SOC Operations Technical Lead
Listed on 2026-04-24
-
IT/Tech
Cybersecurity, Security Manager
Job
Location:
LRQA Nettitude:
Birmingham :1, Birmingham : 1 Trinity Park :
Bi
Position Category:
Information Technology
Position Type:
Employee Regular
The purpose of this role is to lead a team of SOC analysts, who are collectively operating on a 24/7/365 basis. Technical and client‑oriented SOC Operations Technical Lead role plays a pivotal senior role within our Managed Security Services Provider (MSSP) environment. This role reports to Head of SOC Operations.
This hands‑on position serves as the senior technical authority for SOC operations, driving excellence in threat detection, incident response, and security operations across a diverse multi‑client portfolio.
You will combine deep technical proficiency with strong consulting skills to mentor analysts, manage shift rotations, optimise SOC processes and tools, lead complex incident escalations, and act as a trusted advisor.
Although you will manage a team of SOC analysts, this is not a purely managerial role; you will remain deeply involved in technical work while elevating team capabilities and delivering strategic value to our clients.
In this role you will be accountable for the effective functioning of your team, ensuring high performance standards while continuously developing their skills as part of a high‑trust, high‑performing security service.
You will leverage your combined experience in leadership and security operations to enable the smooth delivery of our award‑winning defensive monitoring service, supporting proactive detection and response for clients across the globe.
You will be expected to contribute, hands‑on, technically where and when needed, including deep‑dive investigations, incident response escalations, threat hunting, tuning detections, delivering technical training, and driving process and capability improvements.
Strong technical knowledge is essential to mentor junior analysts, develop their capabilities, and ensure the team remains at the forefront of security operations.
You must proactively initiate actions and work independently to quickly mitigate threats, set an example, maintain operational continuity, make informed decisions, and ensure team efficiency under pressure.
The roles and responsibilities are reviewed annually to ensure alignment with current organisational needs, emerging threats, and industry best practice.
Collaboration With Other Teams- Working closely with Threat Intelligence, Engineering and Incident Response teams to strengthen the SOC’s ability to detect, investigate, and respond to emerging threats. This collaboration ensures timely sharing of actionable intelligence, refinement of detection rules, improvement of security tools, and alignment of operational processes, ultimately enhancing overall organisational security posture.
- Driving continuous improvement within the SOC by identifying gaps in processes, detection capabilities, and team performance, and implementing solutions to enhance operational efficiency.
- Evaluating incidents and alerts to refine triage and response workflows, ensuring lessons learned are translated into updated playbooks and best practices.
- Monitoring emerging threats, tuning detections, and adopting new tools and techniques to strengthen the SOC’s proactive defence posture.
- Lead day‑to‑day activities of the SOC analysts across all shifts (24/7 operations through and on call rotation).
- Manage team scheduling, shift handovers, and always ensure proper coverage.
- Act as the first point of escalation for security events and staff queries during shifts.
- Ensure high‑quality incident triage, investigation, and response by team members, following predefined and agreed SOC processes.
- Coordinate with other shifts to maintain operational continuity and consistent processes.
- Lead and Facilitate the Development of the wider monitoring team through technical training courses, workshops and exercises.
- Ensure completion of all HALO case management on time and with accurate and timely results.
- Provide technical leadership and guidance to SOC analysts on alert triage, investigation,…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: