Rayne Township, Pennsylvania, United States · Remote OK
Mid level
SOC Lead Department: Cyber Services and Capabilities Employment Type: Fixed Term Contract Location: GBR Remote Description We are seeking an experienced Lead SOC Analyst to oversee Security Operations Centre (SOC) activi…
Rayne Township, Pennsylvania, United States · Remote OK
Mid level
SOC Analyst Department: Cyber Services and Capabilities Employment Type: Fixed Term Contract Location: GBR Remote Description We are looking for a proactive SOC Analyst to monitor, detect, investigate, and respond to cyb…
Paralegal Department: Global Governance, Estates, and Procurement Employment Type: Full Time Location: PHL Manila Description Position Title: Paralegal Location: Taguig City, Metro Manila – 2 days per week onsite Role Pu…
City of Westminster, England, United Kingdom · Hybrid
Senior
Senior Analyst - Tactical Intelligence Department: Cyber Services and Capabilities Employment Type: Full Time Location: GBR London Description Senior Analyst - Tactical Intelligence UK (Manchester, Cheltenham or London),…
Senior Analyst - Tactical Intelligence Department: Cyber Services and Capabilities Employment Type: Full Time Location: ESP Madrid Description Senior Analyst - Tactical Intelligence UK (Manchester, Cheltenham or London),…
Rayne Township, Pennsylvania, United States · Remote OK
Senior
OT Engineer Department: Cyber Services and Capabilities Employment Type: Fixed Term Contract Location: GBR Remote Description We are looking for an experienced Senior OT Cybersecurity Consultant to join NCC Group’s fast-…
Business Development Executive Application Deadline: 26 August 2026 Department: Sales Employment Type: Full Time Location: USA Chicago Description We are seeking a highly motivated and results-driven Junior Account Manag…
Skills: Business development, Sales, Lead generation, Account management, Negotiation
Rayne Township, Pennsylvania, United States · Hybrid
Mid level
Platform Security Engineer (Tanium/Sentinel) Department: Cyber Services and Capabilities Employment Type: Fixed Term Contract Location: GBR Remote Description Remote with occasional travel in West Midlands: In the Securi…
City of Westminster, England, United Kingdom · Hybrid
Senior
Technical Account Manager Department: Cyber Services and Capabilities Employment Type: Full Time Location: GBR London Description The TAM is the customer's technical owner for the service and the expert voice in the rela…
Technical Account Manager Department: Cyber Services and Capabilities Employment Type: Full Time Location: GBR Cheltenham Jessop House Description The TAM is the customer's technical owner for the service and the expert …
Rio de Janeiro, Rio de Janeiro, Brazil · Remote OK
Senior
Cyber Senior Solution Architect (Melbourne, Australia) Department: Cyber Services and Capabilities Employment Type: Full Time Location: AUS Remote Reporting To: Andy Jarvis Description Position Title: Cyber Senior Soluti…
Enterprise Architect Department: IT Employment Type: Full Time Location: PHL Manila Reporting To: Marthijn Van Den Brand Description Within the Design Authority you will be working on Architecture for both business syste…
Senior Engineer - MXDR Department: Cyber Services and Capabilities Employment Type: Fixed Term Contract Location: ESP Madrid Description As a Senior MXDR Engineer, you are a true multitasker with both technical depth and…
Skills: MXDR, SIEM, EDR, Microsoft Sentinel, Splunk
Office Administrator Department: Global Governance, Estates, and Procurement Employment Type: Part Time Location: USA Chicago Reporting To: Stuart Cartwright Description Please note - This is a part-time role paid hourly…
Skills: Attention To Detail, Organizational Skills, Scanning Equipment, Digital Workflows, Professional Discretion
Senior Security Consultant Department: Cyber Services and Capabilities Employment Type: Full Time Location: AUS Sydney Clarence Street Description Position Title: Senior Consultant Location: Sydney Role Purpose Do you en…
The SOC Lead will monitor, detect, and investigate cyber security threats using Splunk Enterprise Security. They are also responsible for triaging incidents, performing threat hunting, and contributing to the development of SIEM use cases.
Requirements
Candidates must have at least 2 years of experience in a SOC or cyber security operations role. Proficiency in Splunk Enterprise Security and a strong understanding of network and endpoint security are required.
Full job description
SOC Lead
Department: Cyber Services and Capabilities
Employment Type: Fixed Term Contract
Location: GBR Remote
Description
We are seeking an experienced Lead SOC Analyst to oversee Security Operations Centre (SOC) activities, lead incident response efforts, and mentor a team of analysts. The successful candidate will have strong expertise in cyber threat detection, incident investigation, and the Splunk Enterprise Security (ES) platform.
Key Responsibilities
Lead day-to-day SOC operations and provide technical guidance to SOC Analysts.
Monitor, investigate, and respond to security incidents and alerts.
Develop, optimise, and maintain Splunk Enterprise Security use cases, correlation searches, dashboards, and reports.
Conduct threat hunting and advanced forensic investigations.
Coordinate incident response activities and provide detailed post-incident analysis.
Collaborate with IT, security, and business stakeholders to improve security posture.
Support SOC processes, playbooks, and continuous improvement initiatives.
Skills, Knowledge and Expertise
Extensive experience working in a SOC, Cyber Security, or Incident Response role.
Strong hands-on experience with Splunk Enterprise Security.
Experience leading security investigations and major incident response activities.
Knowledge of MITRE ATT&CK, SIEM technologies, threat intelligence, and security best practices.
Relevant certifications such as Splunk Certified Cybersecurity Defence Analyst, CISSP, GCIA, GCIH, or equivalent are desirable.
Benefits
We have a high-performance culture which is balanced evenly with world-class well-being initiatives and benefits:
Flexible Working: Balance your work and personal life with our flexible working options.
Generous Holiday Allowance: Enjoy 25 days of holiday, plus bank holidays, with the option to buy up to 5 additional days of annual leave.
Medicash & Critical Illness Scheme
Financial & Investment Benefits: Enjoy peace of mind with our Pension, Life Assurance, and Share Save Scheme.
Community & Volunteering Programmes: Make a difference in your community with our volunteering opportunities.
Green Car Scheme: Drive green and save money with our eco-friendly car scheme.
Cycle Scheme: Stay fit and healthy with our cycle-to-work scheme.
Special Time Off: Take time off for those big moments in life, like getting married/entering into a civil partnership, becoming a grandparent, and welcoming home a new pet.
Family Planning: Benefit from our generous maternity and paternity leave, as well as time off and support for those undergoing fertility treatments.
We are NCC Group. A people powered, tech-enabled global cyber security and resilience company with 2,000 colleagues around the world.
For over 25 years we’ve been trusted by the world’s leading companies and Governments to manage and deliver cyber resilience, working together to create a more secure digital future.
We are NCC Group. A people powered, tech-enabled global cyber security and resilience company with 2,000 colleagues around the world.
For over 25 years we’ve been trusted by the world’s leading companies and Governments to manage and deliver cyber resilience, working together to create a more secure digital future.