Lead SOC Analyst

7 days ago


Leeds, Leeds, United Kingdom BAE Full time

Location(s): UK, Europe & Africa : UK : Leeds 

BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.

Job Title: Lead SOC Analyst 
Requisition ID: 121667

Location: Leeds 

Grade: GG10 - GG11

Referral Bonus: £5,000

Role description

BAE Systems have been contracted to undertake the day to day operation of (and incremental improvement of) a dedicated Security Operations Centre (SOC) to support the defence of a major UK CNI organisation.  The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected.  The customer is committed to development of this improved SOC to be a benchmark of best practice and excellence in reflection of the significant threat that the protected systems are subject to.

The SOC will be staffed by a blend of customer and BAE Systems staff, based in multiple locations, but with the day to day operations based from our Leeds office (due to the need for customer network access available at this location).

The SOC Analyst roles are 'hands-on' shift based roles, working as part of a 24/7 operation with four shift teams working in a standard rotation. They are responsible for utilising the SOC's Security Incident and Event Management (SIEM) toolsets to detect and investigate potential Security and Service Incidents occurring within the monitored networks.

These roles require a minimum of SC clearance and be prepared to undergo DV clearance.  

Responsibilities

  • Ensure that the shift handover brief is prepared and delivered to the incoming shift
  • Monitor, triage, analyse and investigate alerts, log data and network traffic using the Protective Monitoring platform and Internet resources to identify cyber-attacks / security incidents.
  • Categorise all suspected incidents in line with the Security Incident policy
  • Recognise potential, successful and unsuccessful intrusion attempts and compromises through reviews and further analysis of relevant event detail and incident summary information.
  • Write up high quality security incident tickets using a combination of existing knowledge resources and independent research.
  • Assist with remediation activities and conduct permitted remediation (or support customer stakeholders) to inhibit cyber-attacks, clean up IT systems and secure networks against repeat attacks.
  • Produce security incident review reports to present information about the security incident and provide security improvement recommendations based on the security incident review.
  • Understand Threat Intelligence and its use in an operational environment
  • Support incident response to national scale incidents in a coaching capacity
  • Work with other teams within BAE to improve services on the basis of customer needs.
  • Produce new workflows for automation into SOAR tools for common attack types.
  • Continually improve the service and review use cases and propose changes and enhancements in line with the changing threat.

Requirements

Technical

  • Basic Python and/or scripting skills, Windows, OS X, and Linux
  • Experience using Splunk and Sentinal
  • Working with a range of security tooling/technology
  • Strong understanding of security architecture, in particular networking
  • Detailed understanding of threat intelligence and threat actors, TTPs and operationalising threat intelligence.
  • Experience in investigating complex network intrusions (by state-sponsored groups or targeted ransomware attacks).
  • Understand TCP/IP component layers to identify normal and abnormal traffic
  • Understanding of AWS &/or Azure cloud services
  • Experience of Splunk (with ES) &/or Sentinel, content development experience desirable

Non-technical

  • Client side consulting, including stakeholder engagement and the ability to communicate insights and concepts to others (including briefing skills and report writing)
  • Coaching mindset – Mentor team.
  • Security process development
  • Able to understand and adapt to different cultures and hierarchical structures.
  • Self-starter and capable of independent working
  • Team player and adept at working in multi-disciplinary and diverse teams

Desirable

  • Software engineering experience
  • Penetration testing skills

Life at BAE Systems Digital Intelligence 

We are embracing Hybrid Working. This means you and your colleagues may be working in different locations, such as from home, another BAE Systems office or client site, some or all of the time, and work might be going on at different times of the day.

By embracing technology, we can interact, collaborate and create together, even when we're working remotely from one another. 

Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.


  • SOC Shift Lead

    6 days ago


    Leeds, Leeds, United Kingdom Anson McCade Full time

    Splunk, Defender, SIEM We are expanding our Security Operations Centre (SOC) in Leeds, and we're looking for a dedicated SOC Shift Lead to join our team. This role is crucial in our mission to defend the UK against cyber crime. If you have experience with Splunk, Sentinel, Defender, and SIEM tools, we want to hear from you As a SOC Shift Lead, you'll be at...

  • Associate SOC Analyst

    2 weeks ago


    Leeds, Leeds, United Kingdom TieTalent Full time

    About Duties and ResponsibilitiesAs an Associate SOC Analyst, you bring a strong background in IT or cybersecurity to a transitory role that builds towards full SOC Analyst responsibilities. You use your foundational knowledge to independently triage, investigate, and validate alerts using established playbooks. While you handle basic incident investigations...


  • Leeds, Leeds, United Kingdom TieTalent Full time

    About Duties and ResponsibilitiesAs an Associate SOC Analyst, you bring a strong background in IT or cybersecurity to a transitory role that builds towards full SOC Analyst responsibilities. You use your foundational knowledge to independently triage, investigate, and validate alerts using established playbooks. While you handle basic incident investigations...

  • SOC Shift Lead

    5 days ago


    Leeds, Leeds, United Kingdom Anson McCade Full time

    A global leader in defence and security solutions is seeking a SOC Shift Lead to take charge of security operations, incident management, and threat detection strategies. This is an excellent opportunity for an experienced SOC analyst to step into a leadership role and help protect critical systems from evolving cyber threats.Key Responsibilities:Lead and...

  • SOC Shift Lead

    2 days ago


    Leeds, Leeds, United Kingdom Anson McCade Full time

    A global leader in defence and security solutions is seeking a SOC Shift Lead to take charge of security operations, incident management, and threat detection strategies. This is an excellent opportunity for an experienced SOC analyst to step into a leadership role and help protect critical systems from evolving cyber threats.Key Responsibilities:Lead and...

  • SOC Analyst

    6 days ago


    Leeds, Leeds, United Kingdom Anson McCade Full time

    A global leader in the Aerospace & Defence sector is seeking the expertise of a technically astute SOC Analyst to help support the day to day operations; and incremental improvement, of a dedicated Security Operations Centre (SOC) for a major UK CNI organisation based in Leeds. The successful candidate for SOC Analyst role will be required undergo...

  • Senior SOC Analyst

    6 days ago


    Leeds, Leeds, United Kingdom Anson McCade Full time

    Are you passionate about national security and looking to make a meaningful contribution to the safety and security of your country? If so, we are looking for a talented SOC Analyst to join our team on a contract basis. As a National Security SOC Analyst, you will be responsible for ensuring the security of our critical national infrastructure and systems....

  • SOC Shift Lead

    6 days ago


    Leeds, Leeds, United Kingdom Anson McCade Full time

    SOC, Threat, NIST SOC Shift Lead Leeds Up to £65,000 4 days on, 4 days off We are seeking a dedicated SOC Shift Lead to join our dynamic team in Leeds. This role involves leading our Security Operations Center (SOC) during shifts, ensuring the highest level of security monitoring and incident response. The successful candidate will have the...

  • SOC Manager

    7 days ago


    Leeds, Leeds, United Kingdom Endava Full time

    Job DescriptionWe are seeking a Security Operations Manager to lead and enhance our global Security Operations Center (SOC) across multiple regions. This role is responsible for strategic leadership, operational oversight, and continuous improvement of security monitoring, incident response, and threat detection capabilities. The ideal candidate has strong...

  • SOC Manager

    1 week ago


    Leeds, Leeds, United Kingdom TN United Kingdom Full time

    SOC Manager (Security Operations Manager), LeedsClient:EndavaLocation:Leeds, United KingdomJob Category:OtherEU work permit required:YesJob Reference:2a8bceb0ed7cJob Views:8Posted:04.04.2025Expiry Date:19.05.2025Job Description:We are seeking a Security Operations Manager to lead and enhance our global Security Operations Center (SOC) across multiple...

  • SOC Manager

    5 days ago


    Leeds, Leeds, United Kingdom TN United Kingdom Full time

    SOC Manager (Security Operations Manager), LeedsClient:EndavaLocation:Leeds, United KingdomJob Category:OtherEU work permit required:YesJob Reference:2a8bceb0ed7cJob Views:8Posted:04.04.2025Expiry Date:19.05.2025Job Description:We are seeking a Security Operations Manager to lead and enhance our global Security Operations Center (SOC) across multiple...


  • Leeds, Leeds, United Kingdom Fruition IT Full time

    Job Description Role: Lead Security Operations Analyst Location: Based out of London, Leeds or Birmingham Hybrid: One day per week on site Package: £65,000 Bonus On-call allowance An international leader in business services are looking for a Lead Security Operations Analyst to join their Cyber Security Team. The Lead Security Operations...

  • Security Analyst

    5 days ago


    Leeds, Leeds, United Kingdom Interface Recruitment UK Full time

    Security Analyst – YORK – SOC background req. – SHIPSecurity Analyst is required for a services driven tech business who are growing at an exponential rate. If you want to work with an organisation on some of the largest IT Services contracts in the market and have the genuine ability to cross train on new technologies at the same time gaining vendor...


  • Leeds, Leeds, United Kingdom TN United Kingdom Full time

    The Information Security & Resilience team are responsible for security activities across the DLA Piper International firm.This role is an exciting opportunity to join our Cyber Security team in a pivotal role within Security Operations. Reporting to the Senior Security Operations Manager, the right person will be responsible for leading the detection and...


  • Leeds, Leeds, United Kingdom TN United Kingdom Full time

    The Information Security & Resilience team are responsible for security activities across the DLA Piper International firm.This role is an exciting opportunity to join our Cyber Security team in a pivotal role within Security Operations. Reporting to the Senior Security Operations Manager, the right person will be responsible for leading the detection and...


  • Leeds, Leeds, United Kingdom Jet2 Limited Full time

    As the Lead Business Analyst, you'll be responsible for business analysis in one of the customer journeys of our business, managing a team of Business Analysts and ensuring we deliver the correct solutions that align with the Digital Product team's expected outcomes. You'll be a fundamental part of the wider Business Analysis leadership team, and responsible...


  • Leeds, Leeds, United Kingdom Jet2 Full time

    Job Description: As the Lead Business Analyst, you'll be responsible for business analysis in one of the customer journeys of our business, managing a team of Business Analysts and ensuring we deliver the correct solutions that align with the Digital Product team's expected outcomes. You'll be a fundamental part of the wider Business Analysis leadership...


  • Leeds, Leeds, United Kingdom DLA Piper Full time

    The roleThe Information Security & Resilience team are responsible for security activities across the DLA Piper International firm.This role is an exciting opportunity to join our Cyber Security team in a pivotal role within Security Operations. Reporting to the Senior Security Operations Manager, the right person will be responsible for leading the...


  • Leeds, Leeds, United Kingdom Harnham Full time

    Direct message the job poster from HarnhamLeading Analytics & AI growth across Harnham's largest clients.Up to £62,000Leeds (3 days a week)The CompanyThis is an opportunity to work for an International Financial Service that leads the way on all types of unsecured and secured lending. Within this role, you will help drive credit risk strategy using...

  • Lead Data Analyst

    7 days ago


    Leeds, Leeds, United Kingdom IQVIA Full time

    In this role, you are responsible for leading, supervising & supporting the data analyst team at Interface Clinical Services - an IQVIA business. You'll also provide information reporting and dashboards deliverable to both internal and external stakeholders; external is delivered to service launches/re-launches and on a routine basis, internal is mainly to...