Cyber Defense Analyst
2 days ago
Southampton
If you need support in completing the application or if you require a different format of this document, please get in touch with at or call TCS London Office number 02031552100 / +44 204 520 2575 with the subject line: “Application Support Request”. Role: Cyber Defense Analyst Job Type: Permanent Location: Southampton Are you passionate about driving innovation and best practices in Cybersecurity? We have an exciting opportunity for you – Cyber Defense Analyst! Careers at TCS: It means more TCS is a purpose-led transformation company, built on belief. We do not just help businesses to transform through technology. We support them in making a meaningful difference to the people and communities they serve - our clients include some of the biggest brands in the UK and worldwide. For you, it means more to make an impact that matters, through challenging projects which demand ambitious innovation and thought leadership. • Drive robust security operations and continuous improvement., • Work with cutting‑edge security and digital technologies., • Enable smarter, faster, and more resilient cyber defence capabilities. The Role As a Cyber Defence Analyst, you will be responsible for identifying, analysing, and responding rapidly to potential security threats. You will interpret threat data, conduct in‑depth investigations, enhance detection capabilities, and proactively manage and tune security tools to ensure optimal performance. You will play a key role within Security Operations, supporting incident response, threat hunting, and continuous improvement of cyber defence capabilities in a fast‑paced and evolving environment. Participation in an on‑call rota for security incidents is required as part of this role. Key responsibilities: • Proactively monitor, investigate, and respond to alerts generated by SIEM tools and ticketing systems, managing incidents through to closure or triggering IT incident management processes where required., • Manage incident and approval queues within IT service management and ticketing platforms., • Act as a Security Operations subject‑matter expert for nominated technologies, ensuring effective configuration, optimisation, and ongoing management of assigned security tools., • Support Security Operations leadership by providing assurance over services delivered by Managed Security Service Providers., • Ensure Security Operations processes and procedures are clearly documented and support knowledge sharing across the team and wider IT organisation., • Assist with security investigations, vulnerability analysis, and remediation activities., • Derive actionable insights from cyber threat intelligence to enhance understanding of the evolving threat landscape., • Process Indicators of Attack (IOAs) and Indicators of Compromise (IOCs) to improve detection rules and security control configurations., • Perform proactive threat hunting activities based on emerging threats and organisational intelligence., • Conduct confidential eDiscovery investigations, document findings, and present evidence where required., • Support additional security projects and operational activities as needed., • Collaborate effectively with internal and external stakeholders, including IT teams, end users, and service requestors. Your Profile Essential skills/knowledge/experience: • Experience in security use‑case development, security tooling configuration and operations, and log source onboarding into SIEM platforms., • Strong understanding of case management tools and IT service management or ticketing systems., • Extensive knowledge of Security Operations controls, processes, and best practices., • Hands‑on experience with SIEM solutions and vulnerability management tools., • Foundational knowledge of networking, perimeter security controls, identity and access management, and operating systems., • Understanding of cloud security controls and container security concepts., • Experience with scripting and basic coding to support automation and analysis., • Experience configuring and operating EDR platforms, with knowledge of the MITRE ATT&CK framework., • Prior experience conducting eDiscovery investigations and handling sensitive data., • Industry‑recognised security certifications such as CISSP, GIAC, or CEH., • Strong written, verbal, and presentation skills, with the ability to clearly communicate technical information., • Ability to work effectively under pressure during security incidents and manage competing priorities., • Strong analytical and problem‑solving skills., • Proven ability to collaborate with stakeholders and build effective working relationships. Desirable skills/knowledge/experience: • Ability to onboard multiple log sources, develop and fine‑tune detection use cases, and implement automation to improve security operations efficiency., • Experience implementing, managing, and optimising SIEM platforms. Rewards & Benefits TCS is consistently voted a Top Employer in the UK and globally. Our competitive salary packages feature pension, health care, life assurance, laptop, phone, access to extensive training resources and discounts within the larger Tata network. We offer health & wellness initiatives and sports events; we are the proud sponsor of the London Marathon. Diversity, Inclusion and Wellbeing Tata Consultancy Services UK&I is committed to meeting the accessibility needs of all individuals in accordance with the UK Equality Act 2010 and the UK Human Rights Act 1998. We welcome and embrace diversity in race, nationality, ethnicity, disability, neurodiversity, gender identity, age, physical ability, gender reassignment, sexual orientation. We are a disability inclusive employer and encourage disabled people to apply for this role. As a Disability Confident Employer, we offer an interview to applicants with disabilities or long-term conditions who meet the minimum criteria for the role. Please email us at if you would like to opt in. If you are an applicant who needs any adjustments to the application process or interview, please contact us at with the subject line: “Adjustment Request” or call TCS London Office 02031552100 / +44 204 520 2575 to request an adjustment. We welcome requests prior to you completing the application and at any stage of the recruitment process. Next Steps: Application Process • Skill-Based discussion: This will be a level 1 interview with the project team, it can be via video or in-person. Details will be confirmed by your recruiter., • Managerial discussion: This discussion will focus on behavioural aspects and person-organisation fit., • HR Discussion: This will be with one of the members of the HR team and will cover your career journey, aspirations for growth, compensation and any other questions you may have. Beware of Fraudulent offers This is to notify you that TCS does not ask for any sort of payment or security deposit from candidates at any stage of the recruitment process. The firm never sends out job offers from free internet email services like Gmail, Yahoo Mail, and so on. TCS has not authorised any third-party company to collect money on their behalf. As a vigilant job seeker, beware of fraudulent recruitment activity and protect your interests! You can write to to report any fraudulent activity. Due to the high volume of applications, we will be unable to contact each applicant individually on the status of their application. If you have not received a direct response within 30 days, then it should be deemed unsuccessful on this occasion. Join us and do more of what matters. Apply online now.