SecurityHQ
SOC Lead

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
About the Role
We're looking for an experienced SOC Lead to lead our UK Security Operations Centre and play a key role in protecting our clients from an evolving threat landscape. This is a leadership position for someone who enjoys developing people, improving processes, and taking ownership of complex cyber security investigations.
As the senior escalation point within the SOC, you will lead Digital Forensics & Incident Response (DFIR) activities, oversee day-to-day operations, and ensure the delivery of high-quality security services to our clients. You'll work closely with both technical teams and customer stakeholders, helping drive operational excellence while supporting the growth and development of the SOC function.
This role would suit an experienced SOC professional who combines strong technical expertise with excellent leadership and communication skills. You'll be comfortable making decisions under pressure, managing priorities across a 24/7 environment, and supporting a high-performing team in a fast-paced cyber security business.
This role is hybrid, with three days per week in our Blackfriars office.
About SecurityHQ
SecurityHQ is a global cybersecurity company. Our specialist teams design, engineer and manage solutions that do three things: Promote clarity and trust in a complex world. Build momentum around improving security posture. And increase the value of cybersecurity investment within organizations. Free from limitations, and inclusive of all requirements, we focus on defending today, while mitigating the risks of tomorrow. And into the future. Our solutions are tailored to our customers and their unique context. Around the clock, 365 days per year, our customers are never alone.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
SecurityHQ – We’re focused on engineering cybersecurity, by design.
Responsibilities
- Lead, mentor and develop a team of Security Analysts and Incident Responders
- Conduct regular performance reviews, coaching sessions and career development discussions
- Act as the primary escalation point for complex security incidents and investigations
- Lead end-to-end Digital Forensics & Incident Response investigations, from initial response through to remediation and reporting
- Oversee SOC operations, including shift planning and resource management within a 24/7 environment
- Review investigations, alerts and case documentation to ensure high quality standards are maintained
- Present security findings, incident reports and recommendations to clients and stakeholders
- Build trusted relationships with clients and act as a key point of contact for security operations matters
- Drive continuous improvement across SOC processes, playbooks, tooling and operational effectiveness
- Support threat hunting, threat intelligence integration and ongoing SOC maturity initiatives


Get help with your application
Your very own career expert that helps elevate your application to the next level.
What We Are Looking For
- Proven experience leading or managing a Security Operations Centre team
- Strong background in Digital Forensics & Incident Response (DFIR)
- Experience handling complex cyber security incidents, investigations and breach response activities
- Strong understanding of security operations, threat detection and incident response best practices
- Experience working with SIEM technologies such as Microsoft Sentinel, IBM QRadar, Datadog or Darktrace
- Hands-on experience with EDR platforms including CrowdStrike Falcon, SentinelOne and Microsoft Defender
- Strong knowledge of threat hunting, log analysis and attacker methodologies
- Excellent communication skills with the ability to engage both technical and non-technical stakeholders
- Experience presenting findings, recommendations and security updates to clients or senior leadership teams
- GCFA, GCFE or GCIH certification
- Additional certifications such as CISSP, GPEN or CEH would be advantageous
- Knowledge of cloud environments including AWS, Azure or GCP would be beneficial
- A proactive leadership style and a passion for developing high-performing cyber security teams
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location