SOC Team Lead

Methods

Greater London

Hybrid

GBP 60,000 - 90,000

Full time

9 days ago
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Pension Salary Exchange
Life Assurance 4x base
Private Medical Insurance
Worldwide Travel Insurance
Enhanced Parental Pay
Season Ticket Loan
Cycle to Work
Wellness Programme
Flexible Working
25 Days Annual Leave + holidays

Job summary

Methods is seeking a SOC Team Lead to drive performance and operational excellence across Cyber Services. You will act as a technical escalation point and line manager, mentoring Cyber Analysts, coordinating incident response, and shaping security playbooks to strengthen the organisation’s security posture.

You will foster a proactive culture, collaborate with Service Desk and other stakeholders, and deputise for the Service Desk Manager during high workload periods.

Qualifications

  • Hands-on experience in a cybersecurity or service desk environment.
  • Knowledge of incident response frameworks, threat detection, and mitigation strategies.
  • Strong leadership and communication skills with the ability to guide teams in high-pressure scenarios.
  • Experience working with SIEM, EDR, and vulnerability management platforms.
  • Understanding of risk-based prioritisation and regulatory compliance considerations.
  • Willingness to support out-of-hours activities based on threat levels or response needs.

Responsibilities

  • Lead cyber service operations with focus on SLA attainment, incident response, and resolution quality.
  • Linemanage Cyber Analysts, setting objectives and supporting individual development plans.
  • Model desired behaviours that promote collaboration, precision, and accountability.
  • Share threat intelligence and cyber knowledge with junior colleagues.
  • Provide training and coaching on cyber operations tooling and security practices.
  • Contribute to root cause analysis and threat hunting strategies.
  • Ensure all cyber processes are documented, regularly reviewed, and updated.
  • Support report production for security metrics, incident trends, and cyber control performance.
  • Collaborate on service review inputs relating to cyber operations and risk assurance.

Skills

Cybersecurity operations
Incident response
Leadership
SIEM/EDR usage
Regulatory compliance

Tools

SIEM
EDR
Vulnerability management

Job description

Since our establishment in 1990, Methods has partnered with a range of central government departments and agencies to transform the way the public sector operates in the UK.

Our mission is to improve and safeguard public-facing services. We apply digital thinking to ensure the future of our public services is centered around our citizens. Our human touch sets us apart from other consultancies, system integrators and software houses - we have a customer-centric value system whereby we focus on delivering what is right for our clients.

We passionately support our clients in the success of their projects while working collaboratively to share skill sets and solve problems. At Methods we have fun while working hard; we are not afraid of making mistakes and learning from them.

Methods are experts in delivering secure, resilient cyber and information services – keeping systems and data safe. We help reduce risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks.
The SOC Team Lead drives performance and operational excellence acrossShared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthenShared Service's security posture. The Team Leader also deputises for theService DeskManager during high workload or absence periods.

Operational Oversight & Incident Coordination
  • Lead cyber service operations with focus on SLA attainment, incident response, and resolution quality
Team Leadership & Development
  • LinemanageCyber Analysts, settingobjectivesand supporting individual development plans
  • Model desired behaviours that promote collaboration, precision, and accountability
  • Share threat intelligence and cyber knowledge with junior colleagues
  • Provide training and coaching on cyber operations tooling and security practices
Governance & Reporting
  • Contribute to root cause analysis and threat hunting strategies
  • Ensure all cyber processes are documented, regularly reviewed, and updated
  • Support report production for security metrics, incident trends, and cyber control performance
  • Collaborate on service review inputs relating to cyber operations and risk assurance
Strategic Collaboration
  • Work closely with theService DeskManager,Service Delivery Managers,Principal Cyber Analyst,and Technical Architect
  • Foster strong relationships with internal stakeholders, customers, and external security partners
  • Contribute to development of security playbooks, standard operating procedures, and escalation pathways
  • Champion a security-first mindset acrossShare Serviceoperations
Essential
  • Hands-on experience in a cybersecurity or service desk environment
  • Knowledge of incident response frameworks, threat detection, and mitigation strategies
  • Strong leadership and communication skills with the ability to guide teams in high-pressure scenarios
  • Experience working with SIEM, EDR, and vulnerability management platforms
  • Understanding of risk-based prioritisation and regulatory compliance considerations
  • Willingness to support out-of-hours activities based on threat levels or response needs
Desirable
  • Certifications such as CompTIA Security+, CISSP, or equivalent
  • Coaching and mentoring experience within cyber or support teams
  • Familiarity with security tooling such as Sentinel, Defender, Splunk, or CrowdStrike
  • Experience contributing to GRC (Governance, Risk, Compliance) or ISO standards
  • Knowledge of ITIL, NIST, or MITRE ATT&CK frameworks
  • Understanding of customer impact and stakeholder management within cyber contexts
Methods is passionate about its people; we want our colleagues to develop the things they are good at and enjoy.
By joining us you can expect
  • Autonomy to develop and grow your skills and experience
  • Be part of exciting project work that is making a difference in society
  • Strong, inspiring and thought-provoking leadership
  • A supportive and collaborative environment
Development – access to LinkedIn Learning, a management development programme, and training
Wellness – 24/7 confidential employee assistance programme
Flexible Working – including home working and part time
Social – office parties, breakfast Tuesdays, monthly pizza Thursdays, Thirsty Thursdays, and commitment to charitable causes
Time Off – 25 days of annual leave a year, plus bank holidays, with the option to buy 10 extra days each year
Volunteering – 2 paid days per year to volunteer in our local communities or within a charity organisation
Pension – Salary Exchange Scheme with 4% employer contribution and 5% employee contribution
Life Assurance – of 4 times base salary
Private Medical Insurance – which is non-contributory (spouse and dependants included)
Worldwide Travel Insurance – which is non-contributory (spouse and dependants included)
Enhanced Maternity and Paternity Pay
Travel – season ticket loan, cycle to work scheme

For a full list of benefits please visit our website (www.methods.co.uk/careers/benefits)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Team Lead
SOC Team Lead

Methods Business and Digital Technology • Greater London

On-site
GBP 70,000 - 90,000
Flexible working
Home working
Private medical insurance
+3
Senior Cyber Analyst
Senior Cyber Analyst

Methods • Greater London

Hybrid
GBP 90,000 - 130,000
Autonomy to develop
Flexible working
Private medical insurance
+1
SOC Analyst - Tier 1
SOC Analyst - Tier 1

Methods • Greater London

Hybrid
GBP 28,000 - 52,000
Flexible Working - home working
25 days annual leave
Pension
+2
SOC Analyst - Tier 1
SOC Analyst - Tier 1

Methods Business and Digital Technology • Greater London

Hybrid
GBP 42,000 - 54,000
Private Medical Insurance
Pension
Life Assurance
+2
Cyber Security Architect
Cyber Security Architect

Methods Business and Digital Technology • Greater London

On-site
GBP 60,000 - 80,000
25 days annual leave plus bank holidays
Flexible working options
24/7 employee assistance programme
+5
Cyber Security Architect
Cyber Security Architect

Methods Business and Digital Technology Ltd • Greater London

Hybrid
GBP 55,000 - 75,000
24/7 confidential employee assistance programme
25 days annual leave plus bank holidays
Pension scheme with employer contribution
+3
Join the Growing Cyber Security Practice at Methods
Join the Growing Cyber Security Practice at Methods

Methods • City of Edinburgh

On-site
GBP 50,000 - 80,000
Access to LinkedIn Learning
25 days annual leave
Private Medical Insurance
+3
DevSecOps Engineer
DevSecOps Engineer

Methods • Worcester

On-site
GBP 70,000 - 110,000
LinkedIn Learning access
Wellness program
Office social events
+7
Join the Growing Cyber Security Practice at Methods
Join the Growing Cyber Security Practice at Methods

Methods • Newcastle upon Tyne

Hybrid
GBP 45,000 - 70,000
Flexible Working
24/7 confidential employee assistance
25 days of annual leave
+5
Service Delivery Manager
Service Delivery Manager

Methods • London

On-site
GBP 55,000 - 65,000
Development opportunities
Flexible working
Wellness programs
+3