Senior SOC Analyst – Leeds

BAE Systems
Leeds
Workplace: HybridFull timeFunction: CybersecuritySkills: ["Coaching mindset","Stakeholder engagement","Independent working","Teamwork","Security process development"]

Operate and continuously improve a 24/7 Security Operations Centre supporting a major UK critical national infrastructure customer. Triage and investigate SIEM alerts, log events and network traffic, write incident tickets and review reports, and support remediation and incident response. Work with threat intelligence in an operational setting, develop SOAR automation workflows, and coach others across shift teams in a Leeds-based hub with hybrid working.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
BAE Systems
BAE Systems
1 month ago

Senior SOC Analyst – Leeds

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 14 hours agoStatus: Live

Job Summary

Operate and continuously improve a 24/7 Security Operations Centre supporting a major UK critical national infrastructure customer. Triage and investigate SIEM alerts, log events and network traffic, write incident tickets and review reports, and support remediation and incident response. Work with threat intelligence in an operational setting, develop SOAR automation workflows, and coach others across shift teams in a Leeds-based hub with hybrid working.
Location: Leeds
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Prepare and deliver shift handover briefings as part of a 24/7 SOC rotation.
  • •Monitor, triage, analyse, and investigate SIEM alerts and related log data/network traffic to identify security and service incidents.
  • •Categorise incidents per security incident policy and recognise successful/unsuccessful intrusion attempts through event and incident review.
  • •Write high-quality security incident tickets and produce incident review reports with security improvement recommendations.
  • •Support remediation and permitted actions to inhibit attacks, develop SOAR automation workflows, and continually improve service and use cases based on evolving threats.

Key Requirements

  • •Minimum SC clearance and be prepared to undergo DV clearance.
  • •Hands-on shift role experience with SIEM-based monitoring, alert triage, and incident investigation.
  • •Technical skills including Python/scripting and strong understanding of security architecture and networking (TCP/IP).
  • •Experience using Splunk (with ES) and/or Sentinel, plus working with security tooling and threat intelligence (threat actors, TTPs).
  • •Ability to investigate complex network intrusions and communicate insights through stakeholder engagement, incident ticket writing, and report writing.
Experience:Security operationsSIEMCloud securityIncident responseThreat intelligence
Skills:Coaching mindsetStakeholder engagementIndependent workingTeamworkSecurity process development
Tech Stack:PythonWindowsOS XLinuxSIEMSplunkSplunk ESSentinelProtective MonitoringSOARTCP/IPAWSAzureSecurity tooling

Eligibility

Security Clearance:SC clearanceDV clearance

Company Brief

BAE Systems
Multinational defence, security and aerospace company designing, manufacturing and supporting military and civilian systems including naval ships, submarines, aircraft, cyber solutions and electronic systems for governments and commercial customers.
Industry: Defense Manufacturing
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: London, United Kingdom
Founded: 1999
WebsiteLinkedIn