At a Glance
- Tasks: Lead our security team to protect data and manage cyber threats.
- Company: Join a forward-thinking tech company focused on cybersecurity.
- Benefits: Enjoy competitive pay, flexible work options, and growth opportunities.
- Why this job: Make a real difference in safeguarding information systems and applications.
- Qualifications: 8+ years in Information Security with strong leadership skills.
- Other info: Be part of a dynamic team driving innovative security solutions.
The predicted salary is between 90000 - 120000 ÂŁ per year.
The Director for Security Operations and Threat Management is a strategic, and technically-grounded lead of our information security team, performing duties through processes and procedures necessary to ensure the safety of information systems and applications on premise and in the cloud. This role assists with protecting the confidentiality, integrity, and availability of company and customer data. This role is the primary architect of our defense-in-depth strategy, overseeing the teams (internal and external) responsible for detecting, neutralizing, and preventing cyber threats. You will bridge the gap between high-level security strategy and hands-on operational excellence, ensuring our global infrastructure—on-prem and cloud—remains resilient against an ever-evolving threat landscape. In addition, the Director will manage and monitor various security systems/tools and supports the assessment of system security controls. The ideal candidate is a “leader-doer” who can manage the security of complex environment while remaining sharp enough to deep-dive into an incident response bridge or a cloud architecture review.
Duties and Responsibilities
- Detection Strategy: Build and maintain a world-class Threat Intelligence program to pivot from reactive to proactive defense.
- IR Leadership: Serve as the ultimate escalation point for high-priority security incidents, leading the Incident Response team through containment, eradication, and recovery.
- Hunting: Establish regular threat-hunting cadences to identify dormant or sophisticated actors within the environment. Stay abreast, and keep up with the latest threats and analyze the impact to the Jazwares environment.
- SOC Oversight: Manage the 24/7 Security Operations Center (MSSP) to ensure high-fidelity alerting and low Mean Time to Resolve (MTTR).
- Tooling Optimization: Own the security stack (SIEM, EDR, XDR, SOAR). Ensure tools are integrated, automated, and providing maximum ROI rather than just generating “noise.”
- Automation: Drive a “Detection as Code” philosophy to automate repetitive tasks and manual investigative steps.
- Tool Custodian: Be the custodian of all security tools such as PAM, Email Security, Backup and Recovery, etc.
- Technical Leadership: Provide technical leadership and oversight to security operations activities and initiatives.
- Business Continuity and Disaster Planning: Participate in business continuity and disaster planning.
- Support and Guidance: Provide guidance and support on security issues to other departments.
- Security Measures: Ensure all software within the network has adequate security measures in place.
- Metrics and Reporting: Propose metrics and prepare reports to show current security posture.
- Monitoring: Monitor system events, log files, and alerts.
- Cloud Governance: Define security guardrails for AWS/Azure/GCP environments, focusing on IAM, VPC security, and serverless protection.
- Infrastructure as Code (IaC): Partner with DevOps to integrate security checks into CI/CD pipelines (DevSecOps).
- Engineering Excellence: Lead the design and deployment of scalable security solutions that support business growth without introducing friction.
- Lifecycle Management: Oversee the end-to-end vulnerability management process, from discovery and risk-based prioritization to remediation tracking.
- Exposure Management: Move beyond simple patching to manage the “attack surface,” including external digital footprints and shadow IT.
- Security Blueprints: Collaborate with Enterprise Architects to ensure security is “baked in” to new product builds and internal migrations.
- Zero Trust: Lead the transition toward a Zero Trust Architecture, focusing on identity-centric security and micro-segmentation.
- Security Requirements: Determine security requirements and security controls for new systems.
- Architectural Diagrams: Develop and maintain architectural diagrams.
- Team Coaching: Coach team members and manage work plan on assigned projects.
- Any other tasks assigned by Manager.
Education and Experience
- Minimum 8 years of experience within Information Security.
- At least 3 years of experience Threat Management and Security Operations.
- At least one of the following certifications required: CISSP, CCSP, CASP+, any SANS GIAC or equivalent is preferred.
- AWS certifications such as “AWS Certified Security - Specialty” highly desired.
Required Knowledge, Skills, Abilities
- Thorough understanding of the following areas: Threat Management, Security Operations, Application Security, Cloud Security, Data Security, Endpoint Security, Network Security, and User Access Security.
- Knowledge of security frameworks and standards such as NIST CSF, ISO27000, and/or CIS.
- Self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance, and professionalism.
- Ability and desire to take ownership of multiple tasks and responsibilities.
- Experience designing or implementing an enterprise level Security Program.
Equal Opportunity Employer. This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.
Director, Cyber Security Operations and Threat Management in Glasgow employer: Jazwares
Contact Detail:
Jazwares Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Director, Cyber Security Operations and Threat Management in Glasgow
✨Tip Number 1
Network like a pro! Attend industry events, webinars, and meetups to connect with folks in the cyber security space. You never know who might be looking for someone just like you!
✨Tip Number 2
Show off your skills! Create a portfolio or a personal blog where you can share your insights on threat management and security operations. This not only showcases your expertise but also helps you stand out from the crowd.
✨Tip Number 3
Prepare for interviews by brushing up on the latest trends in cyber security. Be ready to discuss how you would tackle real-world scenarios, especially around incident response and vulnerability management.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Director, Cyber Security Operations and Threat Management in Glasgow
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter for the Director role. Highlight your experience in threat management and security operations, and don’t forget to mention any relevant certifications like CISSP or AWS Security.
Showcase Your Leadership Skills: As a 'leader-doer', it’s crucial to demonstrate your ability to lead teams while also being hands-on. Share examples of how you've managed security incidents or led a team through complex challenges in your previous roles.
Be Clear and Concise: When writing your application, keep it straightforward. Use clear language to explain your experience and skills, making it easy for us to see why you’re the perfect fit for our Cyber Security Operations team.
Apply Through Our Website: We encourage you to submit your application directly through our website. It’s the best way for us to receive your details and ensures you’re considered for this exciting opportunity!
How to prepare for a job interview at Jazwares
✨Know Your Stuff
Make sure you have a solid grasp of the latest trends in cyber security, especially around threat management and security operations. Brush up on frameworks like NIST CSF and ISO27000, as well as your technical skills related to cloud security and incident response.
✨Showcase Your Leadership Skills
As a Director, you'll need to demonstrate your ability to lead teams effectively. Prepare examples of how you've managed security incidents or led a team through a challenging project. Highlight your experience in building threat intelligence programs and your approach to coaching team members.
✨Be Ready for Technical Deep Dives
Expect to discuss specific technical scenarios during the interview. Be prepared to dive deep into your experience with security tools like SIEM, EDR, and XDR. Show that you can bridge high-level strategy with hands-on operational excellence by discussing real-world examples.
✨Ask Insightful Questions
Prepare thoughtful questions about the company's current security posture and future plans. Inquire about their approach to automation and how they integrate security into their DevOps processes. This shows your genuine interest in the role and helps you assess if it's the right fit for you.