Rodeo
Get started

IBM

SOC Analyst (24/7 Shift) - Public Sector

Winchester
Posted about 20 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

Introduction

At IBM CIC, we provide technical and industry expertise to a wide range of public and private sector clients in the UK.

A career in IBM CIC means you’ll have the opportunity to work with leading professionals across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world. You will get the chance to deliver effective solutions, driving meaningful business change for our clients, using some of the latest technology platforms.

Curiosity and a constant quest for knowledge serve as the foundation to success here. You’ll be encouraged and supported to constantly reinvent yourself, focusing on skills in demand in an ever-changing market. You’ll be working with diverse teams, coming up with creative solutions which impact a wide network of clients, who may be at their site or one of our CIC or IBM locations. Our culture of evolution centres on long-term career growth and development opportunities in an environment that embraces your unique skills and experience.

Your Role And Responsibilities

As a Technical Consultant specialising in Threat Detection, Response & Intelligence, you will support and lead the monitoring, detection, and initial response to cyber security threats within a 24×7 SOC consulting environment.

You will play a key role in maintaining operational excellence on shift, supporting incident investigation, and ensuring consistent delivery of high-quality security operations across client environments.

Working across SIEM platforms, security tooling, and incident response workflows, you will help ensure threats are identified, triaged, and escalated effectively, while contributing to the continuous improvement of SOC processes and capabilities.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

This is a hands-on operational role with responsibility for incident leadership, team support, and quality assurance, alongside exposure to client environments and senior stakeholders.

Key Responsibilities

  • Monitor, triage, and investigate security alerts and incidents across a range of SIEM and security platforms
  • Lead or support incident response activities, including:
    • Initial investigation
    • Containment coordination
    • Escalation to relevant teams
  • Act as a senior presence on shift, supporting Tier 1/2 analysts and ensuring smooth SOC operations
  • Drive incident quality and consistency, ensuring playbooks and procedures are followed
  • Support major incident initiation and coordination, including communication across technical and non-technical stakeholders
  • Analyse security events and identify
    • Patterns
    • Threat behaviours
    • Opportunities for improvement
  • Contribute to playbook development and refinement, improving SOC efficiency and response capability
  • Work with detection and engineering teams to
    • Improve alert quality
    • Reduce false positives
    • Support operational effectiveness
  • Produce clear and structured incident reports and handovers
  • Participate in shift handovers, retrospectives, and continuous improvement activities
  • Support client interactions where required, providing updates and operational insights

Preferred Education

Bachelor's Degree

Required Technical And Professional Expertise

  • Proven experience working in a SOC environment (L2 / L3 level) within a 24×7 operational setting
  • Strong experience with SIEM platforms, such as Microsoft Sentinel, QRadar, Splunk, Elastic or similar
  • Practical experience in
    • Incident triage and investigation
    • Security event analysis
    • Alert validation and escalation
  • Understanding of:
    • Incident response processes and workflows
    • Threat detection methodologies
  • Exposure to security tooling, such as
    • EDR/XDR platforms
    • Network security technologies
    • Identity and access systems
  • Ability to interpret logs and identify suspicious behaviour across:
    • Endpoints
    • Networks
    • Cloud environments
  • Strong communication skills, with the ability to clearly articulate incidents and risks
  • Experience working in client-facing or service-based environments

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

This role is subject to pre-employment screening in line with the UK Government’s Baseline Personnel Security Standard (BPSS). An additional range of Personal Security Controls referred to as National Security Vetting (NVS) may apply, this could include meeting the eligibility requirements for The Security Check (SC) or Developed Vetting (DV).

Preferred Technical And Professional Experience

  • Experience as an Analyst and/or acting as a shift lead or senior escalation point within a SOC
  • Exposure to threat hunting or detection improvement activities
  • Experience working with
    • MITRE ATT&CK
    • Threat intelligence integration
  • Familiarity with SOAR platforms and automated response workflows
  • Relevant certifications such as:
    • SC-200
    • GCIH / GIAC
    • Vendor SIEM certifications
  • Experience working in regulated or public sector environments
  • Understanding of SOC performance metrics and continuous improvement approaches
  • Active UK Security Clearance
Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

Winchester, England, United Kingdom

Sign up to applySee more jobs like this