At a Glance
- Tasks: Lead the design and scaling of a modern detection engineering function.
- Company: Global financial services organisation prioritising employee wellbeing and innovation.
- Benefits: Up to £115k salary, 25% bonus, 30 days holiday, and comprehensive health coverage.
- Why this job: Shape the future of cyber security with cutting-edge technology and impactful leadership.
- Qualifications: Strong background in Detection Engineering and experience with enterprise SIEM platforms.
- Other info: Opportunity to mentor a global team and influence cyber security practices.
The predicted salary is between 115000 - 115000 £ per year.
London | Croydon | Hybrid
Up to £115k + 25% Bonus, 30 Days Holiday, 14% Pension, Full Family HC + Lots More.
This is an amazing employee-first Global FS organisation undergoing a major transformation of its cyber defence capability. This is a build-focused leadership role, not a traditional security operations position, with the mandate to design and scale a modern detection engineering function, leading a technical and cultural shift toward:
- Detection as Code
- Automated response and orchestration
- Engineering-led security delivery
- Measurable, high-fidelity threat detection
To be considered for this role, you must possess a strong background in Detection Engineering & Security Engineering, with deep experience building detection use cases within enterprise SIEM platforms. Experience implementing or working within Detection-as-Code/content-as-code models, hands-on experience with CI/CD pipelines and engineering-led delivery practices, and strong scripting or programming capability (Python, PowerShell or similar) are essential. You should have cloud-based telemetry and security tooling experience and the ability to operate across engineering, security, and operational stakeholders.
You will be tasked with building the detection platform itself, not managing alerts, where security is treated as an engineering discipline, not an operational function. This is a high-visibility role with influence across cyber, engineering, and platform teams, and you will need to define modern detection delivery at scale.
THE ROLE
- Define how detection capabilities are built, tested, deployed, and continuously improved across a complex global estate.
- Design and deliver a scalable detection engineering capability.
- Build and implement Detection-as-Code frameworks using version-controlled environments.
- Establish CI/CD pipelines for detection and automation, including testing, validation, and controlled deployment.
- Develop and optimise detection logic across Identity Cloud environments.
- Design and implement automated response workflows to reduce manual intervention and false positives.
- Align coverage to real-world threat patterns.
- Introduce and enforce engineering standards across security (code quality, testing, release management, governance).
- Partner closely with incident response teams and platform/cloud engineering teams.
- Lead, mentor, and scale a team of engineers in a globally distributed environment.
Technology environment
- Cloud-native SIEM platforms (e.g. Microsoft Sentinel / Splunk / Elastic)
- SOAR/automation tooling and playbook orchestration
- Endpoint and identity telemetry platforms (e.g. Defender / CrowdStrike / cloud identity systems)
- Cloud environments (Azure-led, with multi-cloud exposure)
- Git-based version control
- CI/CD pipelines (GitHub Actions, Azure DevOps, Jenkins or similar)
- Infrastructure as Code (Terraform / ARM / similar)
- Scripting and development (Python, PowerShell or equivalent)
Frameworks / approaches
- MITRE ATT&CK aligned detection strategy
Head of Cyber Security in London employer: Intelix.AI
Contact Detail:
Intelix.AI Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Head of Cyber Security in London
✨Tip Number 1
Network, network, network! Get out there and connect with folks in the cyber security space. Attend meetups, webinars, or even local events. You never know who might have a lead on that perfect Head of Cyber Security role!
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your detection engineering projects. This is a great way to demonstrate your hands-on experience with CI/CD pipelines and Detection-as-Code frameworks.
✨Tip Number 3
Don’t just apply blindly! Tailor your approach for each application. Research the company’s current cyber security challenges and mention how your experience aligns with their needs when you reach out or during interviews.
✨Tip Number 4
Apply through our website! We’ve got loads of resources to help you land that dream job. Plus, it shows you’re genuinely interested in joining our amazing team and contributing to our mission in cyber security.
We think you need these skills to ace Head of Cyber Security in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Head of Cyber Security role. Highlight your experience in Detection Engineering and Security Engineering, and don’t forget to mention any hands-on work with CI/CD pipelines and scripting languages like Python or PowerShell.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you’re passionate about building detection capabilities and how your background aligns with our vision for a modern detection engineering function. Keep it engaging and relevant!
Showcase Your Achievements: When detailing your experience, focus on measurable achievements. Did you reduce false positives or improve detection logic? Quantify your successes to show us the impact you've made in previous roles.
Apply Through Our Website: We encourage you to apply through our website for the best chance of being noticed. It’s the easiest way for us to keep track of your application and ensure it gets into the right hands!
How to prepare for a job interview at Intelix.AI
✨Know Your Tech Inside Out
Make sure you’re well-versed in the technologies mentioned in the job description, especially around Detection Engineering and Security Engineering. Brush up on your experience with SIEM platforms and be ready to discuss specific use cases you've built.
✨Showcase Your Leadership Skills
Since this is a leadership role, prepare examples of how you've led teams in the past. Think about times when you’ve mentored engineers or driven cultural shifts towards engineering-led security delivery. Be ready to share your vision for building a detection engineering capability.
✨Demonstrate Your Problem-Solving Skills
Be prepared to tackle hypothetical scenarios related to threat detection and automated response workflows. Show how you would approach reducing false positives or aligning coverage to real-world threat patterns. This will highlight your analytical thinking and practical application of your skills.
✨Align with Their Vision
Research the company’s current cyber defence transformation and be ready to discuss how your experience aligns with their goals. Talk about your understanding of Detection-as-Code and CI/CD pipelines, and how you can contribute to their mission of treating security as an engineering discipline.