Enable job alerts via email!

SOC Shift Lead

Shared Services Connected Ltd

Hemel Hempstead

On-site

GBP 50,000 - 70,000

Full time

28 days ago

Job summary

A leading company in the Cyber sector is seeking a SOC Shift Lead to manage a team of Analysts and oversee security operations. This role requires the ability to monitor incidents, analyze threats strategically, and lead with a focus on continuous improvement. Located in Hemel Hempstead with shift work involved, the ideal candidate will have a strong background in SOC operations, team management skills, and expertise in tools such as Microsoft Sentinel and Splunk.

Benefits

25 days annual leave with purchase option
Health cash plan
Life assurance
Pension
Generous flexible benefits fund

Qualifications

  • Demonstrable experience in Security Operations Centre.
  • Experience managing and developing teams.
  • Proficient in Microsoft Sentinel and Splunk.

Responsibilities

  • Monitor, triage, and investigate security incidents.
  • Conduct in-depth analysis of network traffic and logs.
  • Represent the SOC in Partner meetings.

Skills

Security Operations Centre
People management
Microsoft Sentinel
Splunk
Mitre Att&ck Framework
Networking principles

Job description

Social network you want to login/join with:

Our Cyber team look after some complicated and compelling areas within Aero, Defence and Security. If you want to lead from the front, gain experience working with multiple clients, and always have access to the latest technologies, then join the team who are on the cusp of continued growth and known as leaders in their field.

Our new position of SOC Shift Lead will direct a team of SOC Analysts, conduct monitoring and triage of alerts associated with host and network security events for our client’s critical infrastructure and support the SOC through both delivery of client work and adding skills and ideas to this already diverse team.

Job alert service

This role is based on site Hemel Hempstead and is shift work. 2 x days at 6am to 6PM, 2 Nights at 6PM to 6am, 4 days off.

Please note you do need to be eligible for DV Clearance for this role.

What you'll be doing:

  • Monitor, triage, and investigate security incidents on critical client infrastructure.
  • In depth analysis of network traffic, logs, and system events to identify potential security threats and vulnerabilities.
  • Line Management.
  • Maintain, improve and develop team knowledge of SOC tools, security operations and triage.
  • Analyse and improve detection rules and use cases in line with Mitre Att&ck and threat-informed defence.
  • Maintain and update security incident documentation, including incident reports, analysis findings, and recommended mitigation strategies.
  • Represent the SOC within Partners meetings.
  • Ability to work shift from our office in Hemel Hempstead.

What you’ll bring:

  • Demonstrable experience in Security Operations Centre.
  • People management experience to help develop Analysts and lead careers.
  • Demonstrable experience of using Microsoft Sentinel and Splunk.
  • Knowledge and experience with Mitre Att&ck Framework.
  • Solid grasp of client-server applications, multi-tier web applications, relational databases, firewalls, VPNs, and enterprise AntiVirus products.
  • Good understanding of networking principles including TCP/IP, WANs, LANs, and commonly used Internet protocols such as SMTP, HTTP, FTP, POP, LDAP.

It would be great if you had:

  • Static malware analysis and reverse engineering.
  • Programming and scripting such as Python, Perl, Bash, PowerShell, C++.
  • CREST Practitioner Intrusion Analyst/Blue Teams Level 1 or other SOC related certifications.
  • Experience with SIEM technologies, namely Sentinel and Splunk, with some experience with QRadar.

If you are interested in this role but not sure if your skills and experience are exactly what we’re looking for, please do apply, we’d love to hear from you!

Employment Type:Permanent
Location:Hemel Hempstead, Shifts
Security Clearance Level: Eligible for DV (Developed Vetting) or currently holding this clearance
Internal Recruiter:Jane
Benefits:25 days annual leave with the choice to buy additional days, health cash plan, life assurance, pension, and generous flexible benefits fund


Please note that if you are NOT a passport holder of the country for the vacancy you might need a work permit. Check our Blog for more information.

Bank or payment details should not be provided when applying for a job. Eurojobs.com is not responsible for any external website content. All applications should be made via the 'Apply now' button.

Created on 16/07/2025 by TN United Kingdom

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs