At a Glance
- Tasks: Lead global security incident management and automate response processes.
- Company: Join a leading financial organisation focused on cybersecurity and innovation.
- Benefits: Enjoy flexible working, comprehensive benefits, and career development support.
- Why this job: Make a real impact in cybersecurity while working in a dynamic, supportive culture.
- Qualifications: 3+ years in Incident Response; strong understanding of security operations and frameworks required.
- Other info: Training on compliance regulations provided; ideal for those passionate about cybersecurity.
The predicted salary is between 43200 - 72000 £ per year.
Responsibilities
- Own and be accountable for security incidents; taking the lead in driving global remediation activities.
- Ensure simple, repeatable, manual tasks are automated within the Incident Response process.
- Ensure a \”best-practice\” program is in place to manage and maintain our security response procedures.
- Proactively develop and deliver new incident response capabilities, tooling, and processes.
- Develop an incident management strategy, focusing on regular reviews and exercises.
- Create and deliver tabletop and simulated exercises focusing on areas of risk identified by our Threat Intelligence team.
- Ensure the operational security process is consistently maintained across our global regions, considering different regulatory requirements and rules.
- Act as the point of contact for our global business incident management team for all security-related incidents.
- Run Post Incident Reviews and track and manage issues to delivery.
Experience and Skills Required
- Experience and strong understanding of frontline security operations.
- Experience running a vulnerability remediation program or overseeing vulnerability teams is advantageous.
- Experience managing complex security incidents at a global scale.
- Experience creating or improving incident management programs.
- Strong reporting skills and ability to tailor reports to show improvements and learnings.
- In-depth understanding of modern attack techniques and flows.
- Understanding of NIST and MITRE ATT&CK Frameworks.
- Experience in cloud environments, ideally Azure.
- Strong communication skills, especially in translating technical feedback into improvements.
- Banking or finance industry experience is desirable.
- Security Incident Management qualifications preferred, such as SANS 504.
- At least 3 years of experience in an Incident Response role.
- Experience responding to global security events.
- Experience using NIST or MITRE frameworks for defensive actions.
- Ability to explain security threats and create mitigations.
- Knowledge of IT infrastructure technologies and principles.
- Experience with vulnerability management tools like Nexpose, Qualys.
- Understanding of Networking Architecture (OSI Model).
- Analytical skills and process challenge mindset.
- Passion for cybersecurity, good time management, and organizational skills.
- Nice to have certifications: Security+, Network+, GCIA, GCIH, GCFA, GMON, GNFA, SSCP, OSCP.
Benefits
We offer a comprehensive benefits package, support your wellbeing, and promote flexible working arrangements. Our goal is to motivate and support your career development. Learn more about our work culture and opportunities at careers.fidelityinternational .
As a regulated financial organization, this role involves compliance with FCA and PRA regulations, including the application of their Conduct Rules (COCON). Training on these regulations is provided. More information can be found in the Employment Handbook.
#J-18808-Ljbffr
Cyber Security Operational Incident Manager - Technical Consultant employer: Fidelity International
Contact Detail:
Fidelity International Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Operational Incident Manager - Technical Consultant
✨Tip Number 1
Familiarise yourself with the NIST and MITRE ATT&CK frameworks, as these are crucial for the role. Being able to discuss how you've applied these frameworks in past experiences will demonstrate your expertise and understanding of modern attack techniques.
✨Tip Number 2
Showcase your experience with vulnerability management tools like Nexpose or Qualys. Be prepared to discuss specific instances where you have successfully managed vulnerabilities and the impact it had on security incidents.
✨Tip Number 3
Highlight any experience you have in the banking or finance industry, as this is desirable for the position. If you have worked on security incidents in this sector, be ready to share those examples during discussions.
✨Tip Number 4
Prepare to discuss your approach to creating and improving incident management programs. Think about specific strategies you've implemented in the past and how they led to better outcomes in incident response.
We think you need these skills to ace Cyber Security Operational Incident Manager - Technical Consultant
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in cybersecurity, particularly in incident management and vulnerability remediation. Use specific examples that demonstrate your understanding of frontline security operations and your ability to manage complex security incidents.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and detail how your skills align with the responsibilities outlined in the job description. Mention your familiarity with NIST and MITRE frameworks, as well as any relevant certifications you hold.
Showcase Your Communication Skills: Since strong communication skills are essential for this role, ensure that your application clearly conveys your ability to translate technical feedback into actionable improvements. Provide examples of how you've effectively communicated in past roles.
Highlight Relevant Experience: Emphasise your experience in cloud environments, particularly Azure, and your knowledge of IT infrastructure technologies. If you have experience in the banking or finance industry, make sure to mention it, as it's considered desirable for this position.
How to prepare for a job interview at Fidelity International
✨Showcase Your Incident Management Experience
Be prepared to discuss your previous experience in managing security incidents, especially on a global scale. Highlight specific examples where you led remediation activities and how you improved incident management programs.
✨Demonstrate Technical Knowledge
Familiarise yourself with modern attack techniques and the NIST and MITRE ATT&CK frameworks. Be ready to explain how these frameworks can be applied in real-world scenarios, particularly in relation to the role's responsibilities.
✨Communicate Clearly
Strong communication skills are essential for this role. Practice translating complex technical concepts into simple terms, as you may need to convey information to non-technical stakeholders during the interview.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your analytical skills and process challenge mindset. Think of examples where you identified risks and implemented effective mitigations, and be ready to discuss your thought process.