Job description
SOC Manager – Sentinel & Defender
80-90k Salary + Great Benefits
Remote
Our award-winning Managed Service Provider client delivers 24/7 services to organisations of every size. With solutions to meet every need, they offer expertise in Cloud, Data, Networks, Security, Azure, and more. Due to growth within their security portfolio, they now have an exciting and immediate need for a UK remote-based Security Architect.
As an experienced Security Architect, you will:
- Join a security product team in assisting both new and existing customers leverage managed Microsoft security-focused services
- Help drive and technically shape the delivery of Managed Security services
- Lead, develop, and coach a team of analysts, implementing performance management solutions
- Define team objectives at an individual level
- Manage the overall skill mix of employees according to the needs of the function
- Manage the allocation of team resources according to operational, support, and project requirements
- Contribute to the business strategy, prioritising projects, and goals accordingly.
- Ensure cyber security events, alerts, and incidents are investigated efficiently and acted upon
- Ensure all investigations requiring a security incident are raised in agreement with SLAs / OLAs
- Assess operational events
- Take ownership and management of all SOC processes, procedures, and delivery
- Identify and deliver tuning & automation improvements for the SOC
- Deliver regular metrics and reporting on SOC delivery
- Establish productive, professional relationships with key personnel in client accounts
- Develop Security services in line with Microsoft, maximising synergies, funding, and relationships
- Supporting sales efforts to win and onboard new customers
- Developing technical standards for the SOC team
- Be a technical mentor for members of the team
- Supporting marketing activities with blog posts, thought leadership, and webinar activities
- Strong understanding of Cybersecurity
- People management experience
- Strong experience in managed services and Microsoft
- Microsoft Sentinel (both SIEM & SOAR capabilities)
- Experience creating workbooks, playbooks, and analytic rules
- Experience using Sentinel in an MSSP environment
- Microsoft Defender for M365
- Microsoft Defender for Cloud
- Automation (Logic Apps, power platform & Azure functions)
- Excellent communication skills
- Ability to review technical or procedural documents or process outputs
- Ability to interpret technical information
- Willingness to self-develop within Information Security
- Ability to influence senior management on security operations good practice
- Ability to identify and drive security operations improvement
- Experience in using scripting languages (KQL, python, or PowerShell / building dashboards / automating common tasks)
- An understanding of the threat landscape, emerging trends
- SC-900, MS-900, SC-200, MS-500, AZ-500
- A base salary of 80-90k
- Fully remote working
- Generous PTO
- Training and development funding
- Profit share
- Healthcare and pension
- Enhanced maternity/paternity and adoption leave
- EAP
- Regular socials
- More, more, more