Rodeo
Get started

Admiral Group Plc

Cyber Security Analyst

Cardiff
Posted 1 day ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

As a L1 SOC Analyst

As a L1 SOC Analyst, you are the first line of defence against cyber threats targeting the organisation.

You will work as part of a 24/7 global Security Operations Centre across three regions, monitoring, triaging, and escalating security alerts affecting critical financial systems, customer data, and user accounts. The role requires seamless collaboration across regions, ensuring continuous security coverage through effective handover.

You will follow structured processes while developing the skills needed to understand how attacks happen and how to investigate them effectively. This role is designed for individuals with a strong interest in cyber security and a willingness to learn quickly in a real-world environment.

Key Responsibilities

Alert Monitoring & Triage

  • Monitor alerts from SIEM platforms, Endpoint detection tools, Identity and access systems.

Perform Initial Triage

  • Validate whether alerts are true or false positives.
  • Classify severity based on defined criteria.
  • Identify potential impact on financial systems or users.

Investigation (Initial Level)

  • Conduct investigations using available tools and playbooks.
  • Login activity and user behaviour, Endpoint activity (processes, files, connections) indicators of compromise and threat actor behaviours.
  • Gather relevant evidence before escalation.

Escalation & Incident Handling

  • Escalate suspicious or confirmed threats to L2 Analysts.
  • Provide clear, structured evidence including what was detected, what has been checked, why it is suspicious/anomalous/malicious.
  • Playbook execution following predefined runbooks and response procedures, perform response actions where appropriate, ensure consistency and accuracy in all actions.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Regional Handover

  • Perform Structured Handovers At Shift End, Including
    • Clear summary of active incidents and investigations.
    • Outstanding actions, risks, and priorities.
    • Relevant evidence, timelines, and analyst observations.
    • Ensure no loss of context or investigative continuity during handover.
    • Adhere to defined handover standards to maintain operational resilience.

Documentation

  • Maintain accurate and detailed case notes.
  • Log Investigation steps, Findings, Actions taken.
  • Ensure documentation meets audit and regulatory standards.

Continuous Learning

  • Build knowledge of common cyber threats phishing, malware, credential theft etc.
  • Participate in training sessions, simulated attack exercises, knowledge-sharing within the SOC.

Essential

Required Skills & Experience

  • Demonstrated experience performing SOC monitoring and investigation activities.
  • Understanding of Networking (IP, DNS, HTTP).
  • Knowledge of Windows and Linux operating systems.
  • Strong attention to detail.
  • Ability to follow structured processes.
  • Good written and verbal communication skills.

Desirable

  • Hands on experience SIEM or endpoint tools.
  • Cyber labs (e.g., TryHackMe, Hack the Box).
  • Certifications (e.g., CompTIA Security+, SC-200).
  • Basic scripting knowledge (PowerShell, Python).

Location

This role is remote with occasional office attendance.

Admiral: Where You Can

We take pride in being a diverse and inclusive business. It's a place where you can Be You, and show up as you are. We’re committed to fostering a people-first culture where everyone is accepted, supported, and empowered to be brilliant. You can, Grow And Progress at a pace and direction that suits you, Make A Difference for our customers and each other, and Share in Our Future with all colleagues eligible for up to £3,600 of free shares each year after one year of service.

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Everyone receives 33 days holiday (including bank holidays) when they join us, increasing the longer you stay with us, up to a maximum of 38 days (including bank holidays). You also have the option to buy or sell up to an additional five days of annual leave.

We’re proud of our people-first culture. In fact, we've been recognised as a Great Place to Work for Women, a Great Place to Work for Wellbeing, and an overall Great Place to Work for over 25 years! We’re fully committed to making sure your progression is not slowed or halted by barriers related to race, gender, age, sexuality or any of the protected characteristics.

Our fantastic benefits make sure our colleagues have a great work-life balance; You can view some of our other key benefits here.

Disability Confident Leader

As a Disability Confident Leader, for candidates with a disability or long-term health condition, that opt into the Disability Confident scheme, we’ll invite a fair and proportionate number of applicants that meet the essential requirements of the role to the first stage of our selection process.

If you need any adjustments or support with your application or during the recruitment process, just let us know. Please do email us or contact us on 07386697107. This number is dedicated to supporting candidates that require reasonable adjustments or support during the application process.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

SIEM Monitoring
Endpoint Detection
Incident Triage
Network Security
Windows OS
Linux OS
Incident Escalation
Threat Investigation
Case Documentation
Phishing Analysis
Malware Analysis
Credential Theft Detection
PowerShell
Python

Location

Cardiff, Wales, United Kingdom

Sign up to applySee more jobs like this