An exciting opportunity has arisen for an accomplished SOC Incident Response & Threat Hunting Manager to lead a high-performing team within a dynamic and evolving Security Operations Centre (SOC) environment. This critical role is ideal for a technically proficient cybersecurity professional with a passion for proactive defence, threat intelligence, and strategic leadership.
The successful candidate will oversee a team of Tier 3 Security and Incident Response Analysts, driving advanced incident response, digital forensics, and threat hunting operations across a diverse customer base. Acting as a technical authority, the role will play a pivotal part in enhancing cyber resilience, refining detection capabilities, and leading complex investigations from detection through to remediation and review.
Key Responsibilities- Lead, mentor and develop a team of senior SOC analysts, ensuring the delivery of effective and efficient incident response and threat hunting operations.
- Oversee and coordinate high-severity incident response engagements, acting as incident lead when required, and guiding cross-functional teams through time-critical decision-making.
- Provide expert oversight on complex security incidents, ensuring technical accuracy, rapid containment, and detailed documentation throughout.
- Drive the ongoing development and maturity of the Cyber Threat Intelligence (CTI) capability, ensuring intelligence is actionable, relevant and embedded within SOC operations.
- Collaborate closely with Detection Engineering and CTI teams to transform intelligence insights into meaningful threat hunting hypotheses and use cases.
- Design and lead advanced threat hunting exercises, leveraging deep knowledge of adversary tactics, techniques, and procedures (TTPs) to detect and mitigate evolving threats.
- Deliver comprehensive incident reports and recommendations to stakeholders, maintaining transparency and continuous improvement.
- Develop and deliver in-house training and simulation programmes, including tabletop exercises and forensic analysis challenges, to continually upskill SOC teams.
- Participate in the on-call rotation to provide expert support during critical incidents.
- Proven experience in leading incident response and threat hunting functions within a SOC or similar cyber operations environment.
- Strong technical expertise in digital forensics and incident response (DFIR), with a deep understanding of security event analysis, malware investigation, and forensic methodologies.
- Demonstrated ability to manage high-pressure incidents and coordinate across multiple stakeholders.
- Strong communication and leadership skills, with the ability to explain complex technical findings to both technical and non-technical audiences.
- Analytical and detail-oriented approach, capable of identifying patterns and anomalies in large data sets.
- Agile mindset with a focus on continuous improvement, process enhancement, and knowledge sharing across teams.
- Comfortable working in a fast-paced environment, adaptable to new technologies, tools, and evolving threats.
- Analytical thinking: Expert at identifying, analysing and mitigating complex threats.
- Collaboration: Works effectively across technical and operational teams to deliver swift resolutions.
- Adaptability: Quick to learn new systems, processes and technologies.
- Decision-making: Capable of prioritising and acting decisively under pressure.
- Continuous improvement: Committed to advancing team skills, refining processes and strengthening overall cyber defence.
This is a rare opportunity to take a leading role in shaping the future of SOC operations, driving proactive threat detection and response, and influencing cybersecurity strategy at an enterprise level. The position offers autonomy, professional growth, and the chance to make a measurable impact in defending against sophisticated and evolving cyber threats.
SOC Manager employer: Anson McCade
Contact Detail:
Anson McCade Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land SOC Manager
β¨Tip Number 1
Network like a pro! Get out there and connect with folks in the cybersecurity field. Attend meetups, webinars, or conferences. You never know who might have the inside scoop on job openings or can put in a good word for you.
β¨Tip Number 2
Show off your skills! Create a portfolio or a personal blog where you can share your insights on threat hunting or incident response. This not only showcases your expertise but also demonstrates your passion for the field.
β¨Tip Number 3
Prepare for interviews by practising common SOC scenarios. Think about how you'd handle high-severity incidents or lead a team through a crisis. We want to see your thought process and how you tackle challenges head-on!
β¨Tip Number 4
Donβt forget to apply through our website! Itβs the best way to ensure your application gets noticed. Plus, we love seeing candidates who are genuinely interested in joining our dynamic team.
We think you need these skills to ace SOC Manager
How to prepare for a job interview at Anson McCade
β¨Know Your Stuff
Make sure you brush up on your technical knowledge, especially around incident response and threat hunting. Be ready to discuss specific tools and methodologies you've used in the past, as well as any complex incidents you've managed.
β¨Showcase Your Leadership Skills
Since this role involves leading a team, be prepared to share examples of how you've mentored or developed others in your previous positions. Highlight your ability to guide teams through high-pressure situations and decision-making processes.
β¨Communicate Clearly
Practice explaining complex technical concepts in simple terms. You might be asked to present findings to non-technical stakeholders, so demonstrating your communication skills is key. Think about how you can make your insights accessible to everyone.
β¨Demonstrate Continuous Improvement Mindset
Be ready to discuss how you've contributed to process enhancements or knowledge sharing in your previous roles. Show that you're committed to not just maintaining but improving SOC operations and cyber defence strategies.