Job Search and Career Advice Platform

Enable job alerts via email!

Tech Lead - SOC Responder

Colt Technology Services

City of Westminster

On-site

GBP 260,000

Full time

2 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A global technology service provider in the UK is looking for a Senior Information Security Manager to oversee SIEM and incident response tools. Responsibilities include managing security safeguards, analyzing incidents, and enhancing operational processes. The ideal candidate has over 6 years of Information Security Incident Response experience and a degree in IT or engineering. The role offers a competitive base salary of £175k and a total compensation package of £260-300k, reflecting the high value placed on security expertise.

Qualifications

  • 6+ years of Information Security Incident Response experience with a focus on detection.
  • Strong understanding of information security and the threat landscape.
  • Demonstrated experience in all phases of the SDLC.

Responsibilities

  • Manage SIEM and IR tools including design and administration.
  • Analyze potential infrastructure security incidents.
  • Govern security incident response processes.

Skills

Information Security Incident Response
Networking
Scripting (Python, PowerShell, Unix)
Cyber Security Operations
Communication Skills
Attention to Detail

Education

Degree in Information Technology, Engineering or similar

Tools

SIEM tools
Job description
Responsibilities
  • SIEM, IR tools platform management including all design, implementation and administration activities, use cases preparation and implementation, connector deployment, maintenance & health checks
  • Responsible for operational activities, technology escalation support, security solution assessment, build activities, existing service maturing and build activities assist
  • Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach
  • Establishing and governing the security incident response processes, investigations and security operational processes
  • Maintenance and enhancement of formal service catalogue, service descriptions, targets and performance against these
  • Ensure security services, tools and platforms are adequately maintained
  • Monitoring of and reporting on the effectiveness of our security enforcing technologies
  • Identification and ongoing monitoring of specific security risks and KPIs and production of management information to ensure Colt receives value from key security investments/services
  • Contribute to design, development and maintenance of security standards and controls
  • Align team’s goals and plan with Colt’s long term priorities and strategy
  • Develop and grow the talent and people capability within the security teams
Salary

£175k base, circa £260-300k TC

Qualifications
  • 6+ years Information Security Incident Response experience with a focus on detection and response to malicious activity using log data from various sources preferred
  • Strong networking and systems experience, preferably in an enterprise environment
  • Strong understanding of information security and the threat landscape surrounding enterprise systems
  • Strong scripting experience (Python, PowerShell, Unix shell)
  • Demonstrated experience working in all phases of the SDLC
  • Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), network, and SIEM tools
  • Prior SOC experience a plus
  • Extensive knowledge of network and server security protocols, technologies, and products
  • Industry recognized certifications (CISSP, GCIH, GCFA, OSCP, etc) preferred
  • Strong oral and written communication skills
  • Relentless curiosity and attention to detail
  • Ability to learn quickly and leverage prior experiences to effectively solve current security challenges
  • Refusing to accept the status quo
  • Degree in Information Technology, Engineering or similar
  • SIEM management – Desirable to have some advanced certification from SIEM vendor on products such as ArcSight , MS Sentinel or Logrhythem
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.