At a Glance
- Tasks: Lead vulnerability management and offensive testing to protect against cyber threats.
- Company: LSEG is a trusted global financial markets infrastructure and data provider.
- Benefits: Enjoy healthcare, retirement planning, paid volunteering days, and wellbeing initiatives.
- Why this job: Join a dynamic team and gain management exposure in cybersecurity!
- Qualifications: Bachelor's degree in technology or equivalent experience in cybersecurity required.
- Other info: We are an equal opportunities employer committed to diversity.
The predicted salary is between 43200 - 72000 £ per year.
LSEG
LSEG is your trusted global financial markets infrastructure and data provider. Discover how we deliver value for our customers.
The Security Testing Operations Manager role is crucial for the vulnerability management and offensive testing activities across the group, protecting the business from sophisticated cyber threats!
The role holder will work with our 3rd party vendors to plan and facilitate our testing programmes ensuring they run efficiently. These programmes include our regulator-led Threat Intelligence Led Pen Testing (TLTP), Red teaming, Social engineering simulations, Bug Bounty, and external vulnerability scanning services. The applicant will be a domain authority on vulnerability impact and risk, providing insight on root cause analysis and remediation. This role requires working closely within a technical team and with external teams, BISOs, the GSOC, and other entities.
The candidate will stay ahead of emerging cybersecurity thought leadership and share ideas for areas of improvement and innovation that support good risk decisions and drive continuous security risk improvement.
Role Responsibilities & Key Accountabilities:
- Develop, maintain, and implement the TLTP framework and ensure exercises are aligned with it.
- Facilitate Bug bounty / External vulnerability scanning / TLTP exercises working with internal and external teams ensuring the exercises run efficiently.
- Represent LSEG in front of regulators and vendors, coordinating with them and senior business leadership to ensure good risk decisions are made that drive continuous security risk improvement.
- Review vulnerability reports, validate issues reported, and triage based on risk.
- Support teams in understanding vulnerabilities and validate fixes through retesting.
- Coordinate remediation efforts by detailing actions, owners, and timelines. Then follow up where appropriate.
- Lead and mentor junior analysts engaging in above activities.
Qualifications & Experience:
- Technology related Bachelor’s Degree or equivalent experience and certifications in cybersecurity.
- Background in Red Teaming and/or Penetration Testing.
- Understanding of enterprise operating system environments, Active Directory, and networking.
- Solid understanding of security vulnerabilities and common software engineering flaws.
- Familiarity with red teaming related regulations and frameworks (DORA/CBEST/TIBER) is nice to have.
- Familiarity with Network Defence analytical models (Kill Chain, ATT&CK, etc.).
- Experience working with Financial Services and Critical Infrastructure is a plus.
- Ability to work in a fast-paced environment.
- Problem solver and barrier breaker with initiative.
Do you have a background in penetration testing or red teaming and are looking for your career’s next step? This is a superb opportunity for you to move into the industry and get management exposure!
LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days, and wellbeing initiatives.
We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy, or disability, or any other basis protected under applicable law.
#J-18808-Ljbffr
Security Testing Operations Manager employer: LSEG
Contact Detail:
LSEG Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Testing Operations Manager
✨Tip Number 1
Familiarize yourself with the TLTP framework and related regulations like DORA, CBEST, and TIBER. Understanding these frameworks will not only help you in interviews but also demonstrate your commitment to aligning with industry standards.
✨Tip Number 2
Engage with the cybersecurity community by participating in forums or attending conferences focused on red teaming and penetration testing. This will keep you updated on emerging trends and best practices, which can be a great talking point during your discussions with us.
✨Tip Number 3
Showcase your problem-solving skills by preparing examples of how you've tackled complex security challenges in the past. Being able to articulate your thought process and solutions will set you apart as a candidate who can thrive in a fast-paced environment.
✨Tip Number 4
Network with professionals in the financial services sector, especially those involved in cybersecurity. Building these connections can provide insights into the role and may even lead to referrals, increasing your chances of landing the job with us.
We think you need these skills to ace Security Testing Operations Manager
Some tips for your application 🫡
Understand the Role: Make sure to thoroughly read the job description for the Security Testing Operations Manager position. Understand the key responsibilities and qualifications required, as this will help you tailor your application.
Highlight Relevant Experience: In your CV and cover letter, emphasize your background in penetration testing or red teaming. Provide specific examples of your experience with vulnerability management, offensive testing, and any relevant certifications.
Showcase Technical Skills: Detail your understanding of enterprise operating systems, Active Directory, and networking. Mention any familiarity with security frameworks like DORA, CBEST, or TIBER, as well as analytical models such as Kill Chain or ATT&CK.
Express Your Problem-Solving Abilities: In your application, convey your problem-solving skills and initiative. Share examples of how you've overcome challenges in previous roles, especially in fast-paced environments, to demonstrate your suitability for the role.
How to prepare for a job interview at LSEG
✨Understand the TLTP Framework
Make sure you have a solid grasp of the Threat Intelligence Led Pen Testing (TLTP) framework. Be prepared to discuss how you would develop and implement this framework, and share any relevant experiences you've had in similar roles.
✨Showcase Your Technical Knowledge
Highlight your background in Red Teaming and Penetration Testing. Be ready to discuss specific vulnerabilities you've encountered, how you validated them, and the remediation strategies you employed.
✨Demonstrate Leadership Skills
Since this role involves mentoring junior analysts, be prepared to talk about your leadership style and any previous experience you have in guiding teams. Share examples of how you've successfully led projects or initiatives.
✨Stay Updated on Cybersecurity Trends
Show that you are proactive in keeping up with emerging cybersecurity threats and trends. Discuss any recent developments in the field that you find interesting and how they could impact vulnerability management.