Enable job alerts via email!

Cyber Security SOC Lead

FINTEC recruit Ltd

England

On-site

GBP 50,000 - 80,000

Full time

28 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking a Cyber Security SOC Lead to enhance their security operations. This permanent role, based in Hemel Hempstead, offers a unique rotation schedule and the opportunity to work onsite with critical infrastructure in aerospace, defense, and security sectors. The ideal candidate will lead and mentor a small team, driving operational improvements while utilizing advanced security tools and methodologies. This role promises a dynamic environment where your expertise will contribute significantly to safeguarding vital systems. If you are passionate about cyber security and ready to take on a leadership role, this opportunity is perfect for you.

Qualifications

  • Proven experience in a Security Operations Centre (SOC) environment.
  • Strong familiarity with SIEM platforms including Microsoft Sentinel and Splunk.

Responsibilities

  • Monitoring and investigating alerts across security systems.
  • Providing mentoring and line management to SOC Analysts.
  • Maintaining detailed incident documentation and findings.

Skills

Security Operations Centre (SOC) experience
SIEM platforms (Microsoft Sentinel, Splunk)
Mitre Att&ck Framework knowledge
Static malware analysis
Scripting (Python, Perl, Bash, PowerShell, C++)

Education

SOC Level 2 qualification

Tools

Microsoft Sentinel
Splunk
QRadar

Job description

FINTEC recruit is supporting recruitment for a Cyber Security (SOC) Lead. This is a permanent position, based in Hemel Hempstead, working a rotation of 2 days on / 2 nights on & then 4 days in the office. Hours are 6 am to 6 pm, then 6 pm to 6 am. Salaries are discussed on application and negotiable based on experience. The role requires passing UK Security Clearance (DV level). You will support critical infrastructure within the aerospace, defence, and security sectors. The position involves driving operational improvements, working onsite, leading, and mentoring a small team.

Responsibilities:

  1. Monitoring, triaging, and investigating alerts across host and network security systems.
  2. Performing deep analysis of traffic, logs, and system events to identify threats and vulnerabilities.
  3. Providing mentoring and line management to SOC Analysts.
  4. Enhancing team knowledge across SOC tooling, detection methodologies, and threat triage.
  5. Analyzing and optimizing detection rules and use cases based on Mitre Att&ck.
  6. Maintaining detailed and up-to-date incident documentation, findings, and mitigation strategies.
  7. Acting as a representative of the SOC in key meetings and internal stakeholder engagements.

Skills and Experience required for the Cyber Security SOC Lead role:

  • Proven experience in a Security Operations Centre (SOC) environment.
  • Qualified at SOC Level 2.
  • Strong familiarity with SIEM platforms including Microsoft Sentinel and Splunk.
  • Knowledge and use of the Mitre Att&ck Framework for detection and threat analysis.
  • Experience of static malware analysis and reverse engineering (desirable).
  • Scripting or programming skills with Python, Perl, Bash, PowerShell, or C++ (desirable but not essential).
  • SIEM technologies knowledge such as QRadar (desirable but not essential).
  • In-depth understanding of:
    • Client-server applications and multi-tier web environments.
    • Relational databases, firewalls, VPNs, enterprise AntiVirus solutions.

Full details of the Cyber Security SOC Lead role are available upon application. To apply, please submit your current CV or apply via our FINTEC recruit website.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.