About the job
You will work as part of a 24/7 Global Security Operations Centre. The Senior SOC Analyst plays a critical role in protecting the organisation from cyber threats by leading complex security investigations, proactively hunting for adversary activity and continuously improving detection fidelity. This role acts as a senior escalation point within the SOC, providing investigatory leadership, mentoring analysts, and shaping how investigatory tooling including AI‑enabled capabilities is used safely, consistently, and effectively. With seamless collaboration across regions, ensuring continuous security coverage through effective handover.
The role requires strong analytical capability, sound security judgement, and the ability to balance quality response with long‑term detection and risk reduction.
Detection & Response
- Act as senior escalation point for complex/high-severity alerts across SIEM, EDR, cloud and identity platforms.
- Lead end-to-end incident response (investigation, containment, eradication, and post-incident review).
- Correlate alerts with threat intelligence and business context to assess risk and impact.
- Produce clear investigation summaries for technical and non-technical stakeholders.
- Collaborate closely with Incident Response during escalations.
AI-Assisted Investigation & Tooling
- Use AI-enabled features across SOC tooling to accelerate analysis and investigations.
- Apply strong judgement to validate AI outputs and avoid automation bias.
- Provide feedback to improve tooling, workflows, and AI effectiveness.
- Support development of safe and consistent AI usage standards within the SOC.
Threat Hunting & Proactive Detection
- Conduct proactive threat hunting using queries, dashboards and behavioural analytics.
- Identify gaps using frameworks (e.g. MITRE ATT&CK) and translate findings into improved detections and playbooks.
- Detection Optimisation & Governance
- Tune alerts and detections to reduce noise while maintaining coverage.
- Validate and manage exclusions with clear risk assessment and documentation.
- Work with Detection Engineering to enhance detection logic and alert quality.
Collaboration & Mentoring
- Mentor analysts and support their development.
- Provide leadership during incidents and contribute to continuous SOC improvement.
- Collaborate with Security Engineering, Threat Intelligence and Automation teams.
Regional Handover
- Deliver structured handovers with clear incident status, risks, and next steps.
- Ensure continuity and adherence to operational standards across regions.
Required Skills & Experience
Essential
- 3+ years’ experience as a Senior SOC Analyst within an internal SOC environment
- Strong experience in a SOC environment, including handling high‑severity incidents.
- Deep understanding of attacker tradecraft across endpoint, identity, cloud, and email attack surfaces.
- Hands‑on experience with SIEM, EDR, and security investigation platforms.
- Proven threat hunting experience using dashboards, structured queries, and behavioural analytics.
- Experience tuning detections and implementing well‑governed exclusions without increasing risk.
- Ability to clearly document investigations, decisions, and outcomes.
Desirable
- Experience using AI or machine‑learning features within security products.
- Familiarity with SOAR workflows and automation concepts.
- Knowledge of detection engineering concepts and use‑case lifecycle management.
- Experience working in regulated or large‑scale enterprise environments.
Behaviours & Attributes
- Strong analytical mindset
- Risk‑aware decision making, especially when tuning or excluding detections.
- Clear, confident communicator under pressure.
- Proactive and curious, with a continuous improvement mentality.
- Trusted senior presence within the SOC team.
Admiral: Where You Can
We take pride in being a diverse and inclusive business. It's a place where you can Be You, and show up as you are. We’re committed to fostering a people-first culture where everyone is accepted, supported, and empowered to be brilliant. You can, Grow And Progress at a pace and direction that suits you, Make A Difference for our customers and each other, and Share in Our Future with all colleagues eligible for up to £3,600 of free shares each year after one year of service.
Everyone receives 33 days holiday (including bank holidays) when they join us, increasing the longer you stay with us, up to a maximum of 38 days (including bank holidays). You also have the option to buy or sell up to an additional five days of annual leave.
We’re proud of our people-first culture. In fact, we've been recognised as a Great Place to Work for Women, a Great Place to Work for Wellbeing, and an overall Great Place to Work for over 25 years! We’re fully committed to making sure your progression is not slowed or halted by barriers related to race, gender, age, sexuality or any of the protected characteristics.
Our fantastic benefits make sure our colleagues have a great work-life balance; You can view some of our other key benefits here.
Disability Confident Leader
As a Disability Confident Leader, for candidates with a disability or long-term health condition, that opt into the Disability Confident scheme, we’ll invite a fair and proportionate number of applicants that meet the essential requirements of the role to the first stage of our selection process.
If you need any adjustments or support with your application or during the recruitment process, just let us know. Please do email us or contact us on 07386697107. This number is dedicated to supporting candidates that require reasonable adjustments or support during the application process.
#LI-GN1
Talent Partner - Tech & Data
What areas do you look after? I look after the CTO and Cyber, Risk and Resilience departments in the Tech area.
Tell us about you and your Admiral story? I started Admiral in 2019 straight after university in the Motor Claims department as a Claims Handler. I was successful in my application for the internal development programme 'TAP' in 2021, a rotational scheme which placed me in Household Product. I was offered a permanent role there and helped develop our home insurance product for 2 and a half years. My passion had always been people so applied for Talent Acquisition in 2023 and have been here ever since!
Why would you recommend Admiral? I think the internal progression opportunities are one of the best things about Admiral. If you work hard and apply yourself, doors will open for you. I now work in my dream career in People, and have completed my CIPD Level 5. The culture and staff here are also fantastic, from my induction class in Claims I have met my partner of 6 years and my best friend who I was a bridesmaid for this summer. Everyone is so friendly, and I feel fully supported here.
Guidance for using AI during the hiring process
We welcome you to use AI tools to support your application if you choose. Your use of AI won’t affect how you are assessed. However, if you do decide to use it, we encourage you to use it thoughtfully and effectively.
Find out MoreOur Achievements
Related jobs
Salary
Location
Hybrid
Job Type
Full time
Location
Hybrid
Brand
Admiral Group
Department
Pricing and Analytics
Description
We’re looking for two technically strong Data Analysts to join our Customer Operations Data & Analytics team. This is a hands-on role for analysts who enjoy coding, data modelling and turning compl
Reference
11803
Expiry Date
01 Jan 0001
Vacancy managed by
Anna BraddockVacancy managed by
Anna BraddockSalary
Location
Hybrid
Job Type
Full time
Location
Hybrid
Brand
Admiral Group
Department
Admiral Tech
Description
As a SOC Analyst, you are the first line of defence against cyber threats targeting Admiral Insurance. You will work as part of a 24/7 global Security Operations Centre across three regions, monito
Reference
11792
Expiry Date
01 Jan 0001
Vacancy managed by
Georgia NeedhamVacancy managed by
Georgia NeedhamSalary
Location
Hybrid
Job Type
Full time
Location
Hybrid
Brand
Admiral Group
Department
Pricing and Analytics
Description
We are looking for experienced Senior Data Analysts to join Customer Operations Data and Analytics, specialising in analysis, insight and value realisation. Customer Operations is evolving quickly.
Reference
11804
Expiry Date
01 Jan 0001
Vacancy managed by
Anna BraddockVacancy managed by
Anna BraddockOur Benefits
We know our colleagues work hard to serve our customers and keep us innovating, so it’s important to us that they’re well-rewarded.
Alongside our competitive pay we also offer a share package, career growth and development opportunities and a whole host of other great benefits!
Explore our benefits below to discover Where You Can
Where You Can Be You
Financial & Mortgage
Advice
24-Hour
Ecare
Cycle to Work
Scheme
Annual Holiday
Allowance
Flexible
Working
Simply
Health
Private Health
Cover
Critical Illness
Cover
Where You Can Grow & Progress
Learning and
Development
Educational
Sponsorship
Accredited
Qualifications ILM
iLearn
Online Learning
Buy a Book
Scheme
Developmental
Coaching
Port of
Calls
Internal
Mobility
Where You Can Make a Difference
Groups and
Societies
Socials and Team
Days Out
Multi Faith / Quiet
Rooms
Admiral Community
Fund
Give as You
Earn
Awards and Star
Lunches
Corporate Social
Responsibility
Impact
Hours
Where You Can Share In Our Future
Share
Schemes
Refer a Friend
Bonus
Colleague and Family
Insurance Discount
Group Life
Assurance
Pension
Scheme
Life Event
Loan
Tickets to Sponsored
Events
Tusker Salary
Sacrifice



