Rodeo
Get started

LevelBlue LLC

Team Lead - Principal Security Detection & Response Analyst Team Lead, German Speaking

£75k – £95k/yr
Posted 2 days ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

LevelBlue Cybersecurity Opportunity

LevelBlue reduces risk and builds lasting resilience so organizations can innovate and advance their mission with confidence. As the world’s most analyst-recognized and largest pure-play managed security services provider, LevelBlue elevates client outcomes that matter: stronger defense, faster response, and sustained business continuity. LevelBlue combines AI-powered security operations, advanced threat intelligence, and elite human expertise to provide the most comprehensive portfolio of strategic advisory, managed security, offensive security, and incident response services.

UK BASED ONLY - Employment Contract

We are looking for an experienced, hands-on cybersecurity professional to join our Global Security Operations team as a Senior or Principal Security Detection & Response Analyst and EU SOC Team Lead.

This is primarily a hands-on technical role with additional Team Lead responsibilities. You will operate as a Tier 2 or Tier 3 Security Detection & Response Analyst while providing day-to-day support, coordination, coaching, and technical leadership to other analysts within the EU SOC.

Working Schedule: The working hours are 08:00–16:00 or 9:00–17:00 local time in the UK, depending on daylight saving time. The position follows a rotating working-day schedule that includes weekend coverage. Working days may rotate between Tuesday–Saturday and Sunday–Thursday, according to the team rotation.

We are currently requiring candidates with Fluent German along with fluent English for this role. French language skills would be a plus.

Key Responsibilities

Security Analysis & Incident Response

  • Perform hands-on security analysis and investigation of complex endpoint and security alerts across MDR and MXDR environments.
  • Act as a technical escalation point for Tier 1 and Tier 2 analysts.
  • Piece together attack chains across complex customer environments including endpoint, cloud, identity, email, and network technologies.
  • Participate in all stages of incident investigations, including taking decisive action in response to active breaches.
  • Conduct proactive threat hunting across customer environments to identify attackers, suspicious activity, or remnants of compromise.
  • Research new and emerging attacks, threat actors, malware, and attacker tactics, techniques, and procedures (TTPs).
  • Collect, process, and exploit OSINT to support investigations, improve threat-hunting queries, and contribute to Threat Alerts.
  • Engage directly with customers during investigations and escalations, communicating effectively with stakeholders ranging from SOC analysts to C-suite executives.
  • Remain actively involved in the analyst workload, supporting operational investigations and escalations as required.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Team Lead Responsibilities

Alongside your analyst responsibilities, you will provide day-to-day support and leadership to the EU SOC team.

  • Provide coaching, mentoring, and technical guidance to EU SOC analysts.
  • Act as a first point of contact for analysts requiring support with technical or operational issues.
  • Help coordinate day-to-day activity across the team and ensure work is appropriately prioritized.
  • Maintain awareness of team workload and operational coverage, raising potential capacity or coverage concerns with SOC leadership.
  • Support analysts with complex investigations and customer escalations.
  • Encourage collaboration, knowledge sharing, and consistent working practices across the team.
  • Help ensure Global SOC policies, procedures, and operational processes are understood and followed.
  • Support the monitoring of service delivery, SLOs, SLAs, and operational metrics, highlighting potential issues to SOC leadership.
  • Identify opportunities to improve investigation processes, methodologies, and ways of working.
  • Support onboarding and development of new analysts.
  • Provide feedback to SOC leadership on team development, operational challenges, and areas for improvement.

What We Are Looking For

We are looking for someone who combines strong technical security expertise with the ability and desire to support and develop others.

  • Significant experience working within a SOC, MDR, incident response, or similar cybersecurity environment.
  • Technical capability appropriate to a Senior/Tier 2 or Principal/Tier 3 Security Analyst position.
  • Strong hands-on security investigation and incident-response skills.
  • Experience in at least two of the following areas: Endpoint security, Malware analysis, Threat hunting / threat intelligence, Incident response, Penetration testing, Reverse engineering, and Digital forensics.
  • Strong knowledge of modern operating systems, particularly Windows; knowledge of macOS and Linux is advantageous.
  • Solid understanding of networking protocols and network architecture. Familiarity with common security tools, technologies, and frameworks.
  • Experience with scripting languages such as Python, Bash, or PowerShell is advantageous.
  • Previous Team Lead or people-management experience, ability to balance Team Lead responsibilities with an active technical workload.
  • Ability to explain complex technical issues to both technical and non-technical audiences.
  • Strong customer-facing skills and confidence engaging with senior stakeholders.
  • Excellent English reading, writing, and speaking skills.
  • Additional European languages, particularly French or German, are required for this role.

Why It Matters

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Joining our team means becoming a vital part of a market-leading force dedicated to safeguarding critical assets, solving complex security challenges, and delivering innovative services that meet the security needs of our global customer base.

Why You Will Love It

  • Exceptional Team: Lead a highly skilled team and collaborate with experienced leaders in cybersecurity who share your passion for delivering market-leading Managed Security Services.
  • Global Exposure: Gain insight into various aspects of the Managed Security Services business, with your leadership and actions directly impacting the security of organizations worldwide.
  • Ownership and Impact: Assume responsibility for defining and executing processes that consistently deliver outstanding results.

Desired Experience

  • 7 or more years of information security or networking experience.
  • Previous operational experience as an analyst, engineer, or team lead.
  • Excellent customer service skills.
  • Strong analytical thinking and problem-solving skills.
  • Strong oral and written communication skills.
  • Self-managed and team-oriented, with the ability to coach and teach.
  • Responsive, collaborative, and highly motivated.
  • Leadership and management experience.

Preferred

  • Bachelor's/Master's Degree in Information Technology or a similar area of study.
  • At least 7 years of experience in Information Security or Networking.
  • Certification in a security-related industry, vendor, or professional certification.

Why Join LevelBlue?

At LevelBlue, you’re not just an employee—you’re part of a team making a real difference in the world of cybersecurity. We foster a culture of innovation and creativity where your contributions are valued, and you’ll have the support and resources to grow and thrive.

This role is open to candidates legally authorized to work in the UK. At LevelBlue, we support flexible work and bring people together in person for key moments based on role, team, and business needs.

LevelBlue is committed to a culture of respect, inclusion, and equal opportunity. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, age, or any other status protected under applicable law.

To all agencies: Please do not contact LevelBlue employees outside of the Talent Acquisition team. LevelBlue’s policy is to only accept resumes from agencies through its approved agency process and with a valid agreement in place. Any resume submitted outside this process will be considered the property of LevelBlue, and no fee will be paid if a candidate is hired from such a submission.

#LI-KD1

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

United Kingdom

Sign up to applySee more jobs like this