Talent.com
CyPro
SOC ManagerCyPro • Charing Cross, Greater London, United Kingdom
SOC Manager

SOC Manager

CyPro • Charing Cross, Greater London, United Kingdom
10 days ago
Job type
  • Full-time
Job description

Job Description


To be considered for an interview, please make sure your application is full in line with the job specs as found below.

IMPORTANT:

  • THIS IS A SOC ROLE.
  • No recruiters or recruitment agencies, please.
  • You must be UK based. We cannot provide visa sponsorship.
  • Previous experience working as a SOC Manager within a Managed Security Service Provider (MSSP) is mandatory. Applications that do not meet this requirement will not progress.

Overview:

Salary: £75,000+, depending on experience.

Holiday: 24 days, pro rata, plus your birthday off, bank holidays and one additional day for every 12 months you stay with us.

Working Together: Three days per week in our Canary Wharf office, 39 floors up , with flexibility for the remaining two days.

Working Hours: 40 hours, Monday to Friday, with occasional support for serious incidents outside normal hours.

Training: An individual training plan and budget for one professional certification or course each year.

Socials: Regular drinks, team activities and the occasional bit of axe throwing.

Start Date: October 2026.

Minimum Requirements

You must meet all five requirements below. Please do not apply if you do not.

  • Mandatory MSSP experience: You must have previous experience working specifically as a SOC Manager within an MSSP, delivering security operations services to multiple external clients rather than managing only an internal SOC.
  • Technical security operations experience: You must have strong practical knowledge of SIEM, EDR/XDR, incident investigation and response, detection engineering, alert triage, threat intelligence, threat hunting, SOAR, automation and SOC reporting. Experience with Microsoft Sentinel, Microsoft Defender XDR and the wider Microsoft security ecosystem is strongly desirable.
  • Fluent business English: This is a senior, client-facing role. You must communicate complex security and operational matters clearly and confidently in spoken and written English, including executive briefings, incident communications, governance meetings and formal reports. Communication skills will be assessed during recruitment.
  • Location: You must live within approximately 90 minutes’ commuting distance of Canary Wharf, London.
  • Education: A technical academic background in computer science, cyber security, information security, software engineering or a related field is desirable. A degree is not mandatory and equivalent professional experience or qualifications will be considered.

About CyPro

  • CyPro is an innovative cyber security business with a shared mission: to redefine cyber security for small and medium-sized businesses.
  • Our founders, Jonny and Rob, built their early careers delivering cyber security for large enterprises and central government. They saw a need for a different approach for smaller organisations.
  • We help clients prevent attacks, secure larger customers and scale confidently. This role offers the opportunity to shape a growing SOC alongside experienced professionals.

The Role

  • As SOC Manager, you will be accountable for the day-to-day delivery of CyPro’s 24/7 managed detection and response services across a portfolio of clients.
  • You will lead SOC Analysts, maintain operational quality and act as a senior client contact.
  • You will own service performance, incident escalation, detection coverage and continuous improvement.
  • This is not a role where you simply supervise an alert queue. You must understand the technology, challenge poor-quality output and continually improve the service.
  • All CyPro employees are expected to be strong problem-solvers, adaptable and comfortable taking ownership in a fast-paced environment with limited guardrails.

Client Delivery and Service Management

  • Own managed detection and response delivery across a portfolio of clients.
  • Act as the primary operational escalation point for clients and internal teams.
  • Lead service reviews, governance meetings and executive briefings.
  • Present incidents, trends, risks and recommendations clearly and commercially.
  • Own performance against SLAs, KPIs and contractual commitments.
  • Monitor incident trends, detection coverage, alert volumes, false positives and response performance.
  • Create service improvement plans where quality falls below expectations.
  • Lead client onboarding and service transition, coordinating deployment, documentation and stakeholders.
  • Manage major incident escalations and ensure responses are controlled, communicated and documented.

Team Leadership and People Management

  • Line manage and develop SOC Analysts and Senior SOC Analysts.
  • Set clear expectations and hold team members accountable for quality and timeliness.
  • Conduct one-to-ones, performance reviews and career development discussions.
  • Build development plans and support career progression.
  • Review investigations, incident reports and client communications.
  • Manage workload, capacity, priorities and operational coverage.
  • Support recruitment, assessment and onboarding.
  • Act as a role model for professionalism, ownership and delivery quality.

Detection, Investigation and Response

  • Maintain oversight of detection coverage across client environments.
  • Ensure alerts and incidents are investigated consistently and appropriately.
  • Provide technical guidance during complex or high-severity incidents.
  • Work with analysts, engineers and platform specialists to develop detection use cases.
  • Improve detection logic and reduce false positives without weakening coverage.
  • Oversee onboarding of new log sources and security technologies.
  • Identify opportunities to automate repetitive investigation and response activities.
  • Track alert quality, triage, investigation, containment and automation performance.
  • Use operational data to identify weaknesses and drive improvement.
  • Support threat hunting and the use of threat intelligence.
  • Turn incident lessons into improved detections, playbooks and response procedures.
  • Maintain awareness of emerging threats, attacker techniques and SOC technologies.

Service Improvement and Practice Development

  • Own and improve runbooks, playbooks, workflows and operational procedures.
  • Ensure documentation is clear, current and usable during live incidents.
  • Standardise investigation, escalation and reporting across client accounts.
  • Develop repeatable operating models that allow the SOC to scale without reducing quality.
  • Improve quality assurance for alerts, incidents and client deliverables.
  • Improve client reporting and service governance.
  • Contribute to new managed detection and response services.
  • Evaluate security technologies, automation and AI-supported SOC tooling.
  • Support proofs of concept and vendor assessments.
  • Align operational priorities with the wider SOC roadmap.

Commercial and Business Development

  • Support pre-sales discussions for managed detection and response opportunities.
  • Explain CyPro’s SOC capabilities clearly to prospective clients.
  • Contribute to service designs, proposals, pricing and Statements of Work.
  • Estimate onboarding effort, service capacity and technical resource requirements.
  • Identify opportunities to improve or expand services for existing clients.
  • Understand account profitability and the relationship between scope, capacity and delivery cost.
  • Ensure additional requests are assessed, scoped and commercially agreed.

Professional Development

  • Maintain your technical and professional credibility through relevant learning and industry engagement.
  • Strong candidates will typically hold two or more relevant certifications, or demonstrate equivalent experience. Examples include Microsoft SC-200, AZ-500, CISSP, CISM, GCIA, GCIH, CompTIA CySA+ and CREST Certified Intrusion Analyst.

Soft Skills

  • Effective: You remove obstacles, establish ownership and drive work through to completion.
  • Accountable and Humble: You take responsibility for SOC performance, accept feedback and change your approach when needed.
  • Calm Under Pressure: You remain structured, prioritise clearly and communicate confidently during serious incidents.
  • Technically Credible: You understand security operations well enough to challenge investigations, identify weak reasoning and guide the team.
  • Client Focused: You provide timely communication, clear recommendations and confidence that the service is well managed.
  • People Developer: You invest in your team, give direct feedback and address poor performance.
  • Commercially Aware: You balance strong security outcomes with contractual scope, resources and sustainable delivery.
  • Adaptable: You make sensible decisions in an evolving environment and help build processes that do not yet exist.

Interview Process

We can generally take candidates through the full process within 10 days .

Telephone Interview: A 20-minute initial conversation with a senior member of the Cyber Security team.

Psychometric Testing: Three 15-minute cognitive assessments. xwwtmva

Assessment Centre: A morning in our Canary Wharf office involving practical exercises and a final interview with a practice partner.

Create a job alert for this search

SOC Manager • Charing Cross, Greater London, United Kingdom

Similar jobs

Global SAP S/4HANA O2C Transformation Director

Smith+NephewGreater London, England, United Kingdom
Full-time

Smith+Nephew is seeking a senior IT leader to drive SAP S/4HANA Order to Cash transformation on a global scale.You will own the global O2C domain, define the future state architecture and guide mul... Show more

 • Promoted

Engineering Director, Security

Visa HuntGreater London, England, United Kingdom
Full-time

The Engineering Director, Security will be a senior leader within our global Security organisation, partnering directly with the CISO and other senior engineering leaders.You will lead an organisat... Show more

 • Promoted

SOC Manager

Robson BaleGreater London, England, GB
Full-time

SOC Manager - Contract - Inside IR35 - Hybrid London.We're looking for a SOC Manager to join our team in London, United Kingdom in a hybrid working mode.In this role, you will lead the Security Ope... Show more

 • Promoted

Senior SOC Analyst

Bonhill PartnersGreater London, England, GB
Full-time

Security Operations Center or similar cybersecurity role.Expert knowledge of Splunk (preferably Splunk Enterprise Security).Strong experience in SPL (Search Processing Language) and log analysis.De... Show more

 • Promoted

SOC Shift Lead

慨正橡扯Greater London, England, GB
Full-time

Competitive salary and package dependent on experience.Any offer of employment is subject to satisfactory BPSS and the candidate being granted a level of security clearance which typically requires... Show more

 • Promoted

SVP, CRO Americas L&H

ScorGreater London, England, United Kingdom
Full-time

The Chief Risk Officer (CRO) for Life & Health (L&H) Americas is a senior leader responsible for the strategic oversight and execution of the risk management framework across the Americas L&H busin... Show more

 • Promoted

UK Chief Operating Officer & Strategy Leader

OKXGreater London, England, United Kingdom
Full-time

OKX is seeking a hands-on UK Chief Operating Officer to partner with the local CEO in delivering the UK strategy and operating model.You will bridge strategy, operations, product and regulatory mar... Show more

 • Promoted

Global GSOC VP – 24/7 Crisis & Intelligence Leader

JPMorganChaseGreater London, England, United Kingdom
Full-time

JPMorganChase in London is seeking a VP, Command Center Manager to lead the 24/7/365 GSOC for the EMEA region.You will shape threat detection, incident response, and crisis management to protect pe... Show more

 • Promoted

SOC Analyst

BerenbergGreater London, England, GB
Full-time

Security Operations Center Analyst.Innovation & Technology @ Berenberg.In an era where digitalisation and modern IT infrastructure is revolutionizing banking, we are shaping a technology-driven ban... Show more

 • Promoted

Senior Cloud & DevOps Engineer — SOC 2 & ISO Ready

ReccreateGreater London, England, GB
Full-time

Reccreate is looking for a senior professional to join their team in London, focusing on cloud infrastructure.This role encompasses designing, implementing, and maintaining systems crucial for a fa... Show more

 • Promoted

Senior Manager, Application Security & Secure SDLC

MiroGreater London, England, United Kingdom
Full-time

Miro in Greater London is looking for a Senior Manager of Application Security to lead their global security team and ensure security is integrated throughout the software development lifecycle.Thi... Show more

 • Promoted

Board-Level COO | Transforming Healthcare Delivery

Alumni GlobalGreater London, England, United Kingdom
Full-time

King's College Hospital NHS Foundation Trust is seeking an exceptional Chief Operating Officer to join its Board as it delivers a new five-year strategy and ambitious vision to transform healthcare... Show more

 • Promoted

Head of Sales EMEA & APAC - Global Family Office (GFO)

Northern TrustGreater London, England, United Kingdom
Full-time

Responsible for leading Global Family Office (GFO) sales and business development activities across Europe, the Middle East and Asia‑Pacific (EMEA & APAC).Reporting to the Global Head of Sales and ... Show more

 • Promoted

Global SOC Leader: Incident Response & Security Operations

JP MorganGreater London, England, GB
Full-time

A leading global financial institution is seeking a SOC Manager to lead a dedicated team in cybersecurity.In this role, you will manage SOC analysts, oversee alert triage, and coordinate incident r... Show more

 • Promoted

Director, Co-Investment & Syndication — Senior Origination

Ladd & Co.Greater London, England, United Kingdom
Full-time

Director for its Co-Investment & Syndication practice in Greater London.The role involves originating and structuring direct co-investment opportunities while managing senior relationships across s... Show more

 • Promoted

Senior Identity Engineer: SSO, MFA & Access Control

Front Door DefenseGreater London, England, United Kingdom
Full-time

Scale AI is seeking a Senior Software Engineer, Identity, in London to design and implement scalable identity infrastructure for secure authentication and authorization across enterprise systems.Yo... Show more

 • Promoted

MSSP Ecosystem Architect — Partnerships & Revenue

CybleGreater London, England, United Kingdom
Full-time

Cyble is seeking an experienced professional for a strategic role focused on managing key global MSSP partnerships.You'll engage directly with C-level leaders, driving revenue growth through integr... Show more

 • Promoted

CSOC Engineer: Security Escalations & Mentoring

FastlyGreater London, England, GB
Full-time

A leading edge cloud provider is seeking a CSOC Engineer to join their team in London.This role involves monitoring customer activities to identify security threats and designing tools to enhance s... Show more

 • Promoted

Western Europe Regional Sales Director – Enterprise Security

DoistGreater London, England, United Kingdom
Full-time

Torq is seeking a hands-on Regional Sales Director to lead our Western Europe business across the UK, Ireland, France, Benelux, and Northern Europe.You will build and coach a field-based team of En... Show more

 • Promoted

Western Europe Regional Sales Director — Security Growth

TorqGreater London, England, United Kingdom
Full-time

Torq, the AI-native SecOps platform, is seeking a Regional Sales Director to lead Western Europe from London.You will coach Enterprise Account Executives, own regional strategy, and drive pipeline ... Show more