Rodeo
Get started

Tesco

Security Analyst III - SOC

Welwyn Garden City
Posted about 15 hours ago
Sign up to applySee more jobs like this

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

About the Role

As a Security Analyst III, you will be the technical authority within the SOC, leading high-quality investigations and proactive threat hunting to protect the organisation from evolving threats. This hands-on role combines advanced technical expertise with leadership, coaching analysts, driving SOC maturity, and optimising tools and processes to set the standard for excellence across the team.

You will act as a role model for SOC Analysts, coaching and guiding them to elevate technical capability and analytical rigour. Beyond day-to-day operations, you will lead maturity objectives, optimise SOC tooling, and identify opportunities for automation, AI integration, and impactful service improvements. You will also play a key role within the CSIRT team, collaborating on major incidents.

Responsibilities

  • Deliver high-quality investigative analysis to ensure rapid and accurate incident resolution.
  • Act as the escalation point and technical authority for complex SOC investigations.
  • Lead proactive threat-hunting initiatives to identify and mitigate emerging threats before they impact the business.
  • Role-model analytical excellence and decision-making, setting the benchmark for SOC performance.
  • Coach and mentor analysts to build technical depth and confidence across the team.
  • Drive SOC maturity objectives, improving processes, tooling, and automation for greater efficiency.
  • Enhance SOC tool utilisation, including workflow optimisation.
  • Identify and implement automation, AI-driven enhancements, and playbook developments.
  • Support CSIRT activities during major incidents, ensuring coordinated and effective response.
  • Monitor MSSP performance, ensuring alert triage and investigations meet quality and timeliness standards.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Requirements

  • Over 2 years’ experience working in an internal SOC or 3 years at an MSSP in a senior role.
  • Deep knowledge of cybersecurity frameworks: MITRE ATT&CK, Cyber Kill Chain, Incident Response Lifecycle, Pyramid of Pain.
  • Expertise in threat hunting and advanced investigative analysis.
  • Deep understanding of attacker tactics, techniques, and procedures (TTPs) and threat actor behaviours.
  • Proficiency in SIEM/XDR platforms and tuning detection logic, use cases, and alert optimisation.
  • Advanced querying and scripting skills (e.g., KQL, SPL) for data analysis and threat detection.
  • Ability to recommend tooling enhancements and process improvements to strengthen SOC capability.
  • Practical knowledge of networks, operating systems, and scripting for investigative purposes.
  • Experience in leading technical initiatives and driving service maturity improvements.
  • Demonstrated ability to coach and develop team members, fostering technical excellence.

Desirable

  • GIAC certifications
  • Other relevant certifications such as CISSP or CISM will be considered.
  • A relevant degree, with professional experience.

What’s in it for you?

We’re all about the little helps. That’s why we make sure our Tesco colleague benefits package takes care of you – both in and out of work. Click Here to find out more!

  • Annual bonus scheme of up to 20% of base salary
  • Holiday starting at 25 days plus a personal day (plus Bank holidays)
  • Private medical insurance
  • 26 weeks maternity and adoption leave (12 months service required at the qualifying date) at full pay, followed by 13 weeks of Statutory Maternity Pay or Statutory Adoption Pay, we also offer 6 weeks fully paid paternity leave
  • Free 24/7 virtual GP service, Employee Assistance Programme (EAP) for you and your family, free access to a range of experts to support your mental wellbeing

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

The above information is a shortened summary, refer to our policies for full detail

About Us

Our vision at Tesco is to become every customer's favourite way to shop, whether they are at home or out on the move. Our core purpose is ‘Serving our customers, communities and planet a little better every day’. Serving means more than a transactional relationship with our customers. It means acting as a responsible and sustainable business for all stakeholders, for the communities we are part of and for the planet.

We are proud to have an inclusive culture at Tesco where everyone truly feels able to be themselves. At Tesco, we not only celebrate diversity, but recognise the value and opportunity it brings. We're committed to creating a workplace where differences are valued, and make sure that all colleagues are given the same opportunities. We’re proud to have been accredited Disability Confident Leader and we’re committed to providing a fully inclusive and accessible recruitment process. For further information on the accessibility support we can offer, please click here.

We’re a big business and we can offer a range of diverse full-time & part-time working patterns across our many business areas, which means that we can find something that works for you. We work in a more blended pattern - combining office and remote working. Our offices will continue to be where we connect, collaborate and innovate. If you are applying internally, please speak to the Hiring Manager about how this can work for you - Everyone is welcome at Tesco.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Skills

Threat Hunting
Incident Response
SIEM
XDR
KQL
SPL
MITRE ATT&CK
Cyber Kill Chain
Technical Leadership
SOC Maturity
Automation
AI Integration
Scripting
Network Security
Analytical Rigour
Mentoring

Location

Welwyn Garden City, England, United Kingdom

Sign up to applySee more jobs like this