SOC Technical Lead

DGH Recruitment
London, UK
2 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security Domain Name System Security Extensions Intrusion Detection Systems Log Analysis Security Information and Event Management Data Logging Google Cloud Kubernetes
+2 more
Information Technology Security Orchestration, Automation & Response

Job description

Get AI-powered advice on this job and more exclusive features. This range is provided by DGH Recruitment. Your actual pay will be based on your skills and experience - talk with your recruiter to learn more.

Base pay range

Direct message the job poster from DGH Recruitment

Role

SOC Technical Lead (Incident Response / GIAC)

Please note: This role will require 4 days per week on site.

Overview

Reporting into the Security Operations Centre Senior Manager, the role will develop and integrate the Incident Response (IR) / SOC security infrastructure to monitor both on premise and cloud environments. The role will serve as a critical bridge between operations and engineering.

Responsibilities

  • Drive and improve continuous monitoring and incident response, serving as a senior resource in the SOC and Incident Response processes.
  • Configure and integrate platforms, tools, service providers, and solutions into IR/SOC systems, make recommendations as needed.
  • Consolidate and improve security logging and monitoring solutions on premise and in the cloud to detect and respond to security threats in real time.
  • Drive efforts to automate and accelerate the detection and response processes.
  • Ensure integration of input from the deployed suite of security tools to SOC systems (e.g. SIEM/SOAR), including, but not limited to, IDS/IPS, End Point Protection, MDR/XDR, PAM, MFA, DNS Security, and cloud security posture management.

Required Skills / Experience

  • 8+ years of hands-on experience in information security related responsibilities with a strong focus on SOC engineering, incident response, and threat detection/hunting.
  • In-depth knowledge of IR/SOC monitoring, alerting and investigation tools platforms, process, and architecture
  • Experience working with cloud security technologies (AWS, Azure DevOps, Kubernetes, GCP, etc) including cloud log analysis, monitoring, detection, and incident response.
  • Experience with SOC use of SIEM, SOAR, IDS/IPS, DLP, and Endpoint security.

Seniority level

  • Mid-Senior level

Employment type

  • Full-time

Job function

  • Information Technology

Industries

  • Professional Services and Legal Services

City Of London, England, United Kingdom - notice of opportunities and postings may be shown for location relevance.

Referrals increase your chances of interviewing at DGH Recruitment by 2x

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Requirements

  • 8+ years of hands-on experience in information security related responsibilities with a strong focus on SOC engineering, incident response, and threat detection/hunting.
  • In-depth knowledge of IR/SOC monitoring, alerting and investigation tools platforms, process, and architecture
  • Experience working with cloud security technologies (AWS, Azure DevOps, Kubernetes, GCP, etc) including cloud log analysis, monitoring, detection, and incident response.
  • Experience with SOC use of SIEM, SOAR, IDS/IPS, DLP, and Endpoint security.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

11:18 min

Addressing audience questions on security and microservice architectures

Reinhard Kugler · LIVE

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all