Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

L3 SOC Analyst

Saviynt

Security Operations Centre Analyst

Saviynt's AI-powered identity platform manages and governs human and non-human access to all of an organization's applications, data, and business processes. Customers trust Saviynt to safeguard their digital assets, drive operational efficiency, and reduce compliance costs. Built for the AI age, Saviynt is today helping organizations safely accelerate their deployment and usage of AI. Saviynt is recognized as the leader in identity security, with solutions that protect and empower the world's leading brands, Fortune 500 companies and government institutions.

Location: United Kingdom

Type: Full-time, permanent

Due to the nature of the UK Government projects this role supports, this position is classified as a Reserved Post. In accordance with the Civil Service Nationality Rules, we can only accept applications from persons with UK residency (at least five years).

Successful candidates must undergo National Security Vetting (NSV). This role requires Security Check SC level clearance as a minimum. Any offer of employment is strictly conditional upon the candidate successfully obtaining and maintaining this clearance.

To meet the vetting criteria, you will be required to have been resident in the UK for a minimum of 5 years immediately prior to your application. Failure to obtain clearance or a lapse in residency history may result in the withdrawal of the employment offer, and you will not be entitled to any compensation from Saviynt as a result.

In line with the Immigration, Asylum and Nationality Act 2006, all shortlisted candidates will be required to provide original documentation verifying their Right to Work in the UK and their British Citizenship during the initial interview stage. We conduct thorough Baseline Personnel Security Standard (BPSS) checks as a precursor to all higher-level clearances.

Role Overview

We are establishing a modern Security Operations Centre designed to deliver proactive, intelligence-driven security outcomes. Moving beyond traditional reactive monitoring, our SOC emphasises AI, automation, detection engineering, and deep cloud security visibility to identify and neutralise sophisticated threats at scale.

The L3 SOC Analyst will act as the senior technical escalation point within the SOC, leading complex investigations, driving automation initiatives, and mentoring junior analysts. This role requires strong hands-on expertise across cloud security, threat hunting, incident response, and orchestration technologies.

What You Will Do
  • Act as the final escalation point for complex incidents originating from L1/L2 analysis.
  • Lead investigations into high-severity security events, including those impacting AWS, Kubernetes clusters and hybrid environments.
  • Perform advanced forensic analysis across endpoints, cloud workloads, and network telemetry to determine root cause, impact, and remediation actions.
  • Correlate telemetry from SIEM, EDR, CSPM, and cloud-native sources to identify sophisticated attack chains.
  • Design, develop, and maintain automated response playbooks within the SOAR platform to improve response efficiency.
  • Build and maintain automation scripts (Python, go, etc.) for alert enrichment, evidence collection, and containment.
  • Integrate security platforms via APIs to enable streamlined, automated detection and response workflows.
  • Identify opportunities to reduce Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR) through automation and process optimisation.
  • Conduct proactive threat hunting across enterprise and cloud environments using intelligence-driven and hypothesis-based methodologies.
  • Serve as an SME for cloud security monitoring leveraging tools such as AWS GuardDuty, CloudTrail, CrowdStrike, and Proofpoint.
  • Develop and tune SIEM detections, correlation rules, and EDR queries aligned to MITRE ATT&CK tactics and emerging threat intelligence.
  • Provide technical mentoring and guidance to L1/L2 analysts to strengthen SOC capability.
  • Maintain and enhance SOC documentation including SOPs, runbooks, and response playbooks.
  • Analyse incident trends and operational metrics to recommend improvements in detection coverage, automation effectiveness, and security posture.
What You Bring
  • Bachelor's degree in Computer Science, Cybersecurity, or related discipline (or equivalent industry experience).
  • Extensive experience in Security Operations with demonstrable time in a senior analyst, threat hunter, or L3 role.
  • Strong hands-on experience in cloud security monitoring and incident response across AWS.
  • Proven scripting and automation capability using Python, Go, PowerShell, Bash, etc.
  • Practical experience with SOAR platforms (e.g., CrowdStrike Fusion SOAR) and SIEM technologies (e.g., CrowdStrike Falcon, Splunk, QRadar, Microsoft Sentinel).
  • Deep understanding of EDR tooling, host/network forensics, and detection engineering practices.
  • Strong working knowledge of the MITRE ATT&CK framework and its application in threat detection and hunting.

If required for this role, you will:

- Complete security & privacy literacy and awareness training during onboarding and annually thereafter

- Review (initially and annually thereafter), understand, and adhere to Information Security/Privacy Policies and Procedures such as:

  • Data Classification, Retention & Handling Policy
  • Incident Response Policy/Procedures
  • Business Continuity/Disaster Recovery Policy/Procedures
  • Mobile Device Policy
  • Account Management Policy
  • Access Control Policy
  • Personnel Security Policy
  • Privacy Policy

Saviynt is an amazing place to work. We are a high-growth, Platform as a Service company focused on Identity Authority to power and protect the world at work. You will experience tremendous growth and learning opportunities through challenging yet rewarding work which directly impacts our customers, all within a welcoming and positive work environment. If you're resilient and enjoy working in a dynamic environment you belong with us!

Saviynt is an equal opportunity employer and we welcome everyone to our team. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the L3 SOC Analyst in United States vacancy
  •  ...We are looking for an experienced L3 SOC Analyst to join a fast-paced, 24x7 Security Operations Centre. This role is perfect for someone who thrives on ownership of complex security incidents , alert tuning , and ensuring consistent, high-quality incident response across... 
    Suggested
    Remote work

    Hamilton Barnes ?

    New York, NY
    5 days ago
  •  ...SOC Analyst - L3 Budapest, HUN Are you a skilled cybersecurity professional who thrives in high-stakes environments and loves solving complex incidents? Do you want to grow your career in a dynamic, global team working with the latest in SecOps tools and threat intelligence... 
    Suggested
    Full time
    Remote work
    Shift work

    Fivesky

    United States
    4 days ago
  • $78.03k

    Itlearn360 is seeking a SOC Security Analyst L3 to defend against advanced cybersecurity threats. This role requires handling incident responses, performing malware analysis, and engaging in threat hunting initiatives in a collaborative environment. With a focus on professional... 
    Suggested
    Remote job

    Itlearn360

    Annapolis, MD
    1 day ago
  • SOC Security Analyst L3 Location: The requirement has been updated to work out of the College Park, Maryland office 4 days per week Shift Requirement BlueVoyant's U.S. Commercial SOC operates on a four days on, three days off schedule. Analysts work one of the following... 
    Suggested
    Work at office
    Local area
    Remote work
    Shift work
    Night shift
    Rotating shift

    Itlearn360

    College Park, MD
    3 days ago
  • Itlearn360 is seeking a SOC Security Analyst L3 to work from its College Park, Maryland office for four days a week. This role is vital in monitoring and defending against security threats faced by global customers. You'll analyze alerts, lead investigations, and mentor... 
    Suggested
    Work at office

    Itlearn360

    College Park, MD
    2 days ago
  •  ...SOC Quality Assurance Role This is going to be a specialized L2 role that will be working in our Quality Assurance (QA) function...  ...scheduled weekly/bi-monthly/monthly QA meetings with L2 and L3 analysts. Coordinate Roundtable topics/training and lunch & learn sessions... 
    Work at office
    All shifts

    RIT Solutions

    Melbourne, FL
    5 days ago
  •  ...Tier 3 Security Analyst Location: Full Remote Contract: 6-month Contract-to-Hire As a Security Operations Center (SOC) Senior Analyst you will be responsible for the identification and tracking of potential security incidents across the enterprise. The SOC Senior... 
    Contract work
    Remote work

    My3Tech Inc

    United States
    4 days ago
  •  ...Technologies (LinkTechConsulting.com), a Las Vegas-based IT consulting firm, is currently seeking a Security Operations Center (SOC) Information Security Analyst to join our team. This position will monitor, analyze, and respond to security events within the scope of a... 

    Link Technologies

    Denver, CO
    5 days ago
  •  ...Reporting Specialist based in Virginia. In this full-time role, you will support federal government initiatives by providing structured SOC reports and maintaining critical KPIs. The ideal candidate holds a bachelor’s degree and has over three years of experience in SOC... 
    Full time

    CGI Technologies and Solutions, Inc.

    Fairfax, VA
    1 day ago
  • $75k - $90k

     ...Position Title: SOC Analyst T3 Position Type: Full-time/exempt Clearance: n/a Location: Huntsville, AL/Remote Salary*: $75,000 - $90,000 *Dependent...  .... Assistance with compliance mandates related to CMMC L2 and L3 implementation. Track and understand emerging security... 
    Full time
    Remote work

    Summit7

    Huntsville, AL
    1 day ago
  •  ...Security Analyst / SOC Analyst Position: Security Analyst / SOC Analyst Location: Miami, FL – USA | On-site Type: Full Time Start: Immediate Salary: Based on competencies About BunkerSec.com BunkerSec is a leading provider of Cyber Defense and Technology Solutions , protecting... 
    Full time
    Immediate start

    BunkerSec Corp.

    Doral, FL
    2 days ago
  •  ...Senior SOC Analyst (L3) Location: Denver, CO (Hybrid) Contract - 12 Months Must need 3-4 years of Telecom domain experience in recent. Project-Specific Prerequisite Skills: Rapid7 InsightIDR (XDR+SIEM) Rapid7 InsightConnect (SOAR) Key Responsibilities... 
    Permanent employment
    Contract work
    Interim role

    MetaSense

    Denver, CO
    4 days ago
  •  ...Title: SOC Analyst Location: San Jose, CA 95134 Schedule: Onsite M-F 8am-5pm PST Pay: up to $45/hr W2 Type: 6-12 month contract...  ...activities Escalate complex or high-risk incidents to senior (L3) analysts or incident response teams with clear documentation and... 
    Contract work
    Shift work

    Apex Systems

    San Jose, CA
    4 days ago
  •  ...staffing and consulting firm is seeking an Information Security Analyst to play a critical role in protecting company data and systems....  ...remote position, preferably based in Texas, involves monitoring SOC alerts, investigating incidents, and managing vulnerabilities. Candidates... 
    Remote job

    Insight Global

    Dallas, TX
    4 days ago
  • $65k - $95k

     ...provide all necessary tooling through our security-as-a-service solution, UV Lens. Job Summary The Security Analyst (Level I) is a crucial Security Operations Center (SOC) team member. You will be vital in monitoring, analyzing, and responding to security threats and... 
    Temporary work
    Work experience placement
    Shift work
    Rotating shift

    UltraViolet Cyber

    Camas, WA
    1 day ago
  • The L3 Security Analyst is responsible for providing advanced-level security analysis and incident response within the SOC team. They will be involved in proactive threat hunting, complex incident investigations, and handling security breaches. Proactive threat hunting... 

    SPHYNX Group

    Brooklyn, NY
    4 days ago
  •  ...Information Security Office (ISO), Security Operations Center (SOC) The Information Security Office (ISO), Security Operations Center...  ...Counsel, etc.) Required Skills: Network Security Additional Skills: Security Analyst This is a high PRIORITY requisition.... 
    Work at office

    Kaav Inc.

    Augusta, ME
    3 days ago
  • $119k - $124k

     ...We are currently accepting resumes for a Business Analyst IT L3 position in Torrance, CA. This position is Hybrid Salary range: $119-124k Benefits offered: Medical, Vision, Dental, 401 K The selected candidate will perform the following duties:... 
    Remote work

    UNICON International

    United States
    5 days ago
  • Chenega MIOS SBU is seeking a Security Operations Center Analyst (SOC) in Arlington, Virginia. This role is pivotal to our national security IT services, contributing to government missions and critical infrastructure. As a SOC Analyst, you will monitor networks, manage... 

    Chenega MIOS SBU

    Arlington, VA
    4 days ago
  •  ...solving real-world challenges and helping to build a safer digital future for our clients. About this role We are looking for a SOC Analyst - Tier 1 (f/m/x) to join our Security Operations team. In this role, you will act as the first line of defense, monitoring security... 
    Internship
    Remote work

    Eye Security

    Staten Island, NY
    4 days ago
  • $110k - $125k

     ...UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India. Ultraviolet Cyber is seeking a SOC Analyst to join our Federal Delivery Team. The Security Operations Center (SOC) Analysts will be responsible for 24/7 threat monitoring,... 
    Full time
    Temporary work
    Remote work
    Monday to Friday

    GrabJobs

    United States
    15 hours ago
  •  ...Cybersecurity Analyst (SOC Analyst / Threat Monitoring & Response) Avint is hiring a Cybersecurity Analyst to support and protect critical systems within the HACS program at FRTIB HQ. The role involves monitoring security events, analyzing threats, and supporting incident... 
    Work experience placement

    GrabJobs

    Los Angeles, CA
    2 days ago
  •  ...A cybersecurity solutions provider is seeking a Remote SOC Analyst to join their team in Atlanta, Georgia. The ideal candidate will have over 2 years of experience in SOC or cybersecurity operations and hold relevant security certifications. Responsibilities include investigating... 
    Remote work

    Global Channel Management

    Atlanta, GA
    4 days ago
  •  ...About the job Remote SOC Analyst Remote SOC Analyst needs 2+ years of experience in a SOC or cybersecurity operations role. SOC Analyst requires: Security certifications such as Security+, CySA+, GCIH, GCIA, or equivalent. Experience with scripting... 
    Remote work

    Global Channel Management

    United States
    1 day ago
  •  ...of inspiration and expand your capabilities, then consider a career in Advisory. KPMG is currently seeking a Senior Specialist, SOC Analyst Level II to join our Advisory Services practice. Responsibilities Lead advanced security event investigation and incident triage,... 
    H1b
    Local area
    Shift work
    Night shift
    Weekend work

    KPMG Careers

    Doral, FL
    3 days ago
  • $52k - $200k

     ...plan what information to gather, analyze it, and present the findings in clear PowerPoints or reports. Collaboration with Design and SOC teams will also be required to understand technical needs and details. The majority of the work is remote with a few visits to the Intel... 
    Contract work
    Work experience placement
    Local area
    Remote work
    Shift work

    Intel Corporation

    Santa Clara, CA
    5 days ago
  •  ...A cybersecurity service provider is looking for a SOC Analyst to monitor and respond to security incidents while collaborating with various teams. The candidate will support essential cybersecurity services within a Managed Security Services environment. Ideal applicants... 
    Remote work

    viLogics

    Ebensburg, PA
    2 days ago
  •  ...you'll be surrounded by people who believe in what they do-and in you. Join a team where you can make a difference! The Senior SOC Analyst is an experienced cybersecurity professional responsible for handling complex and high-priority security inquiries, incidents,... 
    Flexible hours
    Shift work
    Weekend work

    N-able

    Morrisville, NC
    5 days ago
  •  ...Hello, Hope you are doing well, Position: GGC Senior SOC Analyst Location: 1000 University Center Lane Lawrenceville, GA 30043 Duration: Long Term Client: State of GA Job Description: Under general supervision, plans, directs and coordinates... 
    Permanent employment

    My3Tech Inc

    Atlanta, GA
    1 day ago
  •  ...Job Description We are seeking a Senior SOC Analyst to join our Security Operations team, responsible for proactively monitoring, detecting, analyzing, and responding to cybersecurity threats across the organization. This individual will serve as a key contributor in... 
    Contract work

    Insight Global

    Santa Ana, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to L3 SOC Analyst. Be the first to apply!