration testing tools and techniques

Strong understanding of TCP/IP and underlying network protocols

Knowledge of current trends and developments in information technology

Strong interpersonal and communication skills

Experience in developing procedures and processes

Desirable Qualifications & Skills:

Desirable background and or qualification such as: CompTIA Network+, Security+ or CASP, & CYSA

Or Microsoft Qualifications eg AZ-900, SC-900, SC-200

Or at least one IT, Security or SOC-related security qualification or apprenticeship such as:

Cisco Certified CyberOps Associate, or Cyber Technologist L4 Apprenticeship.

Experience with the following SecOps processes is desired:

EDR Solutions

Email Investigations – Ability to search for and purge malicious email & content

Basic Malware Analysis – Static and Dynamic analysis

Event Log analysis (preferrable)

DNS Investigations and Blocking

Privileged Access Management Solutions

Familiar with intelligence sources

Basic Threat Hunting

MS Sentinel

MS 365

Tenable

Cyro is committed to ensuring that we offer industry leading career opportunities, salary and benefits packages. Join us and you can expect to receive:

  • 25 days holiday, including public holidays, plus the option to buy or sell five days each year
  • Company pension scheme
  • A range of family friendly policies
  • An employee-funded car leasing scheme
  • Occupational health support
So why choose Cyro for your next opportunity?

To build, run and maintain a successful compliance programme, you need a connected approach – a team you can trust from strategy to support, and everything in between. At Cyro, this is what we do!

As part of our team, you could be working with some of the biggest names in the Critical Nation Infrastructure and Service Provider sectors including London Underground, Network Rail, Transport for London, RNLI, MOD and Virgin Media. You’ll help us ensure the most important messages get through – however tough the conditions.

Here are just some of the ways we’re different:

  • You’ll go further with us.We understand the importance of career development and will give you all the support you need to realise your potential. You’ll receive formal training, e-learning and mentoring from top professionals. And we offer opportunities to transfer to other sectors – or even different technology areas.
  • You’ll make a difference.You could be working outdoors, battling the elements, or in one ofour many offices helping us develop the network infrastructures of tomorrow.
  • You’ll be treated as an individual.We’re not a vast corporation, which means every individual counts. With us, you’ll be valued and supported, involved and empowered from day one.
  • You’ll be well rewarded.We offer salary progression that reflects market rates and personal performance, a flexible working environment and excellent training.

Cyro is an equal opportunities employer and is committed to diversity and inclusion.

We reserve the right to close this vacancy once we have received sufficient applications.

This job description sets out the duties and responsibilities of the job at the time when it was drawn up. Such duties and responsibilities may vary from time to time without changing the general character of the duties or the level of responsibility entailed. Such variations are a common occurrence and cannot in themselves justify a reconsideration of the grading of the job.

Please note you must be ABLE TO pass UK Government SC clearance to eligible for this role

Cyro Cyber, the UK based cyber security professional and managed security services provider, has successfully passed its application to become an NCSC Assured Cyber Security Consultancy (ACSC) for Audit & Review and Risk Management, marking a significant milestone in the development of its award-winning consultancy practice. Cyro Cyber are now one of only 35 ACSCs in the UK.

Cyro Cyber, a UK based cyber security professional and managed security services provider, has been named a finalist in three categories at the National Cyber Awards 2026, recognising the organisation’s work across managed security services, cyber security consultancy and Critical National Infrastructure.

Cyro Cyber are proud to announce that we’ve been shortlisted for two awards at the 2026 SC Awards Europe, recognising our sustained contribution to the cyber security sector and outstanding individual excellence within its leadership team.

Cyro Cyber is proud to announce that we have been shortlisted for three awards at the 2026 Security Excellence Awards, recognising our strength as a trusted cyber security partner, the excellence of our teams, and our continued commitment to protecting highly regulated UK organisations.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Principal Security Design Consultant
Principal Security Design Consultant

Cyro Cyber Ltd • Greater London

Hybrid
GBP 120,000 - 160,000
25 days holiday
Flexible working
Principal Security Design Consultant
Principal Security Design Consultant

Cyro Cyber Ltd • Greater London

Hybrid
GBP 120,000 - 160,000
25 days holiday
Flexible working
Junior Cyber Security Engineer
Junior Cyber Security Engineer

Cyro Cyber Ltd • Greater London

Hybrid
GBP 25,000 - 38,000
25 days holiday
Flexible working environment
Excellent training
Internal IT Support Engineer (NEW)
Internal IT Support Engineer (NEW)

Cyro Cyber Ltd • Greater London

Hybrid
GBP 30,000 - 42,000
Cloud Security Engineer
Cloud Security Engineer

Cyro Cyber Ltd • Greater London

Hybrid
GBP 70,000 - 110,000
25 days holiday
Security Operations Centre (SOC) Manager (London)
Security Operations Centre (SOC) Manager (London)

CyPro • Greater London

Hybrid
GBP 80,000 - 120,000
Training budget
Social activities
Canary Wharf office
Senior Consultant - Cyber Security
Senior Consultant - Cyber Security

CyPro • Greater London

On-site
GBP 52,000 - 70,000
Holiday allowance
Birthday day off
Annual training budget
+2
Senior SOC Analyst
Senior SOC Analyst

Sopra Steria • Farnborough

On-site
GBP 52,000 - 64,000
25 days annual leave
Health cash plan
Life assurance
+2
SOC Analyst
SOC Analyst

NCC Group • Manchester

On-site
GBP 45,000 - 60,000
Flexible Working
25 days holiday
Medicash
+8
Senior Security Analyst
Senior Security Analyst

Made Tech Limited • United Kingdom

On-site
GBP 60,000 - 80,000
Sponsorship for recognized cyber certifications
Support for achieving SC clearance