
Team Lead, SOC
- Manchester
- Permanent
- Full-time
- Act as a primary escalation point for security incidents, ensuring prompt and effective response.
- Lead incident response efforts during high-priority security events to minimise business impact.
- Follow established escalation procedures to address threats, vulnerabilities, and potential threat actors.
- Provide clients with detailed incident remediation guidance and preventative recommendations.
- Conduct thorough triage and investigations using security tools, including IDS/IPS, Full Packet Capture devices, Firewalls, DDoS detection and mitigation tools, Endpoint Detection and Response (EDR), and SIEM platforms.
- Identify and analyse threats, vulnerabilities, and indicators of compromise (IoCs).
- Document, review, and continuously improve SOC procedures and security monitoring processes.
- Support the ongoing development of Global Management Solutions (GMS) by identifying and implementing process enhancements.
- Provide mentorship and guidance to R1 and R2 Analysts to support their professional growth.
- Contribute to the design and delivery of training programs and continuous improvement initiatives.
- Build and maintain strong working relationships with internal stakeholders and clients.
- Deliver exceptional customer service through proactive monitoring and effective incident management.
- Compile, review, and publish service-focused reports for internal and external stakeholders.
- Stay informed on emerging threats and industry trends to enhance SOC detection and response capabilities.
- Minimum 2-4 years of experience within a SOC Analyst role.
- Previous experience working in a technical, client facing capacity within a SOC.
- Splunk Certified Power User/Advanced Power User
- CompTIA Certifications (Security+/ Network+/ Linux+)
- Crest or GIAC Certification
- Degree in related field.
- Other relevant certifications.