Tech lead - SOC responder in Basingstoke

Tech lead - SOC responder in Basingstoke

Basingstoke Full-Time 60000 - 80000 Β£ / year (est.) No working from home possible
Colt Technology Services UK

At a Glance

  • Tasks: Lead incident response and manage complex cyber incidents in a global security operations team.
  • Company: Join Colt, a leading tech company empowering businesses worldwide.
  • Benefits: Flexible hours, remote work, mentorship, and extensive development opportunities.
  • Other info: Diverse and inclusive culture with a focus on personal growth and teamwork.
  • Why this job: Make a real impact on cybersecurity while working with cutting-edge technologies.
  • Qualifications: Experience in information security, incident response, and strong scripting skills required.

The predicted salary is between 60000 - 80000 Β£ per year.

Colt provides network, voice and data centre services to thousands of businesses around the world, allowing them to focus on delivering their business goals instead of the underlying infrastructure.

We are seeking a Tech Lead - SOC Responder. This is an opportunity to meaningfully contribute to a highly visible security operations function with global impact upon Colt, business units, partners, and customers. While working as part of this team, the successful individual will provide world class incident response functions to detect, protect, respond, and sustain operations within cyberspace. This role operates at a Tier 3 level, with the expectation that the individual has undeniable experience handling major and complex cyber incidents, independently leading and managing incidents end to end, delivering clear and effective stakeholder communication, and mentoring other members of the SOC team.

What you will do:

  • Support SOC Manager to deliver the following SIEM, IR tools platform management including all design, implementation and administration activities.
  • Use cases preparation and implementation, connector deployment, maintenance & health checks.
  • Responsible for operational activities, Technology escalation support, Security Solution assessment, existing Service maturing and Build activities assist.
  • Analyse potential infrastructure security incidents to determine if incident qualifies as a legitimate security breach.
  • Establishing and governing the security incident response processes, investigations and security operational processes.
  • Maintenance and enhancement of formal service catalogue, service descriptions, targets and performance against these.
  • Ensure security services, tools and platforms are adequately maintained.
  • Monitoring of and reporting on the effectiveness of our security enforcing technologies.
  • Identification and ongoing monitoring of specific security risks and KPIs and production of management information to ensure Colt receives value from key security investments/services.
  • Contribute to design, development and maintenance of security standards and controls.
  • Align team's goals and plan with Colt's long term priorities and strategy.
  • Develop and grow the talent and people capability within the security teams.

Key performance indicators:

  • Takes ownership for understanding what is expected of them / their team and ensures it is delivered.
  • Proactively requests Leadership for views and opinions; using this feedback to improve personal performance.
  • Reviews working methods regularly to identify ways of improving service delivery makes recommendations on what improvement can be made and owns delivery of agreed action plan and outcomes.
  • Understands cultural differences and utilises this understanding to build rapport across different teams in order to obtain the necessary cooperation.

What we're looking for:

  • Information Security Incident Response experience with a focus on detection and response to malicious activity using log data from various sources preferred.
  • Strong Networking and Systems experience, preferably in an Enterprise environment.
  • Strong understanding of Information Security and the threat landscape surrounding enterprise systems.
  • Strong Scripting experience (python, powershell, Unix shell).
  • Experience working in all phases of the SDLC.
  • Deep understanding and experience using cyber security operations, security monitoring, endpoint (EDR), Network, and SIEM Tools.
  • Prior SOC experience a plus.
  • Extensive knowledge of network and server security protocols, technologies, and products.
  • Industry recognized certifications (CISSP, GCIH, GCFA, OSCP, etc) preferred.
  • Strong oral and written communication skills.
  • Relentless curiosity and attention to detail.
  • Ability to learn quickly and leverage prior experiences to effectively solve current security challenges.
  • Refusing to accept the status quo.

Qualifications:

  • Combination of the following: Degree in Information Technology, Engineering or similar.
  • SIEM management - Desirable to have some advanced Certification from SIEM vendor on products such as ArcSight, MS Sentinel or Logrhythm.

What we offer you:

Looking to make a mark? At Colt, you'll make a difference. Because around here, we empower people. We don't tell you what to do. Instead, we employ people we trust, who come together across the globe to create intelligent solutions. Our global teams are full of ambitious, driven people, all working together towards one shared purpose: to put the power of the digital universe in the hands of our customers wherever, whenever and however they want. We give our people the opportunity to inspire and lead teams, and work on projects that connect people, cities, businesses, and ideas. We want you to help us change the world, for the better.

Diversity and inclusion:

Inclusion and valuing diversity of thought and experience are at the heart of our culture here at Colt. From day one, you'll be encouraged to be yourself because we believe that's what helps our people to thrive. We welcome people with diverse backgrounds and experiences, regardless of their gender identity or expression, sexual orientation, race, religion, disability, neurodiversity, age, marital status, pregnancy status, or place of birth. Most recently we have signed the UN Women Empowerment Principles which guide our Gender Action Plan and trained 60 (and growing) Colties to be Mental Health First Aiders. Please speak with a member of our recruitment team if you require adjustments to our recruitment process to support you. For more information about our Inclusion and Diversity agenda, visit our DEI pages.

Benefits:

Our benefits support you through all parts of life, for both physical and mental health. Flexible working hours and the option to work from home. Extensive induction program with experienced mentors and buddies. Opportunities for further development and educational opportunities. Global Family Leave Policy. Employee Assistance Program. Internal inclusion & diversity employee networks.

A global network: When you join Colt you become part of our global network. We are proud of our colleagues and the stories and experience they bring take a look at Our People site including our Empowered Women in Tech.

Tech lead - SOC responder in Basingstoke employer: Colt Technology Services UK

Colt is an exceptional employer that empowers its employees to make a meaningful impact in the world of cybersecurity. With a strong focus on diversity and inclusion, Colt fosters a collaborative work culture where individuals are encouraged to be themselves and thrive. Employees benefit from flexible working arrangements, extensive development opportunities, and a supportive environment that values their contributions, making it an ideal place for those looking to grow their careers while making a difference.

Colt Technology Services UK

Contact Details:

Colt Technology Services UK Recruitment Team

We think you need these skills to ace Tech lead - SOC responder in Basingstoke

Incident Response
SIEM Management
Log Data Analysis
Networking
Systems Administration
Information Security
Scripting (Python, PowerShell, Unix Shell)