Security Operations Analyst, UK

Anduril
London
Full timeFunction: Business OperationsSkills: ["Communication","Collaboration","Mentoring"]

Serve as a SecOps Analyst on the Detection and Response team, monitoring and responding to security alerts across phishing, endpoints, cloud infrastructure, and SaaS. Build and tune detection signatures, response playbooks, and automation using detection-as-code, while leading feedback loops to reduce false positives. Conduct threat hunting, data baselines, and data normalization, and participate in on-call incident response as an incident commander when needed.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Anduril
Anduril
2 days ago

Security Operations Analyst, UK

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live
Reposted: similar role first listed 1 month ago

Job Summary

Serve as a SecOps Analyst on the Detection and Response team, monitoring and responding to security alerts across phishing, endpoints, cloud infrastructure, and SaaS. Build and tune detection signatures, response playbooks, and automation using detection-as-code, while leading feedback loops to reduce false positives. Conduct threat hunting, data baselines, and data normalization, and participate in on-call incident response as an incident commander when needed.
Location: London
Employment Type: Full time
Job Function: Business Operations
Seniority: Mid level

Key Responsibilities

  • •Triage and respond to alerts and incidents across phishing, endpoints, cloud infrastructure/services, and SaaS applications.
  • •Build and optimize detection signatures, response playbooks, and response automation using detection-as-code principles.
  • •Lead detection feedback loops to fine-tune alerts and reduce false positives.
  • •Conduct threat hunting, establish data baselines, and normalize/analyze data to identify anomalous patterns.
  • •Participate in on-call rotation for incident response investigations and communicate findings to stakeholders; serve as incident commander when necessary.

Key Requirements

  • •Experience in security monitoring, log analysis, and detection engineering using large data sets across endpoints, networks, and application logs.
  • •Experience with Python development for automating SOC operations from a shared codebase.
  • •Experience with SIEM query languages including SPL, KQL, or SQL.
  • •Experience analyzing data in a data lake environment.
  • •Must be able to obtain and hold a UK Security Clearance.
Skills:CommunicationCollaborationMentoring
Languages:English
Tech Stack:PythonSPLKQLSQLSIEMAWSAzureGCP

Eligibility

Security Clearance:UK Security Clearance

Company Brief

Anduril
Designs and builds advanced defense systems combining autonomous aircraft, sensors, and AI-driven software for military and national security applications, focused on modernizing battlefield capabilities and distributed sensing.
Industry: Defense Technology
Company Size: Enterprise (1,001+ employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series E+
Headquarters: Costa Mesa, United States
Founded: 2017
WebsiteLinkedIn