SOC and Incident Response Lead

ASOS

Greater London

On-site

GBP 85,000 - 120,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Employee discount (ASOS)
Employee sample sales
25 days annual leave + 1 extra day
Discretionary bonus scheme
Private medical care
Flexible benefits allowance
Learning opportunities

Job summary

ASOS is seeking an experienced SOC and Incident Response Lead to provide hands‑on technical leadership across security monitoring, detection, engineering, and investigations. You will lead the SOC and Incident Response team, coordinate with our MSSP, and drive improvements in detection, response times, and overall security posture.

You will bridge technology teams, cyber security, and external partners to ensure a coordinated response to incidents, reporting to Head of Security Operations.

Qualifications

  • Experience leading and coordinating responses to complex cyber security incidents.
  • Ability to act as technical lead in high‑pressure situations.
  • Proven experience mentoring SOC Analysts and Incident Responders.

Responsibilities

  • Lead the SOC and Incident Response team day to day, providing technical direction and prioritisation.
  • Own and improve detection lifecycle, tune alerts, and map coverage to attack techniques.
  • Establish incident response processes, ensuring alignment with best practices.
  • Investigate incidents with SIEM/EDR and guide analysts through complex findings.
  • Define incident response metrics and report KPIs to senior management.

Skills

Incident response
SOC leadership
Mentoring
Stakeholder mgmt
Analytical skills
Cloud security
Azure/AWS
Threat detection
Communication

Tools

SIEM
EDR
Forensic tooling
Threat intel

Job description

Company Description

We’re ASOS, the online retailer for fashion lovers all around the world.

We exist to give our customers the confidence to be whoever they want to be, and that goes for our people too. At ASOS, you’re free to be your true self without judgement, and channel your creativity into a platform used by millions.

But how are we showing up? We’re proud members of Inclusive Companies, are Disability Confident Committed and have signed the Business in the Community Race at Work Charter and we placed 8th in the Inclusive Top 50 Companies Employer list.

Everyone needs some help showing up as their best self. Let our Talent team know if you need any adjustments throughout the process in whatever way works best for you.

Job Description
The Role

As an experienced SOC and Incident Response Lead at ASOS, you will provide hands‑on technical leadership across security monitoring, detection, engineering, incident response, and threat‑led investigations. You will lead the SOC and Incident Response team, ensure security incidents are investigated and resolved effectively, and maintain a strong operating relationship with our external MSSP. The ideal candidate will combine deep technical expertise with proven experience leading analysts, improving operational capability, managing stakeholders, and making sound decisions under pressure.

The role will act as the bridge between wider technology teams, the cyber security team, and third‑party partners, ensuring a coordinated and consistent response to cyber security incidents.

This role reports to the Head of Security Operations.

Responsibilities
  • Lead the SOC and Incident Response team day to day, providing technical direction, coaching analysts, maintaining effective operations, and ensuring the team has clear priorities, strong morale, and the capability to respond to complex security incidents.
  • Own and improve the SOC detection lifecycle, including reviewing detection coverage, tuning noisy or low‑value alerts, creating new detections from threat intelligence and incident learnings, and mapping coverage against relevant attack techniques and critical business assets.
  • Establish and maintain incident response processes, procedures, and documentation, ensuring they align with industry best practices.
  • Strong hands‑on experience with SIEM, EDR, cloud security, identity, email security, and forensic analysis tooling, with the ability to investigate incidents, validate detections, and guide analysts through complex technical findings.
  • Define incident response metrics, dashboards, track and report on key performance indicators (KPIs) to senior management, suggesting improvements as needed.
  • Delegate unassigned newly submitted tickets to analysts keeping in mind current workloads and availability.
  • Conduct regular incident response training and drills to enhance team readiness and improve response times.
  • Lead incident post‑mortem analysis to identify root causes, lessons learned, and recommend measures for prevention or improvement.
  • Conduct periodic threat simulation activities to evaluate the adequacy of deployed detective/preventative controls.
Qualifications
About you
  • Proficiency in incident response tooling, including SIEM, EDR, cloud security, threat intelligence and forensic analysis platforms.
  • Demonstrable experience leading and coordinating responses to complex cyber security incidents, acting as a technical lead during high‑pressure situations.
  • Proven experience managing, mentoring and developing SOC Analysts and Incident Responders within a Security Operations environment.
  • Strong analytical and problem‑solving abilities, with the capability to rapidly assess, contain and remediate security threats.
  • Ability to make effective decisions under pressure whilst managing multiple incidents, priorities and stakeholders simultaneously.
  • Experience working with cloud security technologies and environments, particularly Azure and/or AWS.
  • Experience building, tuning and improving security monitoring, detection engineering and threat detection capabilities.
  • Strong stakeholder management and communication skills, with the ability to translate technical security issues into clear business risk and impact for senior leadership.
  • Experience conducting incident post‑mortems, root cause analysis, tabletop exercises and crisis response testing to drive continuous improvement.
  • Working knowledge of UK security and compliance frameworks, including PCI‑DSS, GDPR, NIST, ISO 27001 and Cyber Essentials.
Additional Information
BeneFITS'
  • Employee discount (hello ASOS discount!)
  • Employee sample sales
  • 25 days paid annual leave + an extra celebration day for a special moment
  • Discretionary bonus scheme
  • Private medical care scheme
  • Flexible benefits allowance - which you can choose to take as extra cash, or use towards other benefits
  • Opportunity for personalised learning and in‑the‑moment experiences that enable you to thrive and excel in your role
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

SOC and Incident Response Lead
SOC and Incident Response Lead

ASOS • City Of London

On-site
GBP 90,000 - 120,000
Employee discount (ASOS)
Employee sample sales
25 days paid annual leave + extra day
+4
Security Analyst
Security Analyst

ASOS.com • Greater London

On-site
GBP 42,000 - 54,000
Employee discount
Employee sample sales
25 days annual leave
+2
Security Analyst
Security Analyst

ASOS • Greater London

On-site
GBP 32,000 - 48,000
Employee sample sales
25 days annual leave
Private medical care
+2
Vulnerability, Threat & Exposure Management Analyst
Vulnerability, Threat & Exposure Management Analyst

ASOS.com • Greater London

On-site
GBP 65,000 - 95,000
Employee discount
Sample sales
Annual leave + celebration day
+4
Vulnerability, Threat & Exposure Management Analyst
Vulnerability, Threat & Exposure Management Analyst

ASOS • Greater London

On-site
GBP 70,000 - 90,000
Employee discount
Employee sample sales
25 days paid annual leave + extra day
+4
Threat & Exposure Management Analyst
Threat & Exposure Management Analyst

ASOS • Greater London

On-site
GBP 70,000 - 110,000
Employee discount
Employee sample sales
Annual leave + celebration day
+4
Vulnerability, Threat & Exposure Management Analyst
Vulnerability, Threat & Exposure Management Analyst

SmartRecruiters, Inc. • Greater London

Hybrid
GBP 65,000 - 90,000
Discretionary bonus
Private medical care
Flexible benefits
+3
Associate SOC Analyst
Associate SOC Analyst

NCC Group • Manchester

Hybrid
GBP 32,000 - 52,000
Flexible Working
Generous Holiday Allowance
Medicash & Critical Illness Scheme
+6
Head of Compliance and Data Privacy - 12 month FTC
Head of Compliance and Data Privacy - 12 month FTC

ASOS.com • Greater London

Hybrid
GBP 120,000 - 180,000
Employee discount
Employee sample sales
25 days paid annual leave + extra day
+3
Senior Product Analyst
Senior Product Analyst

ASOS.com • Greater London

On-site
GBP 60,000 - 85,000
Employee discount
Bonus scheme
Private medical care
+2