Leave us your email address and we'll send you all the new jobs according to your preferences.
Cyber Operations Lead
Posted 2 hours 28 minutes ago by SysGroup PLC
Edinburgh, United Kingdom Posted on 16/07/2026
SysGroup ishiring a Cyber Operations Lead, based in Edinburgh, to head the day-to-daydelivery of our cyber security managed services. This is the senior operationalleadership role in the Cyber Security team under our 2026 operating model: youown the SOC service, lead the security engineers and analysts, and act as theescalation point for major security incidents across our client base.
This is aleadership and delivery role. You will run the operation, develop the peopleand own the service - including operational delivery of our Zscaler zero trustestate.
- Lead, coach and develop thecyber operations engineers and analysts - 1:1s, development plans, hiring andsuccession.
- Own capacity, shift and on-callplanning for a 24/7 security service.
- Set and track the team'scertification and capability plan against the SysGroup role framework.
- Own operational reporting:client-facing security reports, KPIs and continual service improvement.
- Own SOC/SIEM service delivery:detection coverage, use-case tuning, triage quality and shift handovers.
- Act as major incident lead forsecurity events: containment, client communication and post-incident review.
- Own the vulnerabilitymanagement lifecycle across managed clients: scan, triage, remediate, report.
- Set the standard for EDR andsecurity tooling configuration, health and response playbooks.
- Own operational delivery of theZscaler zero trust estate (ZIA/ZPA): onboarding, policy lifecycle, tuning andupgrades.
- Support Risk & Complianceengagements (ISO 27001, Cyber Essentials Plus) with operational evidence.
- Embed AI-assisted workflows(triage, enrichment, reporting) into the SOC and measure the gains.
- 5+ years in security operationswithin an MSP/MSSP or equivalent multi-client environment.
- 3+ years leading engineers oranalysts, including performance and development responsibility.
- Track record running majorsecurity incidents end-to-end, including executive-level communication.
- Operational experience withZscaler (or equivalent SSE/zero trust platform) is a strong advantage.
- Essential (or equivalentexperience): Microsoft SC-200, plus an incident response credential such asGIAC GCIH.
- Desirable: Zscalerprofessional-level certification (ZIA/ZPA), SC-300, AZ-500, ISO 27001 LeadImplementer, CISSP or CISM.
Joining Sysgroup means becoming part of adynamic and innovative team that is dedicated to excellence. We offer asupportive, and collaborative work environment, where your ideas andcontributions are valued. Here are some of the benefits of working with us:
- We offer a competitive salary package,including performance-based incentives, to reward your hard work andachievements.
- - Private Healthcare
- - Life insurance
- - Pension
We believe in investing in our employees'professional development. You will haveyour own individual development learning paths with access to various trainingmaterial and ongoing career advancement opportunities.
SysGroup PLC
Related Jobs
Protein Production Scientist-Bench to Automation
- London, United Kingdom
Chemical Process Operator - Onsite, 42h/wk, Pension
- Cheshire, Middlewich, United Kingdom, CW100
Production Operator - Belting (Day Shift) with Pension & Perks
- Dorset, Poole, United Kingdom, BH121
Principal Planning Officer
- Hertfordshire, Hemel Hempstead, United Kingdom, HP1 1
Client Finance Caseworker - Local Govt (Flexible Hours)
- London, United Kingdom