Rodeo
Get started

CHAOS Industries

Cybersecurity SOC Analyst II

London
Posted 1 day ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Role Overview

We are seeking a SOC Analyst II to join our growing Security Operations team and help defend the organization against evolving cyber threats. This role will support day-to-day monitoring, triage, investigation, and response activities across enterprise systems, endpoints, cloud infrastructure, and collaboration environments.

The ideal candidate is a mid-career cybersecurity professional with a strong technical foundation, curiosity for threat analysis, and a desire to grow within a mission-focused defense technology environment. This individual will work closely with senior security engineers, IT, and infrastructure teams to identify suspicious activity, investigate alerts, and support the protection of sensitive company and government-related data.

This position is ideal for someone who thrives in a fast-paced startup environment and is passionate about operational cybersecurity.

Responsibilities

Security Monitoring & Incident Response

  • Monitor and triage security alerts and events across enterprise systems, endpoints, cloud platforms, and networks
  • Investigate suspicious activity, indicators of compromise, phishing attempts, malware detections, and unauthorized access attempts
  • Escalate validated security incidents to senior analysts or engineering teams as appropriate
  • Support containment, remediation, and recovery activities during cybersecurity incidents
  • Assist with root cause analysis and incident documentation

Security Operations & Tool Administration

  • Support administration and monitoring of cybersecurity platforms including:
    • Microsoft GCC High
    • Crowdstrike and other EDR/XDRs
    • PIM/PAM Tools
    • Various SIEMs
    • Azure Sentinel
  • Monitor endpoint detection and response (EDR/XDR) alerts and telemetry
  • Assist with tuning alerting rules and reducing false positives
  • Support vulnerability management and remediation tracking activities
  • Help maintain endpoint, identity, and cloud security configurations

Threat Detection & Analysis

  • Review logs and security telemetry from SIEM, endpoint, network, and cloud security platforms
  • Identify anomalous or malicious behavior patterns
  • Assist with development and improvement of detection rules, playbooks, and response procedures
  • Participate in threat hunting and proactive security monitoring initiatives

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Compliance & Documentation

  • Support cybersecurity compliance initiatives including UK CE/CE+, ISO 27001, and UK-specific requirements
  • Maintain accurate incident records, investigation notes, and operational documentation
  • Assist with audit preparation, evidence collection, and remediation tracking
  • Follow established security procedures and escalation processes

Security Awareness & Collaboration

  • Collaborate with IT, Engineering, and business teams to improve organizational security posture
  • Assist with phishing response and user security awareness efforts
  • Contribute to continuous improvement of SOC processes and operational maturity

Minimum Requirements

  • 3–5+ years of experience in Cybersecurity, IT support, systems administration, or SOC operations
  • Foundational understanding of cybersecurity concepts including networking, endpoint security, identity management, and incident response
  • Familiarity with security monitoring and alert triage processes
  • Experience working with Managed Security Service Providers (MSSPs) and external vendors
  • Experience or exposure to enterprise security platforms such as:
    • Microsoft GCC High
    • Crowdstrike and other EDR/XDRs
    • App Allow/Block-listing tools
    • PIM/PAM Tools
    • Various SIEMs
    • Azure Sentinel
  • Strong understanding of Windows, Linux, macOS, and cloud-based environments
  • Understanding of SIEM, EDR/XDR, phishing analysis, and log analysis
  • Strong analytical, troubleshooting, and problem-solving skills
  • Excellent written and verbal communication skills
  • Ability to prioritize and manage multiple tasks in a fast-paced environment

Preferred Requirements

  • Experience supporting defense, aerospace, government contracting, or regulated technology environments
  • Familiarity with Microsoft GCC High environments
  • Familiarity with using AI and LLM tools within the SOC
  • Familiarity with monitoring the use of AI and LLM tools
  • Exposure to compliance frameworks such as UK CE,/CE+, UK CSM, CIS Controls, or ISO 27001
  • Experience with scripting or automation using PowerShell, Python, or Bash
  • Familiarity with digital forensic process and chain of custody
  • Knowledge of MITRE ATT&CK framework and common threat actor techniques
  • Security certifications such as Security+, CySA+, SC-900, Network+, or equivalent
  • Experience working in a 24/7 or operational security environment preferred

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Work Environment

  • Fast-paced, high-growth defense technology startup environment
  • Collaborative and highly cross-functional culture with direct access to leadership
  • Hybrid work environment with regular interaction across multiple offices in the US, UK, and elsewhere
  • May require occasional travel between office locations and customer or government sites
  • Work may involve access to sensitive information, secure facilities, and regulated systems

Why CHAOS?

  • Health Benefits: Private medical, dental, and vision benefits (for employees & dependents) will be 100% paid for by the company
  • Additional Benefits: 5% pension match
  • Compensation Components: Competitive base salaries, generous pre-IPO stock option grants, relocation assistance, and annual bonuses
  • Team Growth: 350 employees and counting across 5 global offices

The stated compensation range reflects only the targeted base compensation range and excludes additional earnings such as bonus, equity, and benefits. If your compensation requirements fall outside of the range, we still encourage you to apply. The salary range for this role is an estimate based on a range of compensation factors, inclusive of base salary only. Actual salary offer may vary based on (but not limited to) work experience, education and/or training, critical skills, and/or business considerations.

Recruiting Agencies

CHAOS Industries does not accept unsolicited resumes or outreach. Unsolicited submissions will not be reviewed or compensated.

#LI-onsite

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Cybersecurity
Incident response
Security monitoring
Threat analysis
SIEM
EDR
XDR
Azure Sentinel
Crowdstrike
Microsoft GCC High
Vulnerability management
Identity management
Networking
Phishing analysis
Log analysis
Troubleshooting

Location

London, England, United Kingdom

Sign up to applySee more jobs like this