Tier 1 Security Operations Centre Analyst

Securecloudplus

Stoke-on-Trent

On-site

GBP 25,000 - 36,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Shift allowance

Job summary

Securecloudplus is seeking a proactive Tier 1 SOC Analyst to join its 24x7 Security Operations Centre in Stoke-on-Trent. The role focuses on detection, triage, and escalation of security incidents, supporting investigations, and contributing to vulnerability management and compliance efforts.

You will monitor alerts, perform initial analysis, and work with senior SOC staff to drive containment and remediation.

Qualifications

  • 6 months to 2 years hands-on experience in a SOC or similar security environment.
  • Bachelor’s degree in Computer Science, Information Security, Cyber Security or related field, or equivalent experience desirable.
  • Relevant cybersecurity certifications such as SIEM-specific certs or CCSP are desirable but not essential.

Responsibilities

  • Monitor security events and alerts using SIEM and other tools to identify threats and incidents.
  • Conduct initial triage, analysis, and categorisation of incidents by severity and impact.
  • Escalate complex incidents to senior SOC analysts and other teams as required.
  • Assist in containment and remediation efforts to ensure timely response actions.
  • Document incident timelines, IOCs, and response actions taken.
  • Support compliance and reporting activities, including audits and security reviews.

Skills

SIEM experience
Incident response
Threat detection
Log analysis
Network basics

Education

Bachelor’s degree in Computer Science or related field

Tools

SIEM tools
Log analysis tools
Vulnerability scanners

Job description

We are seeking an enthusiastic and driven Tier 1 SOC Analyst to join our 24x7 Security Operations Centre.

In this frontline role, you’ll support the detection, triage, and escalation of security incidents, helping to protect our organisation and customers from evolving cyber threats. You'll monitor security alerts, assist with investigations, and contribute to vulnerability management and compliance efforts.

This is an excellent opportunity for someone early in their cybersecurity career to gain hands‑on experience, grow their skills, and be part of a collaborative and high-performing security team.

This role will be on site in our Stoke on Trent technical hub and will be subject to shift allowance at market rate.

Role Responsibilities
Incident Detection & Response:
  • Monitor security events and alerts using SIEM (Security Information and Event Management) and other security tools to identify potential security threats and incidents.

  • Conduct initial triage, analysis, and categorisation of security incidents based on severity and impact.

  • Escalate complex or high-impact incidents to senior SOC analysts or other IT/security teams as required.

  • Assist with containment and remediation efforts, ensuring incident response actions are carried out promptly and effectively.

  • Collaborate on the detection and response to incidents with senior SOC staff and other teams when necessary.

  • Assist in documenting incident timelines, indicators of compromise (IOCs), and response actions taken.

  • Regularly perform compliance checks and IT health check schedules against internal components and against our services. Working on Remedial Action Plans and mitigations on completion of ITHC and vulnerability scanning activity.

Threat intelligence and analysis:
  • Stay updated with the latest cybersecurity threats, vulnerabilities, and attack techniques.

  • Analyse network and system logs to identify anomalous behaviour and trends indicating potential cyber threats.

  • Contribute to threat intelligence sharing within the organisation and with external partners.

Security Monitoring:
  • Conduct continuous security monitoring of network traffic, endpoints, and critical systems.

  • Help to identify, analyse, and support the mitigation of security weaknesses and vulnerabilities across the infrastructure.

  • Help to ensure that alerts are managed, categorised, and investigated in line with the organisation’s incident management procedures and within SLAs.

  • Contribute to the development and refinement of detection rules and response playbooks.

  • Assist in the deployment and configuration of security tools, ensuring they are properly integrated and functioning.

Compliance, Reporting and Documentation:
  • Participate in security audits and assessments, providing evidence of SOC activities and controls.

  • Maintain accurate records of all events handled, including triage notes and escalation details.

  • Support the delivery of incident and vulnerability summaries to the management team and customers as part of Service Reviews or Security Working Groups.

  • Participate in post-incident reviews and help document lessons learned.

  • Assist in ensuring compliance with industry standards, regulations, and internal security policies.

  • Contribute to the preparation of regular reports and metrics on SOC operations and overall security posture.

Vulnerability Management:
  • Assist in monitoring and managing vulnerabilities across live service using various vulnerability management tools.

  • Support compliance with patching policies by tracking vulnerability status and helping to coordinate remediation efforts.

  • Providing regular updates on vulnerability status to the wider SOC team and other stakeholders.

  • Contribute to Remedial Action Plans by documenting actions taken and tracking remediation progress.

  • Work with third parties to respond to advisories and directives for critical vulnerabilities in a timely manner.

Collaboration and knowledge sharing:
  • Work closely with other Service Operations teams (e.g., Network, Architecture, and Development teams) to identify and resolve security issues.

  • Share insights, threat intelligence, and incident learnings to improve the overall security posture of the organization.

Continuous Improvement:
  • Identify and suggest improvements to SOC processes, playbooks, and tools based on hands‑on experience and incident handling.

  • Contribute to the development and documentation of SOC procedures, ensuring they are clear, accurate, and up to date.

Education and Experience Requirements
Experience (preferred)
  • 6 months to 2 years of hands‑on experience in a SOC or similar security environment.

  • Graduates or career changers with lab experience, internships, or home lab projects are encouraged to apply.

Education:
  • Bachelor’s degree in Computer Science, Information Security, Cyber Security or related field, or equivalent experience desirable.

Certifications (preferred):
  • Any SIEM‑specific certification or vendor‑specific training.

  • Relevant cybersecurity certifications such as Certified Cloud Security Professional (CCSP) or other relevant security certifications, BTL1 or others are highly desirable but not essential.

Technical Skills:
  • Familiarity with SIEM tools (e.g., LogRhythm, Elastic SIEM, Microsoft Sentinel, or similar).

  • Basic understanding of network protocols, firewalls, intrusion detection/prevention systems (IDS/IPS), and endpoint security.

  • Exposure to or understanding of log analysis and alert triage, vulnerability scanning and patching and incident response.

  • Knowledge of cyber security and compliance frameworks (NIST, ISO 27001, MITRE ATT&CK).

  • Understanding of network protocols, malware analysis, threat intelligence, and vulnerability management.

  • An understanding of and an interest in learning scripting and automation for security operations.

Soft Skills:
  • Strong written and verbal communication skills.

  • Analytical thinker with good attention to detail and sound judgement.

  • Able to follow standard operating procedures with discipline and accuracy.

  • Eager to learn, ask questions, and develop professionally.

  • Comfortable working in a fast‑paced team environment and handling multiple alerts.

  • Participate in on‑call or out‑of‑hours technical support where appropriate and supported by senior staff.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior SOC Analyst
Senior SOC Analyst

NexGen Associates • Stoke-on-Trent

On-site
Level 1 SOC Analyst - MSP
Level 1 SOC Analyst - MSP

Hamilton Barnes Associates Limited • West Yorkshire

On-site
GBP 29,250 - 35,750
Career progression pathways
Hands-on experience with industry-leading security tools
Mentorship from experienced analysts
+2
Senior SOC Analyst
Senior SOC Analyst

Jobtailor • Manchester

On-site
GBP 50,000 - 55,000
L1 SOC Analyst - Systems Integrator
L1 SOC Analyst - Systems Integrator

Hamilton Barnes Associates Limited • South Yorkshire

On-site
GBP 25,000 - 30,000
Industry-recognised training
Exposure to leading security tech
Career progression opportunities
L1 SOC Analyst - Telecommuncations
L1 SOC Analyst - Telecommuncations

Hamilton Barnes Associates Limited • West Yorkshire

On-site
GBP 29,000 - 36,000
Career progression into threat hunting
Mentorship from experienced analysts
Support for certifications and ongoing
+2
SOC Analyst
SOC Analyst

TSR Select • Greater London

Hybrid
GBP 32,000 - 42,000
L1 SOC Analyst - Systems Integrator
L1 SOC Analyst - Systems Integrator

Hamilton Barnes Associates Limited • Wynyard

On-site
GBP 30,000 - 35,000
Mentorship
Hands-on tooling
Career path
+2
Cyber Security SOC Analyst (L1)
Cyber Security SOC Analyst (L1)

Wavenet • Batley

On-site
GBP 28,000 - 36,000
Annual Leave 25 days
Private medical coverage
Wellbeing program
+1
24 x 7 Security Analyst
24 x 7 Security Analyst

LRQA • Birmingham

On-site
GBP 48,000 - 72,000
SOC Analyst - Tier 1
SOC Analyst - Tier 1

Methods Business and Digital Technology • Greater London

Hybrid
GBP 42,000 - 54,000
Private Medical Insurance
Pension
Life Assurance
+2