Lead SOC Analyst - DV Cleared
Network IT · Buckinghamshire, Buckinghamshire
Lead SOC Analyst - DV Cleared at Network IT, based in Buckinghamshire, Buckinghamshire, paying £80.00 per hour. This is a contract role.
- Salary
- £80.00 per hour
- Location
- Buckinghamshire, Buckinghamshire
- Contract
- Contract
- Posted
- 1 hour ago
- Closes
- 25 Oct 2026
- Sector
- Security
About 119% above the going rate for security
Reference 272106826
About the role
Lead SOC Analyst
£80 per hour - 42 hour weeks
12 Hour shifts (7am-7pm & 7pm-7am)
7 Days & 7 Nights over a 4-week pattern
6 month contract initially
Buckinghamshire
Summary - The 3x Lead SOC Analysts will be responsible for the operational leadership of the Security Monitoring function, ensuring the consistent delivery of high-quality security monitoring, investigation and escalation activities.
Responsibilities
- Lead the shift-based delivery of Security Monitoring services, ensuring timely and effectivemonitoring, investigation, triage and escalation of cyber security events.
- Supervise and coordinate a Senior SOCAnalyst, ensuring investigations meet required professional, technical and documentation standards.
- Act as Duty Lead for Security Monitoring, providing technical leadershipand making operational decisions during live cyber security events.
- Review and quality-assure SOC investigations, confirming findings are accurate, evidence-based and clearly documented.
- Lead complex and high-priority cyber security investigations before escalation to the Incident Response team, as delegated by the Principal SOC Analyst.
- Deliver clear and effective shift handovers, maintaining situational awareness and continuity across ongoing investigations and incidents.
- Coordinate with Incident Responders during cyber security incidents, clearly communicating analytical findings, timelines, indicators of compromise and supporting evidence.
- Collaborate with SOC Engineers to improve monitoring coverage, alert quality and operational effectiveness.
- Support the onboarding of new systems, applicationsand cloud services into SOC monitoringby validating monitoring content and operational readiness.
- Drive continuous improvement across monitoring processes, investigation techniques and analyst efficiency, recommending enhancements to the Principal SOC Analyst.
- Mentor and coach SOC Analysts, supporting their professional development and promoting consistent analytical standards and investigation best practice.
- Ensure compliance with SOC operating procedures, security monitoringstandards and information-handling requirements.
- Identify and escalate operational issues, monitoring gaps and emerging threats to the Principal SOC Analyst and SOC Manager.
- Demonstrable experience working within a SOC or comparable cyber security operations environment.
- Experience leading security monitoring activities and supervising analysts during live operational service.
- Strong knowledge of SIEM platforms, log analysis, security monitoring technologies and security event investigation.
- Experience investigating complex cyber security events and determining appropriate escalation paths.
- Good understanding of cyber-attack techniques, indicators of compromise, threat intelligence and defensive monitoring.
- Experience in mentoring or coaching technical staff within an operational environment.
- Excellent analytical, investigative and problem-solving skills.
- Strong written and verbal communication skills, including the ability to communicate clearly under operational pressure.
- Ability to make timely decisions within a fast-paced 24/7 operational environment.
- Profession certifications such as Microsoft SC-200, GIAC GCIH, GCIA, CompTIA CySA+ or equivalent.
- Experience using Microsoft Sentinel, LogRhythm, or equivalent enterprise SIEM platforms.
- Experience developing monitoring improvements, detection tuning, or operational process development.
- Experience supporting Incident Responder activities during major cyber security incidents.
- Experience contributing to the development of monitoring use cases and detection improvements.
- Applied knowledge of MITRE ATT&CK or equivalent adversary behaviour frameworks.
Reference: 272106826 · Posted 1 hour ago · Closes 25 Oct 2026 · Listed via Network IT
Apply for this job
This role is listed via Network IT. Applications are handled on the employer's site.
Apply on employer siteOpens the employer's website in a new tab.
Safe applying: a genuine employer will never ask you to pay for a DBS check, training or equipment, or move you onto WhatsApp before you are hired. If this listing does, report it and do not pay anything.