Skip to main content

Team Lead, Cybersecurity Engineering

Job Description

As a member of the Cybersecurity Department, the Cybersecurity Team Lead will provide hands- on technical leadership for the UK Security Operations Centre (SOC) team while collaborating closely with SOC leadership and peer team leads across the wider organisation. This role will partner with ServiceDesk, Engineering, and business stakeholders to strengthen security across data, systems, networks, applications, and client environments. The UK SOC Team Lead will guide daily security operations, support analyst development, coordinate incident response and security initiatives, and help ensure consistent global SOC processes, communication, and service delivery across time zones.



Responsibilities

  • Lead day-to-day UK SOC operations, prioritising work, coordinating escalations,supporting shift handovers, and ensuring timely delivery of security services and commitments.
  • Provide technical guidance, coaching, and mentorship to Security Analysts, helping build capability, consistency, and accountability across the team.
  • Collaborate with SOC managers and peer team leads in India and the US to align priorities, share operational context, maintain consistent processes, and support follow-the-sun security operations.
  • Oversee security tools, platforms, and operational processes including MDR, endpoint detection and response, identity management, email filtering, firewalls, application control, threat intelligence, incident tickets and security documentation.
  • Coordinate response to escalated security support tickets and incidents, including triage, investigation, containment, communication, and follow-up actions; occasional out-of-
    hours work may be required.
  • Manage and maintain multiple security solutions and appliances, ensuring appropriate configuration, monitoring, lifecycle management, and operational effectiveness.
  •  Partner with information security leadership to develop operational plans, enforce security requirements, address identified risks, and report on team progress, risks, and improvement opportunities.
  • Monitor vulnerability intelligence and emerging threats, assess business and clien impact, and coordinate remediation activity with ServiceDesk, Engineering, and other technical teams.
  • Review and improve security operations documentation, runbooks, procedures, and knowledge articles to support consistent execution and audit readiness.
  • Communicate effectively with management, clients, peers, technical stakeholders, and geographically distributed SOC leaders, translating security risks and recommendations into clear business language.
  • Perform other duties as assigned by IT Security Leadership.

Skills:

  • Familiarity with industry standard tools and applications (such as Palo Alto, Cisco Meraki, SonicWall, Fortigate, SentinelOne, ThreatLocker, MS Defender, G-Suite, Content Filtering, Protective DNS) 
  • Heavy experience with the Incident Response lifecycle
  • Familiarity with Microsoft (Office365 & Azure) and Citrix (Virtual Apps & Desktops) technologies 
  • Familiarity with open-source intelligence gathering
  • Scripting ability and experience working with API endpoints such as MS Graph.
  • Ability to navigate and utilize a ticketing system (such as ConnectWise or Service Now) 
  • Experience with change management and security remediation processes 
  • Experience with security documentation, technical and policy writing 
  • Ability to deliver technical/security information or concepts in a user-friendly format 
  • Takes ownership and excels in both independent and team project work  
  • Ability to work under pressure and with short deadlines  
  • Occasional on call nights, weekend and emergency on call is required within this role.

Qualifications:

  • Minimum 5 years’ experience in a system engineering or technical security role 
  • A Bachelor’s Degree in MIS, Computer Science or similar focus 
  • Microsoft Certified (MCSE) or equivalent certification a plus 
    • Microsoft Cloud Security certifications preferred
  • Security Certificate such as; CompTIA CySA,  Security+ and Network+, ISC-2 CCSP/SSCP) 

The Benefits of Working for Abacus

  • Great annual leave entitlement plus bank holidays 
  • Gym discount 
  • Life insurance 
  • Comprehensive travel insurance for you and your family in line with scheme rules 
  • Confidential well-being and counselling support 
  • Competitive compensation 
  • Commission eligible 
  • Contributory pension scheme 
  • Company events 
  • Private Medical and Dental Insurance 
  • Fantastic company culture and values 

Optimize Your Resume for This Job

Get a match score and see exactly which keywords you're missing

Optimize Resume

Job Details

Department
Security
Category
Security
Employment Type
Full Time
Location
Edinburgh, United Kingdom (Remote)
Posted

About Abacus AI

Abacus AI is the world's best AI super assistant and general-purpose agent! Customers use Abacus AI is their AI control center from where they can create, deploy and monitor AI agents. These agents can pretty much do any task from creating documents to automating workflows and complex decisions. We are leaders in agentic research, and our state-of-the-art AI agent, Deep Agent, can create entire software systems including vibe-code SaaS apps from agentic templates. Thousands of AI native busineses have been started on our platform! With over 2 million customers and several F500 Companies, we are automating white-collar work and building the AGI control center of the future

Found this role interesting?

Team Lead, Cybersecurity Engineering
Abacus AI
Apply