Skip to main content
AfterDuty

SOC Analyst - Tier 1

Methods · London, Greater London

Type
Full-time
Posted
7 days ago

Overview

Your incident command and threat assessment experience maps to SOC triage and escalation.

About this role

Methods Business and Digital Technology Limited

Methods is a £100M+ IT Services Consultancy who has partnered with a range of central government departments and agencies to transform the way the public sector operates in the UK. Established over 30 years ago and UK-based, we apply our skills in transformation, delivery, and collaboration from across the Methods Group, to create end-to-end business and technical solutions that are people-centred, safe, and designed for the future.

Our human touch sets us apart from other consultancies, system integrators and software houses - with people, technology, and data at the heart of who we are, we believe in creating value and sustainability through everything we do for our clients, staff, communities, and the planet.

We support our clients in the success of their projects while working collaboratively to share skill sets and solve problems. At Methods we have fun while working hard; we are not afraid of making mistakes and learning from them.

Predominantly focused on the public-sector, Methods is now building a significant private sector client portfolio.

Methods was acquired by the Alten Group in early 2022.

Job Summary

We are seeking a motivated and detail-oriented Tier 1 SOC Analyst to join our Security Operations service capability. As the first line of defence, you will be responsible for monitoring, detecting, and responding to security events and incidents in real-time. This role is ideal for individuals looking to start or grow their career in cybersecurity, with opportunities for advancement and skill development.

Requirements

Key Responsibilities

  • Monitor security alerts and events from Microsoft Defender, SIEM and other security tools
  • Perform initial triage and analysis of security incidents
  • Escalate verified incidents to Tier 2/3 analysts as needed
  • Document incidents, investigations, and response actions in ticketing systems
  • Assist in the maintenance and tuning of SOC tools and technologies
  • Follow standard operating procedures (SOPs) for incident response
  • Participate in shift rotations, including nights and weekends if required
  • Support Growth of our SOC as a Service capability
  • Stay current on cybersecurity trends and threat intelligence.

Required Qualifications

  • Associate's or Bachelor's degree in Cybersecurity, Information Technology, or related field (or equivalent experience)
  • Basic understanding of networking concepts (TCP/IP, DNS, firewalls)
  • Familiarity with security tools such as SIEM, antivirus, IDS/IPS, and endpoint protection
  • Strong analytical and problem-solving skills
  • Excellent written and verbal communication skills
  • Ability to work in a fast-paced, team-oriented environment
  • Ability to support out of hours service delivery (paid)

Preferred Qualifications

  • CompTIA Security+, CySA+, or other relevant certifications
  • Experience with tools like MS Defender, Splunk, QRadar, or Sentinel
  • Knowledge of MITRE ATT&CK framework
  • Exposure to scripting (e.g., Python, PowerShell) is a plus

Benefits

Methods is passionate about its people; we want our colleagues to develop the things they are good at and enjoy.

By joining us you can expect

  • Autonomy to develop and grow your skills and experience
  • Be part of exciting project work that is making a difference in society
  • Strong, inspiring and thought-provoking leadership
  • A supportive and collaborative environment

Development - access to LinkedIn Learning, a management development programme, and training

Wellness - 24/7 confidential employee assistance programme

Flexible Working - including home working and part time

Social - office parties, breakfast Tuesdays, monthly pizza Thursdays, Thirsty Thursdays, and commitment to charitable causes

Time Off - 25 days of annual leave a year, plus bank holidays, with the option to buy 5 extra days each year

Volunteering - 2 paid days per year to volunteer in our local communities or within a charity organisation

Pension - Salary Exchange Scheme with 4% employer contribution and 5% employee contribution

Discretionary Company Bonus - based on company and individual performance

Life Assurance - of 4 times base salary

Private Medical Insurance - which is non-contributory (spouse and dependants included)

Worldwide Travel Insurance - which is non-contributory (spouse and dependants included)

Enhanced Maternity and Paternity Pay

*Travel*- season ticket loan, cycle to work scheme

For a full list of benefits please visit our website (www.methods.co.uk/careers/benefits)

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in London

Why this fits a police background

  • Intelligence & OSINT
  • Incident command & response
  • Investigative casework
  • Security operations

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • £35,000 – £40,000Estimated

    Your risk assessment and incident management skills from policing are directly applicable to this GRC role.

    Posted 3 days ago

  • Full-time

    Your incident command and multi-agency coordination experience translates directly to operational resilience and third-party oversight.

    Posted 3 days ago

  • Full-time

    Your investigative mindset and evidence-handling discipline from policing transfer directly to digital forensics and incident response.

    Posted 4 days ago

  • GRC Manager - 6 month FTC

    Trayport · London

    Full-time

    Your experience managing risk, policy, and regulatory compliance under frameworks like PACE transfers directly to GRC.

    Posted 6 days ago