Head of Security Monitoring & Threat Hunting
Cardiff
- Full time
About the job
This vacancy has now expired. Please see similar roles below...
"The Head of Security Monitoring & Threat Hunting has overall responsibility of ensuring the proactive monitoring, discovery, and initial investigation of incidents across Admiral.
You will be responsible for defining & delivering our evolving intelligence led – data driven cyber analytics capability. You will also own overall coordination of these resources to deliver a Threat Led service to the business, deploying resource in-line with the threat landscape to monitor for known threats whilst also coordinating activities to discover previously unknown and evolving threats. Critical to success will be working alongside the Threat Intelligence and the Advanced Threat Engineering teams to provide a comprehensive security wrap fit for a growing and successful FTSE 100 company.
As well as leading the team, the successful candidate will be able to lead by example. You will come from a strong technical background and have moved into lead and managerial positions of technical teams where they have repeatedly and successfully demonstrated the ability to inspire and deliver through others. As an inspirational leader you will be able to set a futuristic vision for your teams, deliver against competing demands in parallel, able to provide senior management with timely and concise briefings concerning technical issues and incidents using language understandable by the business, and develop and set the direction for your technical teams.
In addition to managing the daily operation, the candidates must be able to set a vision for the future which enables the most efficient use of our staff and technical assets, delivering a service which actively looks for threats rather than being a ‘reactive’ service. The development of automation and self-service is one key component to delivering an efficient mission and therefore the candidate must be able to demonstrate previous experience of utilising these principles in order move teams from a reactive stance to a pro-active, threat hunting and business enabling posture.
You will be adept at delivering through others; providing clear direction; setting strategy; developing processes and distilling technical reports for consumption by non-technical audiences. You will question information that others would take on face value and remain inquisitive to improve the likelihood of your teams fully chasing down incidents to confident closure.
You will have at least 5 years’ management experience of technical teams with at least 15 staff and be able to evidence good technical, communication, coaching and leadership practices.
Responsibilities
The role will:
- Lead technical teams – set the vision and direction of the team as an inspirational leader.
- Performance Management - direct management responsibility for the team
- Deputise for the Head of Security Operations & Cyber Defence in their absence
- Contribute to and assist with the implementation of Admiral’s cyber security strategy
- Communicate to the wider business using non-technical language concerning events, risks and processes
- Ensure all security events are investigated and documented to completion
- Improve the efficiency of the day-to-day duties of the Monitoring and Response teams by collecting metrics and evidence from current/past cases and refining telemetry and processes
- Manage a diverse stakeholder list of internal customers, senior leadership team members, partners and IT, Legal, Public Relations contacts to disseminate relevant information and actions
- Be threat led and business risk oriented in developing strategy to align with business goals and their respective priorities.
- Act as a thought leader and technical expert in SOC operations to drive forward novel solutions with a focus on automation, innovation alongside advanced threat analysis and analytics.
Essential Experience/Skills
- 7 years’ experience in any of the following: Cyber security; IT operations; Incident management or crisis management.
- 5 years’ management experience of teams with more than 15 staff
- 5 years’ experience of technical practitioner experience.
- Be able to evidence the successful delivery of a proactive threat hunting security service.
- Have experience of introducing automation to bring efficiency and timeliness to the mission.
- Technical and applicable knowledge of detection analytics including attack paths, tactics, techniques and procedures, with effective counter measures in a financial services environment.
- Proven ability to make decisions and perform complex problem-solving activities under pressure and at pace.
- Understanding of the Cyber Kill Chain, MITRE ATT&CK and other information security defence and intelligence frameworks
- Able to quickly and accurately distil technical reports for consumption by non-technical audiences
- Direct experience of at least one cloud platform such as Microsoft Azure, Amazon AWS or Google GCP.
- A blend of technical and managerial qualifications such as:
- (ISC)2 Certification such as: CISSP, CISM
- CompTIA Certification such as: Security+
- GIAC Certification such as: GCIH, GCIA, GDAT, GCDA, GISP, GCFE
Salary, Benefits and Work-Life Balance
We do not have a set salary for this position, as it will be dependent on the successful candidate’s experience. We are happy to see CVs from all candidates who meet the requirements and will be happy to discuss the remuneration package.
At Admiral, we are proud to be a diverse business where we put our people and customers first. We have great benefits to ensure employees have a great work-life balance; it's one of the reasons why we're consistently voted one of the Sunday Times’ Best Big Companies to work for in the UK. We want you to have an element of freedom to define a working lifestyle that supports this, so accommodate flexible hours wherever possible.
You can also view some of our other key benefits here; https://admiraljobs.co.uk/employee-benefits/.
#LI-LP1
- Full time
- Information Security
__jobinformationwidget.freetext.LocationText__
Cardiff
Senior Talent Partner - Tech & Data
What areas do you look after?
I recruit for positions in the Tech & Data areas.
Tell us about you and your Admiral story?
I joined Admiral in October 2017 as a Retentions Consultant. In the Renewals department I dealt directly with customer queries and progressed quickly into management. During my time in Renewals, I was involved with both internal and external recruitment, which prompted me to move to the Recruitment team in March 2021.
Why would you recommend Admiral?
Admiral has provided me with knowledge and experiences that I would never have dreamed of when finishing university. There is a vast range of opportunities for self-development and the support the company offers will help make this a lifelong career in a fantastic place to work.
Our Achievements
Related jobs
Salary
Location
Cardiff
Job Type
Full time
Location
Cardiff
Brand
Admiral Group
Department
Claims, Household
Office address
Tŷ Admiral, David Street, Cardiff, CF10 2EH
Description
Are you looking to take the next step in developing your career? Why not start in a multi-award-winning company that prioritises your career growth and development. We are currently recruiting for
Reference
10558
Expiry Date
01 Jan 0001
Vacancy managed by
Dacey ColeVacancy managed by
Dacey ColeSalary
Location
Remote
Job Type
Full time
Location
Remote
Brand
Admiral Group
Department
Admiral Tech
Office address
Remote
Description
The main responsibility of a Senior Chapter Lead is to ensure the right capabilities are being built within the technical people in the Value Stream, ensuring they are equipped with the skills, tool
Reference
10726
Expiry Date
01 Jan 0001
Vacancy managed by
Georgia NeedhamVacancy managed by
Georgia NeedhamSalary
Location
Remote
Job Type
Full time
Location
Remote
Brand
Admiral Group
Department
Admiral Tech
Office address
Remote
Description
We are looking for an enthusiastic and inquisitive Platform Engineer, who can think creatively to solve problems and meet technical requirements. You will be responsible for implementing and maintain
Reference
10754
Expiry Date
01 Jan 0001
Vacancy managed by
Olivia FogdenVacancy managed by
Olivia FogdenOur Benefits
We know our colleagues work hard to serve our customers and keep us innovating, so it’s important to us that they’re well-rewarded.
Alongside our competitive pay we also offer a share package, career growth and development opportunities and a whole host of other great benefits!
Explore our benefits below to discover Where You Can
Where You Can Be You
Financial & Mortgage
Advice
24-Hour
Ecare
Cycle to Work
Scheme
Annual Holiday
Allowance
Flexible
Working
Simply
Health
Private Health
Cover
Critical Illness
Cover
Where You Can Grow & Progress
Learning and
Development
Educational
Sponsorship
Accredited
Qualifications ILM
iLearn
Online Learning
Buy a Book
Scheme
Developmental
Coaching
Port of
Calls
Internal
Mobility
Where You Can Make a Difference
Groups and
Societies
Socials and Team
Days Out
Multi Faith / Quiet
Rooms
Admiral Community
Fund
Give as You
Earn
Awards and Star
Lunches
Corporate Social
Responsibility
Impact
Hours
Where You Can Share In Our Future
Share
Schemes
Refer a Friend
Bonus
Colleague and Family
Insurance Discount
Group Life
Assurance
Pension
Scheme
Life Event
Loan
Tickets to Sponsored
Events
Tusker Salary
Sacrifice