Cyber Security Operations Centre (SOC) Manager

Contracts IT
UK
4 days ago

Role details

Contract type
Temporary to permanent
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Amazon Web Services Microsoft Azure Cyber Security Information Systems Intrusion Detection and Prevention Security Information and Event Management Software Vulnerability Management Data Logging Cloud Platform System Mitre Att&ck QRadar Cyber Threat Analysis
+3 more
Microsoft Sentinel ArcSight Event Correlation Splunk

Job description

We are recruiting for an experienced Cyber Security Operations Centre (SOC) Manager to join a high-profile organisation responsible for delivering critical national services.

This is an excellent opportunity for a strategic cyber security leader who has successfully built, developed or managed Security Operations Centre (SOC/CSOC) capabilities and can drive cyber resilience across a complex enterprise environment.

Working closely with senior stakeholders, technical teams and external security partners, you will lead the delivery and continuous improvement of cyber security operations, ensuring robust monitoring, incident response and threat management capabilities are in place to protect critical business services., * Lead the strategic development and operational delivery of the Cyber Security Operations Centre (CSOC).

  • Define and implement the cyber security operations strategy, ensuring alignment with organisational objectives and evolving threat landscapes.
  • Lead cyber incident response activities, coordinating technical teams, senior stakeholders and external agencies during security incidents.
  • Develop, maintain and continuously improve cyber incident response plans, processes and playbooks.
  • Drive the development of monitoring, logging and threat detection capabilities using a use-case-driven approach.
  • Oversee vulnerability management processes, ensuring appropriate remediation and mitigation activities are implemented.
  • Manage relationships with Managed Security Service Providers (MSSPs), technology vendors and external partners.
  • Provide strategic advice and reporting to senior leadership on cyber risks, incidents, resilience and investment priorities.
  • Ensure security operations align with recognised industry standards, government guidance and regulatory requirements.
  • Lead, mentor and develop cyber security professionals while fostering a culture of continuous improvement.

Requirements

  • Proven experience managing or leading a Security Operations Centre (SOC/CSOC).
  • Demonstrable experience delivering effective security monitoring and incident response capabilities.
  • Strong understanding of SIEM technologies, security monitoring, logging and event correlation.
  • Experience leading cyber incident response and coordinating complex security investigations.
  • Knowledge of threat intelligence, threat detection and cyber resilience best practices.
  • Experience managing external suppliers, Managed Security Service Providers (MSSPs) and technology partners.
  • Strong stakeholder management skills with experience communicating cyber risk to senior leadership.
  • Experience developing cyber security strategies, operational roadmaps and governance processes.
  • Knowledge of security frameworks and standards including NCSC guidance, GDPR, Network and Information Systems (NIS) Regulations and MITRE ATT&CK.
  • Excellent leadership, communication and decision-making skills.

Desirable

  • CISSP, CISM or equivalent professional cyber security certification.
  • Experience with Microsoft Sentinel, Splunk, QRadar or similar SIEM platforms.
  • Experience securing cloud environments including Microsoft Azure and/or AWS.
  • ITIL Foundation or equivalent service management qualification., Please note: Due to the nature of this position, the successful candidate will be required to satisfy pre-employment screening and security vetting requirements. Applicants must have the right to work in the UK and be eligible to undergo the necessary checks.

Benefits & conditions

  • Opportunity to work within a highly visible cyber security function supporting critical services.
  • Exposure to enterprise-scale cyber security operations and strategic programmes.
  • Collaborative environment with experienced cyber professionals.
  • Competitive daily rate and the potential for contract extension.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerboard.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all