Security Operations Centre Analyst

The Guardian


Job Location:

London - UK

Monthly Salary: Not Disclosed
Posted on: 2 hours ago
Vacancies: 1 Vacancy

Job Summary

Description

Join our team at the Guardian and be a part of a diverse and inclusive global organisation that delivers fearless investigative journalism and holds power to account. Our team of award-winning journalists cutting-edge commercial professionals and industry-leading digital experts are committed to making a difference and represent a wide range of backgrounds and perspectives. We offer a challenging and exciting environment for career development with a focus on training growth and fostering an inclusive culture.

We are now looking for aSecurity Operations Centre Analyst to join our Information Security team. The Security Operations Centre (SOC) Analyst will support the detection investigation and response to cyber security threats across The Guardians global digital estate. Working alongside the Security Operations Team MSSP and wider Information Security team the role will help strengthen operational security capabilities improve threat visibility and contribute to the continuous evolution of Guardian security operations.

This role is suited to a security professional who is passionate about threat detection incident response and security operations and who is eager to contribute to building a modern intelligence-led security capability.

The role is based in London but will support the US East Coast timezone specifically so working hours will be 2pm - 10pm UK time Monday - Friday.

About the role

  • Triage investigate and respond to security alerts events and incidents ensuring timely containment remediation and closure.
  • Act as the primary operational liaison with the MSSP validating findings improving service quality and ensuring effective security monitoring and incident response.
  • Conduct proactive threat hunting across endpoint network identity and cloud environments to identify suspicious or malicious activity.
  • Develop tune and optimise detection rules SIEM use cases and correlation logic to improve threat visibility and monitoring effectiveness.
  • Investigate security events across on-premise and cloud environments including AWS GCP and Entra ID.
  • Analyse threat intelligence emerging threats and incident trends to assess relevance to The Guardians threat landscape and identify improvements to detection and response capabilities.
  • Identify gaps in monitoring and detection coverage recommending and implementing improvements based on threat intelligence incident learnings and changes to the technology estate.
  • Support vulnerability prioritisation and remediation by correlating threat activity exploitability and business risk.
  • Investigate and respond to Data Loss Prevention (DLP) alerts as part of identifying containing and mitigating potential data security incidents.
  • Drive continuous improvement of SOC capabilities through automation process optimisation metrics post-incident reviews and the enhancement of runbooks playbooks and operational procedures.

About you

  • Experience working within a Security Operations Centre (SOC) incident response threat detection or cyber security operations environment.
  • Experience investigating security alerts and incidents using SIEM EDR and other security monitoring technologies. Ability to assess prioritise and respond to security incidents based on business risk and operational impact.
  • Strong understanding of modern cyber threats attack techniques and adversary behaviours including familiarity with the MITRE ATT&CK framework.
  • Experience analysing security events across endpoint network identity and cloud environments.
  • Experience working with Managed Security Service Providers (MSSPs) or outsourced security operations functions.
  • Knowledge of threat hunting threat intelligence and detection engineering principles.
  • Strong analytical and problem-solving skills with the ability to interpret complex technical information and identify root causes. Able to analyse data identify trends and make informed evidence-based decisions
  • Commitment to continuous learning and staying current with emerging threats technologies and security best practices.

We actively encourage applications from groups traditionally underrepresented in the UK media

We operate in a hybrid environment working 3 days a week from our offices in Kings Cross and 2 days a week remotely.

We value and respect all differences (seen and unseen) in all people. We aspire to have inclusive working experiences and an environment that reflects the audience we serve where our people have equal access to career development opportunities their voices are heard and can contribute to our future. We actively encourage applications from people of all backgrounds. Many of our staff work flexibly and we will consider all requests for flexible working arrangements.

How to apply

To apply please upload your latest CV. We dont require a cover letter but we will ask you a question about information security as part of your application which should take less than 5 minutes to complete.

We appreciate the time taken to prepare each application we receive. We do not use AI-assisted technology to review applications; every application is reviewed by a member of our recruitment team. Thank you for bearing with us during the screening process.

The closing date for applications isFriday 10th July 2026.

All roles at the Guardian are open for everybody to apply. It is important to us that you feel supported and comfortable throughout your recruitment process in order to perform your best. Please let us know if there are any changes we could make to help your application this includes providing documents in accessible formats or personalising the process to better support your needs. Please contact Anna Vipers on to discuss further so we can work with you to support you through your application.

Benefits at the Guardian

Youll have 30 days of annual leave per year (plus bank holidays) with the option to purchase an additional 5 days. Our pension scheme is generous; if you contribute 5% then we will contribute 8-12% (depending on your age). We believe in giving back which is why employees are given 2 volunteering days annually and the option of payroll giving. Season ticket loans are also available.

You are entitled to private healthcare life cover income protection and eye tests. You can also opt in to dental insurance.

We have enhanced maternity paternity adoption and shared parental leave policies in place. We also support our employees by offering an IVF menopause baby loss and trans equality policy.

Culture and wellbeing

We want everyone to feel like they belong at the Guardian and we champion diversity of thought. Our various employee forums provide a platform to use their voice to foster an inclusive workplace. We became the first major media organisation to achieve B Corp status.

We offer tools to help you prioritise your wellbeing including access to our employee benefits platform which provides tailored support for health and addition we also offer free yoga and pilates classes. These run alongside our corporate gym membership and cycle to work scheme.

Our canteen has views overlooking the Regents Canal and caters for breakfast lunch and dinner.

Learning and development

We encourage personal and professional growth. Employees have access to a broad range of tools and solutions and we are happy to support the pursuit of professional qualifications through vocational courses and apprenticeships.




Required Experience:

IC

DescriptionJoin our team at the Guardian and be a part of a diverse and inclusive global organisation that delivers fearless investigative journalism and holds power to account. Our team of award-winning journalists cutting-edge commercial professionals and industry-leading digital experts are commi...

About Company

Company Logo

We now reach 157 million unique browsers worldwide. Our readers are inquisitive, open minded and active. We have the power to transform your business.

View Profile View Profile