Head of Cyber Security Operations

London, England, United Kingdom

Applications have closed

Our Future Health

We’re bringing together up to five million people to develop new ways to prevent, detect and treat diseases.

View company page

We are looking for a Head of Cyber Security Operations to join us to lead the implementation of a new SOC and build a new team to rollout the Security Operations function. This is a great opportunity for an experienced Cyber Security professional who is looking to play a critical part in ensuring the secure protection and delivery of sensitive health, research data and ensure all users/endpoints are monitored and protected against the latest threats.

At Our Future Health, our mission is to transform the prevention, detection and treatment of conditions such as dementia, cancer, diabetes, heart disease and stroke.  We’re looking for people to join us on our journey. If you’re looking for a new challenge where you can contribute to helping future generations live in good health for longer, then we’re keen to speak with you.

Requirements

What You’ll be doing:

  • You’ll oversee the Secure Operations of Our Future Health’s cloud-first production and corporate platforms which is currently in Azure
  • You’ll enhance the Cyber Operations Team on strategic, operational and tactical level to ensure we deliver a protective monitoring capability as part of a secure operating model
  • You’ll work closely with the Director of Information Security and Security Architects
  • Support our IT Services, evaluating and establishing requirements for the implementation of changes by defining Operational Security standards
  • You’ll manage the internal SOC Analysts and the external Cyber Security partner that provides augmented SOC resource
  • You’ll be responsible for maintaining and supporting the ongoing operational cyber security of our organisation’s internal and external facing systems. with responsibility for developing our capability in SecOps, shaping the right talent, and identifying skills gaps within both the team and the supplier’s capabilities.
  • Implement crucial processes and policies such as incident Response, Business Continuity & Crisis Management
  • You’ll effectively lead, train and mentor your Cyber Operations and Technical Support Team members across Threat Detection, Active Defence, Incident Response and Technical Operations
  • Be the first point of contact for major cybersecurity incidents and remediation, which will require ‘on call’ provision. 
  • You’ll manage the creation of performance reports, dashboards and working metrics in conjunction with Cyber Operations team

What you won’t be doing:

  • Working in a siloed environment with no freedom to make decisions.
  • Working in a place where you can’t see the impact your expertise makes.

To succeed in this role you will be able to demonstrate a large portion of the following skills and experience:

  • Proven experience in cyber security, with a clear specialisation and interest in Security Operations
  • Solid understanding of cloud platforms and components, with knowledge of Azure and experience with Sentinel, is advantageous
  • Prior experience in the setup of and supporting operational Cyber Security teams. 
  • Experience supporting the Azure Cloud platform, and deploying IAAC through Automation pipelines and Terraform/ Kubernetes (to ensure deployment methods are secure) 
  • You’ll enjoy collaborating with others to review specifications and use these agreed specifications to design, test and document programs using the right standards and tools.
  • You know the direction for future technologies. You can deliver a model to support and maintain future technologies in secure manner.
  • You know how to manage risks and can take preventative action
  • You understand the difference between user needs and the desires of the user. You can match the detective and preventive controls to the needs of users. You can offer recommendations on the best tools and methods to be used to do so.
  • The ability to credibly handle a serious security incident from identification, through to resolution and enact post-incident enhancements.
  • Experience of working within an Agile environment
  • Demonstrable knowledge of suitable SIEM/ SOAR tools, such as Splunk/ Sentinel, or equivalent solutions

Benefits

Benefits

  • Generous company pension package with employer contributions of up to 12%.
  • 30 days annual leave (plus bank holidays.)
  • Continuous career development with regular appraisals and learning and development opportunities.
  • A lovely new office in Holborn, Central London – we offer flexible and remote working arrangements

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Agile Automation Azure Cloud Incident response Kubernetes Monitoring SecOps SIEM SOAR SOC Splunk Terraform Threat detection

Perks/benefits: Career development Flex hours Health care

Region: Europe
Country: United Kingdom
Job stats:  7  0  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.