Skip to main content
AfterDuty

SOC Analyst

ITC Secure · London, Greater London

Type
Full-time
Posted
10 days ago

Overview

Your incident response and analytical thinking from policing transfer to security event analysis.

About this role

Reports to: Operations Centre Team Lead

*Job Purpose:*As a member of a team of Security Analysts and Network and Security Engineers within ITC’s Security Operations Centre (SOC) you will provide security analysis of customer security events, monitor and investigate incidents in customer environments with a focus on security event management, vulnerability management, behavioural analytics and MDR for a portfolio of blue-chip and mid-market customers.

Key Interfaces: Operation Centre Team Leads, Customer Security teams, Head of SOC, Service Delivery Managers, Project Engineers, SOC Analysts, Network Security Engineers and Vendors.

The Role will Involve

  • Analysis and investigation of alerts arising from Security Event and Information Management tools
  • Analysis, investigation and refinement of alerts and reports arising from Network Behaviour Analytics tools
  • Vulnerability Scanning and reporting. Prioritising and tracking remediation of vulnerabilities
  • Utilising Intrusion Prevention solutions to monitor and alert on potential breaches
  • Using packet-capture tools, analyse packet flows and utilise network-based User Behaviour Analytics to understand breaches and track propagation of malware
  • Using Threat Intelligence Services to identify potential new threats and develop new mitigations
  • Working with customer security teams to detect, contain and eradicate threats
  • Understanding of security assessment and penetration testing tools
  • Undertaking other duties from time to time as required

We are Looking for Someone With

  • The following certifications:
  • COMPTIA Security+ (essential)
  • Microsoft SC-200 (desirable)
  • Microsoft AZ-500 / SC-500(desirable)
  • Experience across two or more cybersecurity domains (essential)
  • Security Monitoring & Threat Detection Platforms (e.g., Microsoft Sentinel)
  • Endpoint Detection, Response & Managed Security Services (EDR/XDR/MDR)
  • Network Detection & Behaviour Analytics (e.g., Darktrace, IronNet)
  • Vulnerability Management & Remediation
  • Exposure working with a previous managed security provider or within an MSSP environment (desirable)
  • The ability to communicate fluently and confidently to a high standard in both written and verbal English (essential)
  • Experience using ITSM tools (desirable)
  • Knowledge and understanding of MITRE ATT&CK Framework (desirable)
  • Has a passion for learning to better themselves and their department
  • Has the desire to translate their skills into ways that can improve the function of the Operations Centre
  • Enjoys research into emerging threats in the security landscape and identifying and analysing real-world threats
  • Works collaboratively, shares information, improves documentation and trains colleagues

Working Location: This a remote role.

Benefits

  • 24 shifts annual leave.
  • Pension scheme.
  • Private health insurance.
  • Enhanced maternity and paternity leave.
  • Death-in-service life cover.
  • Shopping discounts.
  • Cycle to work scheme.
  • Season ticket/gym loans.
  • Online wellbeing centre.
  • And more!

This job description is intended to convey information essential to understanding the scope of the role and it is not intended to be an exhaustive list of skills, efforts, duties, responsibilities or working conditions associated with the position.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in London

Why this fits a police background

  • Intelligence & OSINT
  • Investigative casework
  • Security operations

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • Full-time

    Your experience managing operational risk and leading incident reviews translates directly into shaping security culture and resilience.

    Posted 2 days ago

  • Information Security Analyst

    Europa Worldwide Group · London

    Full-time

    £40,000 – £45,000Estimated

    Your experience managing evidence, compliance, and risk under ISO standards translates directly into this security assurance role.

    Posted 2 days ago

  • Cyber Security & Compliance Analyst

    Shivom Consultancy Ltd · London

    Full-time

    Your incident management, evidence handling, and risk assessment from policing transfer directly to this role.

    Posted 2 days ago

  • £570 a dayEstimated

    Your experience managing security incidents and coordinating multi-agency responses transfers directly to this governance role.

    Posted 2 days ago