Northwest Partners
Senior SOC Analyst

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Senior SOC Analysts / Incident Response Specialists
Northwest Partners is seeking experienced Senior SOC Analysts / Incident Response Specialists to support a leading social media company’s security operations team in London. This is an opportunity to investigate and respond to high-severity security incidents, conduct cloud and container forensics, and help protect critical infrastructure, systems, and user data from sophisticated cyber threats. The ideal candidates bring 5+ years of hands-on Security Operations Centre (SOC) and incident response experience, strong Linux/Unix expertise, and practical experience investigating incidents across cloud and container environments. Experience using AI-driven tools and automation to enhance security investigations and response is also important.
Work Schedule:
- Four 10-hour shifts per week, 06:00–16:00 UK time.
- Shift patterns are Sunday–Wednesday or Wednesday–Saturday.
Work Arrangement:
- Onsite in Barbican, London.
Contract Duration:
- March 2027.
What You Will Do
- Monitor, triage, investigate, and respond to security alerts and high-severity incidents.
- Lead hands-on investigations, incident containment, remediation, and recovery activities.
- Conduct Linux/Unix system interrogation, log analysis, and forensic artifact collection.
- Perform cloud incident response and container-level investigations across environments including Docker and Kubernetes.
- Investigate threats affecting MacOS endpoints, cloud infrastructure, microservices, and containerised applications.
- Use AI-driven and agentic tools to enhance incident investigations, SOC triage, and response workflows.
- Develop and tune detection alerts to identify anomalous and malicious activity.
- Write scripts and build automation workflows to improve operational efficiency and response capabilities.
- Conduct root-cause analysis and support threat hunting, proactive investigations, and detection engineering.
- Manage SOC tickets and drive incidents through investigation and resolution.
- Collaborate with Threat Hunting, Cyber Threat Intelligence, Digital Forensics, Legal, and Infrastructure teams.
- Work independently in fast-moving incident scenarios and contribute to post-incident reviews and continuous improvement.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
What You Will Bring
- 5+ years of hands-on experience triaging, investigating, managing, and remediating high-severity security incidents.
- Strong operational SOC and incident response experience, including alert triage, ticket handling, containment, and remediation.
- Deep hands-on Linux/Unix command-line experience, including log analysis and forensic artifact collection.
- Experience with cloud forensics and incident response across multi-cloud environments.
- Practical experience with container forensics, including Docker, Kubernetes, and container runtime logs.
- Operational incident response experience across at least two of the following: MacOS endpoints, Linux cloud environments, and microservices/containers.
- Experience leading complex investigations involving multiple data sources, teams, and regions.
- Practical experience using AI-driven tools and developing scripts or automation workflows to improve SOC operations.
- Ability to investigate complex security incidents independently and drive remediation without detailed direction.
- Experience with SIEM platforms such as Splunk.
- Strong analytical, investigative, problem-solving, and communication skills.
- Ability to collaborate effectively with cross-functional security and infrastructure teams.
- Experience with 7AI, agentic security tools, threat hunting, or detection engineering would be advantageous.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Disclaimer
All candidates will be asked to briefly show a government-issued ID on video during the first interview. This step protects the integrity of the hiring process given the rise in applicant impersonation and employment fraud.
About Northwest Partners
Northwest Partners is an equal opportunity employer. At Northwest Partners, we are dedicated to moving at the speed of innovation. We work with clients across the globe to provide exceptional knowledge, talent, and resources. As a trusted partner, we merge the client's vision with our expertise to deliver powerful results. Northwest Partners is known for building and managing elite teams in technology across diverse industries. Our mission is to empower every talent and every client to achieve more.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location