SOC Manager
An SOC Manager is needed to take ownership of security operations at a pivotal moment in a regulated organisation’s cyber journey. This role puts you right at the centre of strengthening detection, response, and operational resilience—shaping how a modern security operations capability performs day to day. You will be based in London 2 days per week, working from home for the rest of the week. What’s in it for you
- A key leadership position influencing the maturity of an evolving security operations environment
- The opportunity to shape processes, tooling, and service standards across a modern SOC capability
- Direct collaboration with internal technology teams and external security providers
- Exposure to advanced security tooling including Microsoft Sentinel and wider Microsoft security technologies
- The chance to drive operational improvements across incident response, detection, and governance
- A highly competitive day rate within a financially regulated environment where cyber security is taken seriously
- Leading day-to-day security operations while helping shape the SOC roadmap aligned to wider cyber strategy
- Overseeing incident response, threat detection, triage, and mitigation activities across the environment
- Managing production security incidents and contributing to change and problem management processes
- Working closely with the MSSP to monitor service performance, service levels, and operational metrics
- Improving policies, procedures, and technical controls to support regulatory compliance and operational efficiency
- Driving service improvements across ticket management, root cause analysis, monitoring, and knowledge management
- Previous experience leading or managing security operations or IT security services
- Strong knowledge of SIEM platforms and monitoring frameworks such as Microsoft Sentinel and MITRE ATT&CK
- Solid understanding of the Microsoft security ecosystem and associated capabilities
- Experience across security technologies including DLP, EDR/XDR, CASB, email security, SWG, and ZTNA/SASE
- Experience working with incident management processes and third-party security service providers