Team Lead, Cybersecurity Engineering

ABACUSEdinburgh, Scotland, United KingdomJob.bopubblicata il 11/08/2026
Indispensabile:AzureCloudSecurityLead

As a member of the Cybersecurity Department, the Cybersecurity Team Lead will provide hands- on technical leadership for the UK Security Operations Centre (SOC) team while collaborating closely with SOC leadership and peer team leads across the wider organisation. This role will partner with ServiceDesk, Engineering, and business stakeholders to strengthen security across data, systems, networks, applications, and client environments. The UK SOC Team Lead will guide daily security operations, support analyst development, coordinate incident response and security initiatives, and help ensure consistent global SOC processes, communication, and service delivery across time zones.

Responsibilities

Lead day-to-day UK SOC operations, prioritising work, coordinating escalations,supporting shift handovers, and ensuring timely delivery of security services and commitments.

Provide technical guidance, coaching, and mentorship to Security Analysts, helping build capability, consistency, and accountability across the team.

Collaborate with SOC managers and peer team leads in India and the US to align priorities, share operational context, maintain consistent processes, and support follow-the-sun security operations.

Oversee security tools, platforms, and operational processes including MDR, endpoint detection and response, identity management, email filtering, firewalls, application control, threat intelligence, incident tickets and security documentation.

Coordinate response to escalated security support tickets and incidents, including triage, investigation, containment, communication, and follow-up actions; occasional out-of- hours work may be required.

Manage and maintain multiple security solutions and appliances, ensuring appropriate configuration, monitoring, lifecycle management, and operational effectiveness.

Partner with information security leadership to develop operational plans, enforce security requirements, address identified risks, and report on team progress, risks, and improvement opportunities.

Monitor vulnerability intelligence and emerging threats, assess business and clien impact, and coordinate remediation activity with ServiceDesk, Engineering, and other technical teams.

Review and improve security operations documentation, runbooks, procedures, and knowledge articles to support consistent execution and audit readiness.

Communicate effectively with management, clients, peers, technical stakeholders, and geographically distributed SOC leaders, translating security risks and recommendations into clear business language.

Perform other duties as assigned by IT Security Leadership.

Skills:

Familiarity with industry standard tools and applications (such as Palo Alto, Cisco Meraki, SonicWall, Fortigate, SentinelOne, ThreatLocker, MS Defender, G-Suite, Content Filtering, Protective DNS)

Heavy experience with the Incident Response lifecycle

Familiarity with Microsoft (Office365 & Azure) and Citrix (Virtual Apps & Desktops) technologies

Familiarity with open-source intelligence gathering

Scripting ability and experience working with API endpoints such as MS Graph.

Ability to navigate and utilize a ticketing system (such as ConnectWise or Service Now)

Experience with change management and security remediation processes

Experience with security documentation, technical and policy writing

Ability to deliver technical/security information or concepts in a user-friendly format

Takes ownership and excels in both independent and team project work

Ability to work under pressure and with short deadlines

Occasional on call nights, weekend and emergency on call is required within this role.

Qualifications:

Minimum 5 years’ experience in a system engineering or technical security role

A Bachelor’s Degree in MIS, Computer Science or similar focus

Microsoft Certified (MCSE) or equivalent certification a plus

Microsoft Cloud Security certifications preferred

Security Certificate such as; CompTIA CySA, Security+ and Network+, ISC-2 CCSP/SSCP)

The Benefits of Working for Abacus

Great annual leave entitlement plus bank holidays

Gym discount

Life insurance

Comprehensive travel insurance for you and your family in line with scheme rules

Confidential well-being and counselling support

Competitive compensation

Commission eligible

Contributory pension scheme

Company events

Private Medical and Dental Insurance

Fantastic company culture and values