SOC Team Lead
- Full-time
Company Description
Job Description
Please note - this role can be Hybrid or Remote, subject to location.
As the Security Operations Centre Team Lead, you will be part of an InfoSec team that manage the delivery of security & accreditation to the NEC business and our customers. Interacting with the wider InfoSec team as well as other departments across NEC, the SOC Team Lead will support the InfoSec team to deliver its objectives.
The Infosec SOC Team Lead is responsible for establishing and managing the Security Operations Centre and its associated resources. The role oversees team performance, SLA delivery, and engagement with stakeholders (internal and external).
Critical to the role is the management of the team, establishing good working practices and procedures, identifying gaps and ensuring a consistent delivery in team performance.
The SOC provides continuous monitoring, alerting, and incident response for cyber threats affecting critical business and customer environments, primarily P1 and P2 incidents. The team supports operations across the UK, Australia, and India.
Tasks include:
- Establishing and running a new Security Operations Centre
- Identifying gaps in process and writing / creating new procedures
- Managing rotas, workloads and team deliverables.
- Provide weekly reports of team performance
- Monthly reporting on business risk exposure and critical measures
- Reporting on current threats and cyber activity
- Acting as part of a Major Incident and Crisis team
- Developing and improving business risk posture using available resources
- Coordination and participation in cyber testing activities
In addition the SOC team will work closely with the security response team, plus other teams in Infosec to maintain a collaborative approach across the Infosec structure. The team Lead will be responsible for facilitating that collaboration.
The team will also work closely with the Security Architects to focus on the delivery of new security capabilities, ensuring security enforcement and compliance, as well as supporting investigations and incident response.
Pre-employment checks required
- Baseline Standard and Disclosure Scotland (BPSS).
- On employment the candidate must be able to achieve and maintain NPPV L3+SC clearance.
Qualifications
Qualifications / skills.
The successful candidate will demonstrate extensive experience managing a team of technical resources, across different time zones, to very demanding and tight SLAs.
Experience working in a SOC (or a similar environment) is crucial to the understanding of the role and expectations of the team.
The candidate should be able to demonstrate an understanding of the challenges to running a SOC and have the ability to develop efficient processes to handle the pressure of the tight response timescales required.
Candidates must also have demonstratable experience of working in a managerial role with team leadership and reliable regular reporting to senior stakeholders.
An ambition to continuously learn and develop new skills and knowledge, with an understanding that study time outside of working hours may be required for career development.
A good team working ethic, communicating with colleagues in a clear and professional manner, whilst maintaining a customer-service based approach is essential.
Essential:
- SOC experience (or equivalent)
- Senior managerial experience - leading a technical team
- Establishing procedures and developing efficient processes
- Current cyber threats and challenges
- Report writing and presentations to senior management
Desirable:
- Managing teams across different time zones
- Trend ASRM
- SIEM Operations
- Anti-Virus and malware protection
- Web Application Firewall technologies
- Palo Alto Prisma
Essential personal attributes
- Performance driven
- Confident presenting to senior stakeholders
- Great communication skills
- Good problem solving skills
- Strong team leadership
- Candidates must be security cleared (or able to gain clearance) to Non-Police Personnel Vetting Level 3 (NPPV)+SC.
Additional Information
We pride ourselves in offering an excellent benefits package, including an above average pension scheme. When you join the team at NEC Software Solutions, you are provided with the following:
- Private Medical Cover funded by NEC for Employees (with the option to add family members at an additional cost)
- 25 days paid holiday with the option to buy/sell
- 4 x basic salary life assurance cover funded by NEC (with the option to increase cover at an additional cost)
- A Group Pension Plan with fantastic employer contributions up to a maximum of 8.5%
- A selection of flexible benefits to suit your individual needs
Candidates must be able to demonstrate a pre-existing right to work and travel within the UK. Documentary evidence will be required.
All offers are subject to satisfactory vetting and reference checks. Depending on the nature of the role a Disclosure Barring Service (DBS) check may also be required.
NEC Software Solutions is an equal opportunities employer, welcoming applications from all communities. If you require any reasonable adjustments or have specific accessibility needs during the recruitment or interview process, please feel free to share these with us. We are committed to ensuring an inclusive and accommodating experience for all candidates.
Who We Are:
We’re NEC Software Solutions (part of global tech giant NEC Corporation). While you read this ad, our software is helping to dispatch ambulances, support families, keep trains on the move, locate missing people and even test the hearing of newborn babies.
Working with us, you’ll be helping our 3,000+ employees push the boundaries of what’s possible and support amazing public services.
We work with governments, hospitals, police forces, housing providers, local authorities and more. We help them pay financial support faster, speed up treatments for patients and respond to emergencies in the right way. The more we do, the more our customers can do for others. And together, we make a world of difference.
We’d love your help. And we’ll support you all the way.