368,611open jobs
9,439companies
50,719added this week
Browse all
Salary
$68k – $75k per year
Location
In office (Manchester)
Seniority
Senior
Employment
Full-Time
Overview
Company
Impact
Profile match
Focus Group is a leading independent provider of essential business technology solutions in the UK, established in 2003. The company specializes in offering a comprehensive range of services including IT, telecommunications, and connectivity services, all designed to keep businesses connected and efficient. Focus Group is renowned for its innovative solutions and exceptional customer service, ensuring businesses run smoothly, whether they are small enterprises or large corporations.

Senior SOC Analyst

(Internal Job Level Reference: Specialist)

UK

  • Hybrid - 3 days a week in our Manchester office ( Suite B, Maple Court, M60 Office Park, Wynne Ave, Swinton, Clifton, Manchester, M27 8FF)

£50-£55k (Dependent on experience) + benefits

Focus Group is looking for a Senior SOC Analyst to play a key role within our Managed Security Services team. This is a dual-focused position combining hands-on technical expertise with day-to-day operational leadership, ensuring high-quality delivery of managed detection and response services across a diverse customer base.

You’ll lead SOC operations, act as the escalation point for complex security incidents, and mentor junior analysts-driving both service excellence and team development.

What you’ll do

  • Lead day-to-day SOC operations, ensuring effective triage, escalation, and communication workflows
  • Act as the primary escalation point for complex security investigations and incidents
  • Conduct advanced threat investigations across endpoints, networks, and cloud environments
  • Perform proactive threat hunting and detection tuning to improve coverage and reduce noise
  • Manage and mentor Tier 1-2 analysts, supporting development and technical growth
  • Ensure ticket quality, SLA adherence, and high service standards across SOC operations
  • Support onboarding of new customers into monitoring and detection platforms
  • Collaborate with Cyber Security leadership to improve detection strategy and SOC maturity
  • Analyse logs and security data to identify malicious or suspicious activity
  • Develop and maintain playbooks, runbooks, and knowledge base content
  • Produce clear, actionable incident reports for internal and customer stakeholders
  • Engage directly with customers during escalations, incident reviews, and briefings
  • Identify opportunities for automation, process improvement, and enhanced detection capabilities
  • Stay up to date with emerging threats, attack techniques, and MITRE ATT&CK developments

What you’ll bring

  • 4-6 years’ experience in a SOC or MSSP environment at Tier 2-3 or Lead level
  • Strong hands-on experience with SIEM platforms (e.g. Microsoft Sentinel, Splunk, Elastic, LogPoint)
  • Experience with EDR tools such as Microsoft Defender, SentinelOne, or Bitdefender
  • Deep understanding of MITRE ATT&CK and modern threat detection methodologies
  • Strong incident response, investigation, and log analysis capability across multiple data sources
  • Ability to lead during high-pressure incidents with calm, confident decision-making
  • Strong communication skills, including producing clear incident reports and updates
  • Proven ability to mentor, coach, and support junior analysts
  • Organised approach with the ability to manage multiple concurrent incidents
  • Proactive mindset focused on continuous improvement and service optimisation

Nice to have

  • Certifications such as SC-200, GCIH, GCIA, Security+, or BTL1
  • Experience in an MSSP or multi-customer environment
  • Microsoft security stack experience (Defender XDR, Sentinel, M365 security)
  • Knowledge of cloud security, email security, and vulnerability management
  • Experience with KQL or other query languages
  • Scripting skills (PowerShell, Python)
  • Familiarity with SOAR and threat intelligence platforms
  • Understanding of compliance frameworks (ISO 27001, NIST, Cyber Essentials)

Future opportunities

  • SOC Manager / Head of Security Operations
  • Cyber Security Technical Lead
  • Detection Engineering Lead
  • Threat Intelligence Lead
  • Incident Response Manager
  • Security Consultant / Advisory

IND1

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,611 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Manchester
SOC Analyst L1 1 day ago
In office • Full-Time • Bachelor's Degree • Riyadh
DevOps
AWS
Azure
GCP
SLI/SLO/SLA
Cybersecurity
MITRE ATT&CK
Apply
$23k – $57k per year (Estimated) • Remote • Full-Time • 6+ years exp
Python
Databases
OpenSearch
DevOps
AIOps
ArgoCD
AWS
Azure
CI/CD
Datadog
Docker
Dynatrace
GCP
GitHub Actions
Grafana
Incident Management
Jaeger
Jenkins
Kubernetes
New Relic
OpenTelemetry
Platform Engineering
Prometheus
SLI/SLO/SLA
Splunk
Terraform
GitHub
Apply
$20k – $50k per year (Estimated) • In office • Full-Time • Tomsk
C++
Go
Java
Kotlin
Databases
Apache Kafka
ClickHouse
ElasticSearch
DevOps
Jaeger
Kubernetes
Prometheus
SLI/SLO/SLA
Apply
$20k – $50k per year (Estimated) • In office • Full-Time • Perm
C++
Go
Java
Kotlin
Databases
Apache Kafka
ClickHouse
ElasticSearch
DevOps
Jaeger
Kubernetes
Prometheus
SLI/SLO/SLA
Apply
$15k – $38k per year (Estimated) • Remote • Full-Time • 2+ years exp • Petropavlovsk-Kamchatsky
DevOps
SLI/SLO/SLA
Apply
$33k – $75k per year (Estimated) • In office • Full-Time
Python
SQL
Analytics
Power BI
Apply
up to $54k per year • In office • Full-Time
PowerShell
DevOps
Azure
Apply
up to $108k per year • Remote/Hybrid • Full-Time
DevOps
AWS
Azure
Cybersecurity
FortiGate
Zero Trust
Zscaler
Apply
up to $68k per year • In office • Full-Time
DevOps
Azure
Azure DevOps
Management
Confluence
Jira
Monday.com
Trello
ServiceNow
Marketing
HubSpot
Apply
$57k – $142k per year (Estimated) • In office • Full-Time
Bash
PowerShell
Python
Cybersecurity
Wireshark
Apply
$147k – $265k per year (Estimated) • Remote/Hybrid • Internship • Manchester
Apply
$92k – $185k per year (Estimated) • In office • Manchester
JavaScript
C#
C#
.NET
Frontend
Next.js
React.js
DevOps
AWS
CI/CD
Terraform
Apply
$162k – $308k per year (Estimated) • In office • Full-Time • Manchester
AI/ML
AI Agents
Apply
$102k – $186k per year (Estimated) • In office • Full-Time • PhD • Manchester
Python
SQL
AI/ML
LLM
AI Agents
Management
UiPath
Apply
$142k – $283k per year (Estimated) • Remote • Full-Time • 10+ years exp • Philadelphia • Providence • Hartford • Birmingham • Cheyenne
DevOps
Splunk
Cybersecurity
Zero Trust
Apply
See all jobs
This is one of many
368,611 more open roles from verified company boards, updated every day.