Security Operations Centre Technical Team Lead

Job Description

It is an exciting time for HM Land Registry (HMLR) as we continue on a major transformation programme. HMLR's ambition is to become the world’s leading land registry for speed, simplicity and an open approach to data.

We have an exciting opportunity to join us on a permanent basis, as a Security Operations Centre Technical Team Lead. 

You will provide technical leadership for the Security Operations Centre team providing technical oversight and direction. You will engage with various teams across DDaT to maintain security monitoring, threat intelligence and vulnerability management controls to detect and alert across all HM Land Registry technical assets. You will also assist in the tuning of controls and counter measures.

You will help direct HM Land Registry's technical penetration test activities to provide assurance to the organisation, validating that our services, applications, and websites are secured against the latest vulnerabilities and threats

Job description

  • You will take forward technical consolidation and/or improvement activities providing guidance and leadership to technicians within the IT Operations Practice and wider, whilst also working across DDaT to support and deliver solutions in line with the Technology and Business Strategies.
  • Working closely with the Lead Infrastructure Engineers and subject matter experts, you will develop and maintain security monitoring, threat intelligence and vulnerability management controls, to detect and alert across all HMLR technical assets.  You will work with technical teams to develop SOC scenario-based run books to respond to security events & incidents. 
  • Develop vulnerability tools to ensure awareness of threats and risks to security controls.  Working with Lead Infrastructure Engineers and other security teams to advise and guide operational teams on Security controls. 
  • Engage with project teams to provide assurance around the security of new and existing services at key points.  

HMLR expect everyone to spend at least 60% of their working time in the office.  Please note that you will be required to work a minimum of 30 hours per week in this post. 

Occasional travel is required to other HMLR offices and other government departments, with possible overnight stays.  This role does require occasional planned out of hours and may include participation in a permanent on-call rota. 

For more information about this role, please see attached candidate pack.

Person specification

You possess extensive experience within a Security Operations Centre or operational security environment, demonstrating a proven track record of leading technical teams or functions within an enterprise setting. You hold a qualification in Information Technology or a related field at the degree level or equivalent, or you can showcase significant experience in an IT domain.

As an excellent communicator, you thrive in collaborative team environments. Your expertise includes Incident Response, where you have led technical investigations and developed response frameworks. You are proficient with Security Information and Event Management (SIEM) systems and adept at utilising Cyber Threat Intelligence within this context.

You have a strong capability to manage technical risks and lead the implementation of mitigations. Additionally, you are experienced in working with IT Service Management (ITSM) systems to manage and prioritise workloads, and you excel in producing and maintaining technical procedures and playbooks.