Why This Role Stands Out
As a SOC Level 3 Technical Lead, you will take ownership of complex, high-impact security investigations, leveraging your advanced skills to protect high-profile clients and shape the SOC's future direction. This role is perfect for a seasoned cybersecurity professional seeking to lead critical incidents, mentor a team, and drive innovation within a reputable, rapidly scaling organization, offering a competitive hourly rate of GBP 60-70.
Quick Overview
Job Description
Senior SOC Analyst (Level 3) / Technical Lead | Buckinghamshire (hybrid)
A rapidly scaling managed security provider is hiring the most senior technical hire in its Security Operations Centre. The SOC runs around the clock protecting clients ranging from mid-market firms to household-name enterprises - but this role sits on a standard daytime pattern, with on-call participation for genuine emergencies only.
This is the job for someone who's outgrown alert triage and wants to own the hard problems: the ransomware call at the worst possible moment, the intrusion that's been dwelling for months, the investigation that ends up in front of regulators.
Salary: £60-70k DOE + competitive package
Location: Buckinghamshire (3 days onsite)
What You'll Do:
- Lead the most serious investigations in the client portfolio - ransomware, supply-chain compromise, data breaches, insider cases - owning the full lifecycle from detection through recovery
- Make real-time containment calls under pressure and brief client leadership, up to board level, in language they can act on
- Run proactive threat hunts and build detection content across SIEM, EDR and cloud platforms, tuning out noise as you go
- Develop SOAR playbooks and automation, and help shape the SOC's tooling roadmap and architecture
- Produce evidential-standard reporting fit for auditors, regulators and law enforcement
- Mentor the analyst team and act as senior escalation point for major incidents
What You'll Bring:
- 5+ years in incident response or SOC environments, ideally with managed services (MSSP) exposure
- A proven record leading complex investigations - ransomware and breach cases you can walk through in depth
- Advanced hands-on malware analysis capability, spanning behavioural analysis and reverse engineering
- Deep expertise across enterprise SIEM platforms and EDR tooling (CrowdStrike knowledge a strong advantage)
- A well-developed threat hunting toolkit: YARA rules, IOC development, timeline analysis and adversary profiling
- Cloud investigation experience - Azure and/or AWS incident response, log analysis and cloud-native threats
- The communication skills to translate deep technical findings for senior, non-technical audiences
- A natural mentoring style that helps junior analysts ask questions, learn and progress
Apply now or get in touch for a confidential discussion.
Oscar Associates (UK) Limited is acting as an Employment Agency in relation to this vacancy.
To understand more about what we do with your data please review our privacy policy in the privacy section of the Oscar website.
Similar jobs
- AM
Security Consultant
NewAnson Mccade
London🇬🇧£45k - £100k/yrHybridYesterdayAgileIoTTechnology - PB
Trainee IT Security Support Analyst
NewPimlico Banks Recruitment
West Bromwich, West Midlands🇬🇧Hybrid53 minutes agoTechnology - RE
IT Infrastructure & Cyber Security Engineer - 3rd Line, Cloud & AI
NewRecruitmentRevolution.com
Mile End, Essex🇬🇧Hybrid1 hour agoAzureGoogle WorkspaceREST+2Technology - CG
Security & Risk Manager - Full Time - Prescot Liverpool
NewCompass Group
prescot liverpool, merseyside🇬🇧£49k/yrHybrid1 hour agoGDPRRisk ManagementCompliance+1 - AB
Senior Information Security Engineer
NewAJ BELL BUSINESS SOLUTIONS LIMITED
Old Trafford, Manchester🇬🇧Hybrid11 hours agoTechnology - PB
Trainee IT Security Support Analyst
NewPimlico Banks Recruitment
West Bromwich, West Midlands🇬🇧Hybrid11 hours agoActive DirectoryTechnology