Skip to main content
AfterDuty

SOC Shift Lead - London

Accenture UK & Ireland · London, Greater London

Type
Full-time
Posted
8 days ago

Overview

Your incident command and escalation handling experience from policing transfers to leading SOC shift responses.

About this role

*Role:*SOC Shift Lead & Lead Analyst - London

*Location:*London (24/7 operation)

*Salary:*Competitive salary and package dependent on experience

*Career Level:*Associate Manager/ Consultant

Please Note: Any offer of employment is subject to satisfactory BPSS and the candidate being granted a level of security clearance which typically requires 10 years continuous UK address history, usually including no periods of 30 consecutive days or more spent outside of the UK, and a declaration of being a British passport holder with no dual nationalism at the point of application.

Note: The above information relates to a specific client requirement

Role Description

As a SOC Shift Lead, you will provide advanced investigation and analysis, acting as the escalation point for complex and high-severity incidents. You will conduct root cause analysis, guide and mentor L1 Analysts, and support incident containment, remediation, and recovery efforts.

Accenture are partnering with scaled UK AI compute pioneers to lead the charge on next-generation infrastructure. for sovereign AI. To support this endeavour, we’re building a high-performance compute operations team in London.

Our work will be sensitive, secure, 24x7 and on the most up-to-date high density compute stacks available. Shift teams will be setup and operate 24x7 and successful candidates working on shift will be paid a shift premium for the non-standard unsociable shift hours that will be part of that rota.

Key Responsibilities

  • Investigate escalated incidents to determine attack vectors, scope, and potential impact.
  • Correlate events across multiple data sources to build a comprehensive incident narrative.
  • Execute containment, eradication, and recovery activities in coordination with IT/OT stakeholders.
  • Lead response for medium to high-severity incidents and document detailed investigation reports.
  • Conduct tuning of detection rules and thresholds in collaboration with the Security Content Engineer.
  • Support continuous improvement by identifying gaps in detection coverage and playbooks.
  • Mentor and provide technical guidance to L1 Analysts.
  • Participate in periodic SOC exercises and simulated incident response drills
  • Be part of 24/7 SOC Team, need to work in shifts.
  • As a shift lead you will be responsible for handling escalations of the Technology Operations Centre in that particular shift. You Would be accountable in absence of a SOC manager or NOC lead.

Essential skills

  • Education: Bachelor’s degree in Cybersecurity, Computer Science, or related field.
  • Experience: 7–10 years in SOC, Incident Response, or Threat Analysis roles (for Lead role we'll consider 5 - 7years)
  • Strong analytical mindset, in-depth knowledge of SIEM/EDR tools, malware behaviour, and incident handling methodologies.

Desirable skills

  • Certifications (preferred): GCIA, GCIH, CompTIA CySA+, Microsoft SC-200, or Splunk Certified Power User.

Who we are?

Accenture is a leading global professional services company, providing a broad range of services in strategy and consulting, interactive, technology and operations, with digital capabilities across all of these services. With our thought leadership and culture of innovation, we apply industry expertise, diverse skill sets and next-generation technology to each business challenge.

We believe in inclusion and diversity and supporting the whole person. Our core values comprise of Stewardship, Best People, Client Value Creation, One Global Network, Respect for the Individual and Integrity. Year after year, Accenture is recognized worldwide not just for business performance but for inclusion and diversity too.

“Across the globe, one thing is universally true of the people of Accenture: We care deeply about what we do and the impact we have with our clients and with the communities in which we work and live. It is personal to all of us.” – Julie Sweet, Accenture CEO

Accenture reserves the right to close the role prior to this date should a suitable applicant be found.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in London

Why this fits a police background

  • Police experience explicitly valued
  • Incident command & response
  • Investigative casework
  • Team & shift leadership

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • Full-time

    Your experience managing operational risk and leading incident reviews translates directly into shaping security culture and resilience.

    Posted 2 days ago

  • Information Security Analyst

    Europa Worldwide Group · London

    Full-time

    £40,000 – £45,000Estimated

    Your experience managing evidence, compliance, and risk under ISO standards translates directly into this security assurance role.

    Posted 2 days ago

  • Cyber Security & Compliance Analyst

    Shivom Consultancy Ltd · London

    Full-time

    Your incident management, evidence handling, and risk assessment from policing transfer directly to this role.

    Posted 2 days ago

  • £570 a dayEstimated

    Your experience managing security incidents and coordinating multi-agency responses transfers directly to this governance role.

    Posted 2 days ago