Haystack
← Back to Jobs
Full time
Operations & Project Management
MB

SOC Team Lead

Methods Business and Digital TechnologyLondon, England🇬🇧United KingdomPosted 2 Sept 2026

Quick Overview

Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
London, England, United Kingdom
Posted
9 hours ago
SplunkComplianceContinuous ImprovementHTTPHTTPSRegulatory ComplianceRoot Cause AnalysisStakeholder Management

Job Description

Since our establishment in 1990, Methods has partnered with a range of central government departments and agencies to transform the way the public sector operates in the UK.

Our mission is to improve and safeguard public-facing services. We apply digital thinking to ensure the future of our public services is centered around our citizens. Our human touch sets us apart from other consultancies, system integrators and software houses - we have a customer-centric value system whereby we focus on delivering what is right for our clients.

We passionately support our clients in the success of their projects while working collaboratively to share skill sets and solve problems. At Methods we have fun while working hard; we are not afraid of making mistakes and learning from them.

Methods are experts in delivering secure, resilient cyber and information services – keeping systems and data safe. We help reduce risk and vulnerabilities from cyber-attacks by developing a security road-map tailored to your unique needs. We help organisations improve processes such as threat management by building an identity management programme, and establishing prevention, detection and response capabilities to cyber-attacks.   

The SOC Team Lead drives performance and operational excellence across Shared Service’s Cyber Services function. Acting as both a technical escalation point and line manager, they support the team in threat analysis, incident response, and security assurance activities. They foster a proactive culture of cyber hygiene and continuous improvement while collaborating across departments to strengthen Shared Service's security posture. The Team Leader also deputises for the Service Desk Manager during high workload or absence periods. 

Operational Oversight & Incident Coordination 

  • Lead cyber service operations with focus on SLA attainment, incident response, and resolution quality 
  • Oversee daily workflow distribution, prioritising emerging threats and investigative escalations 
  • Ensure unresolved or complex cybersecurity issues are escalated appropriately, internally and externally 
  • Maintain awareness of all applicable regulations and frameworks (e.g. NCSC, NIST, ISO27001, Cyber Essentials Plus) 

Team Leadership & Development 

  • Line manage Cyber Analysts, setting objectives and supporting individual development plans 
  • Model desired behaviours that promote collaboration, precision, and accountability 
  • Share threat intelligence and cyber knowledge with junior colleagues 
  • Provide training and coaching on cyber operations tooling and security practices 

Governance & Reporting 

  • Contribute to root cause analysis and threat hunting strategies 
  • Ensure all cyber processes are documented, regularly reviewed, and updated 
  • Support report production for security metrics, incident trends, and cyber control performance 
  • Collaborate on service review inputs relating to cyber operations and risk assurance 

Strategic Collaboration 

  • Work closely with the Service Desk Manager, Service Delivery Managers, Principal Cyber Analyst, and Technical Architect 
  • Foster strong relationships with internal stakeholders, customers, and external security partners 
  • Contribute to development of security playbooks, standard operating procedures, and escalation pathways 
  • Champion a security-first mindset across Share Service operations 

  

Essential 

  • Hands-on experience in a cybersecurity or service desk environment 
  • Knowledge of incident response frameworks, threat detection, and mitigation strategies 
  • Strong leadership and communication skills with the ability to guide teams in high-pressure scenarios 
  • Experience working with SIEM, EDR, and vulnerability management platforms 
  • Understanding of risk-based prioritisation and regulatory compliance considerations 
  • Willingness to support out-of-hours activities based on threat levels or response needs 

Desirable 

  • Certifications such as CompTIA Security+, CISSP, or equivalent 
  • Coaching and mentoring experience within cyber or support teams 
  • Familiarity with security tooling such as Sentinel, Defender, Splunk, or CrowdStrike 
  • Experience contributing to GRC (Governance, Risk, Compliance) or ISO standards 
  • Knowledge of ITIL, NIST, or MITRE ATT&CK frameworks 
  • Understanding of customer impact and stakeholder management within cyber contexts 

Methods is passionate about its people; we want our colleagues to develop the things they are good at and enjoy.

By joining us you can expect

  • Autonomy to develop and grow your skills and experience
  • Be part of exciting project work that is making a difference in society
  • Strong, inspiring and thought-provoking leadership
  • A supportive and collaborative environment

Development – access to LinkedIn Learning, a management development programme, and training

Wellness – 24/7 confidential employee assistance programme

Flexible Working – including home working and part time

Social – office parties, breakfast Tuesdays, monthly pizza Thursdays, Thirsty Thursdays, and commitment to charitable causes

Time Off – 25 days of annual leave a year, plus bank holidays, with the option to buy 10 extra days each year

Volunteering – 2 paid days per year to volunteer in our local communities or within a charity organisation

Pension – Salary Exchange Scheme with 4% employer contribution and 5% employee contribution

Life Assurance – of 4 times base salary

Private Medical Insurance – which is non-contributory (spouse and dependants included)

Worldwide Travel Insurance – which is non-contributory (spouse and dependants included)

Enhanced Maternity and Paternity Pay

Travel – season ticket loan, cycle to work scheme

For a full list of benefits please visit our website (www.methods.co.uk/careers/benefits)

Similar jobs