Role Overview
We are seeking an experienced SOC Lead / Senior SOC Analyst to play a pivotal role in the establishment, operation, and continuous improvement of a critical Security Operations Centre (SOC) supporting a major programme. This role carries operational leadership responsibility across incident management, SOC capability maturity, and close coordination with a third-party SOC provider.
You will act as the senior escalation point for security incidents, oversee detection capability, and ensure SOC services meet agreed quality and assurance standards within a highly regulated environment.
Key Responsibilities
* Act as the senior escalation point for all security incidents
* Report incidents and SOC performance metrics to SOC Leadership
* Coordinate and direct incident response activities in liaison with the Abacus SOC
* Define, specify, and agree SIEM detection content and use-case development
* Liaise with 3rd party provider on configuration changes, enhancements, and operational alignment
* Support the establishment and scaling of the SOC and dependent security services
* Maintain and assure SOC capabilities against defined quality and compliance criteria
* Support the deployment and integration of ITSM tooling (e.g. ServiceNow)
* Ensure incident workflows, escalation paths, and operational procedures are robust and auditable
Required Skills & Experience
* Strong experience in SOC operations within government, defence, or critical national infrastructure
* Proven leadership in incident response and security operations escalation
* Deep understanding of SIEM platforms, detection engineering, and alert lifecycle management
* Experience working with third-party or managed SOC providers
* Familiarity with ITSM tooling, ideally ServiceNow
* Strong stakeholder management and reporting capability
* Understanding of regulated environments (MOD, HMG, Defence primes, or similar)
* Experience standing up or transforming SOC capabilities
* Exposure to large-scale programmes (e.g. major defence or aerospace programmes)
#J-18808-Ljbffr