At a Glance
- Tasks: Lead the SOC and Incident Response team, tackling complex security incidents with hands-on expertise.
- Company: Join ASOS, a global fashion retailer that celebrates individuality and creativity.
- Benefits: Enjoy employee discounts, 25 days annual leave, private medical care, and flexible benefits.
- Other info: Opportunities for personal growth and development in a dynamic tech landscape.
- Why this job: Make a real impact in cyber security while working in a supportive and inclusive environment.
- Qualifications: Proven experience in incident response and leading security teams under pressure.
The predicted salary is between 63000 - 77000 £ per year.
Company Description
We’re ASOS, the online retailer for fashion lovers all around the world.
We exist to give our customers the confidence to be whoever they want to be, and that goes for our people too.
At ASOS, you’re free to be your true self without judgement, and channel your creativity into a platform used by millions.
But how are we showing up?
We’re proud members of Inclusive Companies, are Disability Confident Committed and have signed the Business in the Community Race at Work Charter and we placed 8th in the Inclusive Top 50 Companies Employer list.
Everyone needs some help showing up as their best self. Let our Talent team know if you need any adjustments throughout the process in whatever way works best for you.
Job Description
The Role
As an experienced SOC and Incident Response Lead at ASOS, you will provide hands‑on technical leadership across security monitoring, detection, engineering, incident response, and threat‑led investigations.
You will lead the SOC and Incident Response team, ensure security incidents are investigated and resolved effectively, and maintain a strong operating relationship with our external MSSP.
The ideal candidate will combine deep technical expertise with proven experience leading analysts, improving operational capability, managing stakeholders, and making sound decisions under pressure.
The role will act as the bridge between wider technology teams, the cyber security team, and third‑party partners, ensuring a coordinated and consistent response to cyber security incidents.
This role reports to the Head of Security Operations.
Responsibilities
- Lead the SOC and Incident Response team day to day, providing technical direction, coaching analysts, maintaining effective operations, and ensuring the team has clear priorities, strong morale, and the capability to respond to complex security incidents.
- Own and improve the SOC detection lifecycle, including reviewing detection coverage, tuning noisy or low‑value alerts, creating new detections from threat intelligence and incident learnings, and mapping coverage against relevant attack techniques and critical business assets.
- Establish and maintain incident response processes, procedures, and documentation, ensuring they align with industry best practices.
- Strong hands‑on experience with SIEM, EDR, cloud security, identity, email security, and forensic analysis tooling, with the ability to investigate incidents, validate detections, and guide analysts through complex technical findings.
- Define incident response metrics, dashboards, track and report on key performance indicators (KPIs) to senior management, suggesting improvements as needed.
- Delegate unassigned newly submitted tickets to analysts keeping in mind current workloads and availability.
- Conduct regular incident response training and drills to enhance team readiness and improve response times.
- Lead incident post‑mortem analysis to identify root causes, lessons learned, and recommend measures for prevention or improvement.
- Conduct periodic threat simulation activities to evaluate the adequacy of deployed detective/preventative controls.
Qualifications
About you
- Proficiency in incident response tooling, including SIEM, EDR, cloud security, threat intelligence and forensic analysis platforms.
- Demonstrable experience leading and coordinating responses to complex cyber security incidents, acting as a technical lead during high‑pressure situations.
- Proven experience managing, mentoring and developing SOC Analysts and Incident Responders within a Security Operations environment.
- Strong analytical and problem‑solving abilities, with the capability to rapidly assess, contain and remediate security threats.
- Ability to make effective decisions under pressure whilst managing multiple incidents, priorities and stakeholders simultaneously.
- Experience working with cloud security technologies and environments, particularly Azure and/or AWS.
- Experience building, tuning and improving security monitoring, detection engineering and threat detection capabilities.
- Strong stakeholder management and communication skills, with the ability to translate technical security issues into clear business risk and impact for senior leadership.
- Experience conducting incident post‑mortems, root cause analysis, tabletop exercises and crisis response testing to drive continuous improvement.
- Working knowledge of UK security and compliance frameworks, including PCI‑DSS, GDPR, NIST, ISO 27001 and Cyber Essentials.
- Additional Information
- Bene FITS'
- Employee discount (hello ASOS discount!)
- Employee sample sales
- 25 days paid annual leave + an extra celebration day for a special moment
- Discretionary bonus scheme
- Private medical care scheme
- Flexible benefits allowance - which you can choose to take as extra cash, or use towards other benefits
- Opportunity for personalised learning and in‑the‑moment experiences that enable you to thrive and excel in your role
- #J-18808-Ljbffr
SOC and Incident Response Lead employer: ASOS
ASOS, the parent company of TOPSHOP and TOPMAN, is an exceptional employer that fosters a vibrant and inclusive work culture in the heart of London. With a strong commitment to employee growth, you will benefit from personalised learning opportunities and a supportive environment that encourages creativity and innovation. Enjoy competitive benefits such as generous annual leave, private medical care, and exclusive employee discounts, all while being part of a dynamic team dedicated to shaping the future of fashion.
StudySmarter Expert Advice🤫
We think this is how you could land SOC and Incident Response Lead
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including ASOS, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through ASOS
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at ASOS. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace SOC and Incident Response Lead
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at ASOS insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to ASOS that you’re committed to staying ahead in the game.
How to prepare for a job interview at ASOS
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at ASOS to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at ASOS.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.