At a Glance
- Tasks: Lead IT security initiatives and enhance the organisation's security posture.
- Company: Dynamic tech company fostering collaboration and innovation.
- Benefits: Hybrid working, generous holiday, personal development, and social events.
- Why this job: Shape security strategies and make a real impact in a fast-paced environment.
- Qualifications: Strong cybersecurity knowledge and experience with various technology environments.
- Other info: Opportunity to give back with paid volunteer days and celebrate your birthday off.
The predicted salary is between 48000 - 72000 £ per year.
We’re looking for an Operational Security Lead to enhance the IT security of the organisation, reduce technical debt and ensure the third-party solutions we use and buy are implemented securely. This is a genuine opportunity to have a voice and be part of shaping decisions and direction in this exciting space. You will join the Information Security Team and will be helping us to make changes that contribute to the quality of our systems and user environments whether on-prem, in data centres or in the cloud.
You’re interested in building capabilities that improve security posture through hands-on configuration, system administration and enjoy the challenge of working with a variety of technology environments and teams. We support a hybrid working approach.
- Define end user security experience
- Delivering projects with product, development and support teams
- Develop the effectiveness of detection and response management
- Triage, track and follow security issues to completion
- Lead team incident management procedures
- Develop security automation response for anomalous events and changes in risk
- Work with 3rd party vendors/partners on security engagements
- Transforming system review/config audit into continual improvement cycles
- Conducting end point, server and device config reviews
- Be a SME resource for operational security control advice & threat modelling for the business
Essential knowledge:
- Solid understanding of cybersecurity concepts, including threats, vulnerabilities, security operations, encryption, boundary defence, authentication and risk management.
- IAM & Directory Management engineering (Azure/Entra/ M365)
- Detection & Response platforms
- Securing mobile, server and desktop operating systems
- Security Architecture principles
- Network Security engineering
- Securing AWS workloads
- Microsoft 365 E5 security & compliance capabilities, including Microsoft Defender XDR (Defender for Endpoint/Identity/Office 365/Cloud Apps) and Microsoft Purview (Information Protection, DLP, eDiscovery, Insider Risk)
- Operational familiarity with authentication, authorisation and non-repudiation techniques
- Operationalizing alert and intelligence data into actionable response
- Excellent communication and documentation skills
- Strong analytical and problem-solving skills
- Windows & Linux System administration
Desirable Knowledge:
- Working across hybrid cloud environments
- CIS hardening & benchmark standards
- Cloud and AI engineering capabilities
- One or more of the following would be advantageous: KQL, Python, linux shell
- Data regulations as they relate to IT systems
- Data Visualisation skills
- Secure enablement and governance of Microsoft Copilot and GenAI (Copilot for Security, Microsoft 365 Copilot).
- Execution of change/project mgmt. across teams in & outside of IT
- Working with Container and orchestration tools
- Working with DevOps teams
What you’ll get in return:
- A culture that supports true collaboration whilst embracing remote working with a company wide hybrid working week.
- Approach to personal development where we encourage individuals to grow and share what they’ve learned.
- Social events, both within the department and across the company
- Generous holiday allowance with the opportunity to buy back additional holiday.
- A day off to celebrate your birthday
- Giving back is part of our culture with this in mind Mintel gives each employee 2 days per year to give to a worthwhile cause.
Operational Security Lead employer: Mintel
Contact Detail:
Mintel Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Operational Security Lead
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at events. A friendly chat can lead to opportunities that aren’t even advertised yet.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repo showcasing your projects and achievements. This gives potential employers a taste of what you can do beyond your CV.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios related to operational security. We recommend doing mock interviews with friends or using online platforms to boost your confidence.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are genuinely interested in joining us!
We think you need these skills to ace Operational Security Lead
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the role of Operational Security Lead. Highlight your experience with cybersecurity concepts and any relevant projects you've worked on. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about operational security and how you can contribute to our team. Be sure to mention specific technologies or methodologies you’re familiar with that relate to the job.
Showcase Your Communication Skills: Since excellent communication is key in this role, make sure your application reflects that. Use clear, concise language and structure your documents well. We appreciate a good flow and clarity in your writing!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of applications and ensures you get all the updates. Plus, it’s super easy to do!
How to prepare for a job interview at Mintel
✨Know Your Cybersecurity Basics
Make sure you brush up on your understanding of key cybersecurity concepts. Be ready to discuss threats, vulnerabilities, and risk management strategies. This will show that you’re not just familiar with the jargon but can also apply it in real-world scenarios.
✨Showcase Your Technical Skills
Prepare to demonstrate your hands-on experience with tools and technologies mentioned in the job description, like Azure, Microsoft 365 E5 security, and detection platforms. Bring examples of how you've used these in past roles to improve security posture.
✨Communicate Clearly
Since excellent communication skills are essential for this role, practice explaining complex technical concepts in simple terms. You might be asked to describe how you would lead incident management procedures or work with third-party vendors, so clarity is key!
✨Be Ready for Scenario Questions
Expect scenario-based questions where you’ll need to think on your feet. Prepare to discuss how you would handle specific security incidents or improve security processes. This will help demonstrate your analytical and problem-solving skills effectively.