Manager, Security Operations
Manager, Security Operations

Manager, Security Operations

Full-Time 70000 - 90000 £ / year (est.) No home office possible
Nasuni

At a Glance

  • Tasks: Lead and evolve enterprise cybersecurity operations while managing a global team.
  • Company: Join a cutting-edge tech company focused on innovative security solutions.
  • Benefits: Enjoy comprehensive health plans, flexible remote work, and generous referral bonuses.
  • Why this job: Make a real impact in cybersecurity while developing your leadership skills.
  • Qualifications: 6-9 years in security operations with hands-on incident response experience.
  • Other info: Dynamic role with opportunities for growth and collaboration across global teams.

The predicted salary is between 70000 - 90000 £ per year.

Location: United Kingdom – London Hybrid or Remote

Role Overview: Nasuni is seeking a deeply technical and operationally rigorous Manager, Security Operations to lead and evolve our enterprise cybersecurity operations program. Reporting to the Chief Information Security Officer, this role owns internal security operations across detection, response, identity security, vulnerability management, and operational defense across cloud, endpoint, and hybrid environments. You will lead a global security operations function responsible for incident response, SIEM/SOAR engineering, identity governance, endpoint and email security, and proactive threat detection. This is a hands-on, player-coach leadership role, managing a small but growing team across regions, including the US, UK and India. This role requires someone who can personally lead high-severity incidents end-to-end, while also building and improving the systems, processes, and team around them. This role includes participation in an on-call rotation and requires availability during high-severity incidents, including evenings or weekends as needed. You will act as a key escalation point in partnership with a 24x7 monitoring vendor.

Level & Scope Definition: This role leads enterprise-wide security operations and incident response across corporate systems and cloud infrastructure (primarily AWS). The Manager defines operational security standards, drives detection quality improvements, leads automation initiatives, and serves as the primary escalation authority for high-severity incidents.

This Is a Player-coach Role With:

  • Direct people leadership (small, distributed team)
  • Hands-on technical ownership (incident response, detection, tooling)
  • Responsibility for centralizing and improving visibility across multiple security tools and signals

Success In This Role Is Defined By:

  • Measurable reduction in risk exposure
  • Improved response times (MTTD / MTTR)
  • Strong cross-functional coordination across regions (US, UK, India)
  • Resilient, scalable security operations execution

Key Responsibilities:

Security Operations Leadership
  • Lead, mentor, and develop a high-performing, globally distributed security operations team
  • Define operational standards, secure configuration baselines, and detection strategies
  • Own the global cybersecurity on-call model, escalation procedures, and vendor interaction model
  • Drive a culture of operational accountability, automation, and detection excellence
  • Partner with GRC stakeholders to support audit and compliance requirements (SOC2, ISO, etc.)
Enterprise Security Operations
  • Own enterprise cybersecurity operations across endpoint, identity, email, network, and cloud platforms (AWS primarily)
  • Lead EDR operations including threat detection, investigation, containment, and response (e.g., SentinelOne)
  • Own and evolve SIEM strategy, detection engineering, and integration roadmap
  • Design and maintain SOAR automation and response playbooks
  • Define and enforce identity governance, conditional access, and privileged access controls (Entra ID / M365)
  • Evaluate and optimize security tooling, integrations, and telemetry quality
Incident Response & Threat Management
  • Lead and own incident response from triage through resolution as escalation authority
  • Continuously improve incident response plans, playbooks, and runbooks
  • Coordinate with MDR partners and internal stakeholders during active incidents
  • Conduct post-incident reviews and drive systemic remediation
  • Improve detection quality, reduce alert fatigue, and optimize response metrics
  • Defend against modern threats including phishing, BEC, malicious attachments, OAuth abuse, and AI-generated attack techniques
Vulnerability & Exposure Management
  • Own the end-to-end vulnerability lifecycle across cloud, endpoint, and infrastructure assets
  • Drive visibility and prioritization across multiple tools (e.g., Wiz, Rapid7, endpoint telemetry)
  • Lead efforts to centralize vulnerability insights across platforms and improve risk-based prioritization
  • Uphold remediation SLAs and drive cross-functional accountability
  • Lead patch validation and automation initiatives
Metrics, Reporting & Automation
  • Define and report cybersecurity KPIs and executive dashboards
  • Implement automation to improve investigation speed, response consistency, and reporting quality
  • Maintain operational documentation, SOPs, and architecture baselines
  • Leverage automation and AI-assisted tooling to improve detection quality and operational efficiency

Required Qualifications:

  • 6–9+ years of experience in enterprise security operations
  • 2–4+ years leading security operations teams or programs
  • Proven experience personally leading incident response end-to-end (not limited to alerting or support roles)
Hands-on Expertise With:
  • SIEM engineering, detection tuning, and alert optimization
  • SOAR playbook development and automation
  • EDR platforms (e.g., SentinelOne) and endpoint detection/response
  • Enterprise email security controls and phishing defense
  • Identity security (Entra ID / Microsoft 365)
  • Strong experience securing cloud environments (AWS required; Azure/GCP exposure a plus)
  • Experience operating within an on-call rotation and escalation model
  • Experience working with MDR or managed security partners
  • Strong communication and decision-making skills during high-severity incidents
  • Experience using scripting, automation, or query languages (e.g., Python, KQL) to improve workflows

Preferred Qualifications:

  • Experience centralizing or integrating multiple security tools into a unified operational view
  • Experience with vulnerability management platforms (e.g., Wiz, Rapid7)
  • Familiarity with GRC programs (SOC 2, ISO 27001) and audit support
  • Experience operating across globally distributed teams and time zones
  • CISSP or equivalent practical experience

Ideal Qualifications:

  • Experience building or maturing a security operations function in a cloud-first environment
  • Demonstrated success improving detection quality, reducing alert fatigue, and improving MTTR
  • Experience supporting M&A integration or scaling security programs
  • Strong ability to balance hands-on technical depth with team leadership in a player-coach model
AI Competency Expectations:
  • Experience defending against AI-enabled phishing and social engineering attacks
  • Experience leveraging automation or AI-assisted tooling to improve detection and response workflows
  • Ability to assess emerging risks in identity, email, and OAuth ecosystems driven by AI-enabled threats

Ideal Candidate Profile:

  • Remain technically hands-on while leading a team
  • Be comfortable owning and leading high-severity incidents
  • Value automation, detection precision, and measurable security outcomes
  • Prefer operational ownership over compliance-only roles
  • Can operate effectively across global teams and time zones

Benefits:

  • Best in class employee onboarding and training
  • Comprehensive health, dental and vision plans
  • Life and disability insurance
  • Retirement plan
  • Generous employee referral bonuses
  • Flexible remote work policy
  • Collaborative workspaces

Manager, Security Operations employer: Nasuni

At Nasuni, we pride ourselves on being an exceptional employer that fosters a collaborative and innovative work culture. Our commitment to employee growth is evident through comprehensive onboarding, ongoing training, and a flexible remote work policy, allowing you to thrive in your role as Manager of Security Operations while contributing to a global team dedicated to cutting-edge cybersecurity solutions. With competitive benefits and a focus on operational excellence, we empower our employees to make a meaningful impact in a dynamic environment.
Nasuni

Contact Detail:

Nasuni Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Manager, Security Operations

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by practising common questions and scenarios related to security operations. Think about how you'd handle high-severity incidents and be ready to share your experiences. We want to see your hands-on skills shine!

✨Tip Number 3

Showcase your technical expertise! Bring examples of your work with SIEM, SOAR, and EDR platforms to the table. We love seeing how you've tackled challenges in the past and improved security operations.

✨Tip Number 4

Don't forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, it shows you're genuinely interested in joining our team at Nasuni.

We think you need these skills to ace Manager, Security Operations

Incident Response
SIEM Engineering
SOAR Playbook Development
EDR Platforms (e.g., SentinelOne)
Enterprise Email Security Controls
Identity Security (Entra ID / Microsoft 365)
Cloud Security (AWS)
Scripting and Automation (e.g., Python, KQL)
Vulnerability Management
Communication Skills
Decision-Making Skills
Operational Accountability
Cross-Functional Coordination
Metrics and Reporting
Automation Initiatives

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the role of Manager, Security Operations. Highlight your experience in leading security operations and incident response, as well as any hands-on technical skills you possess. We want to see how your background aligns with our needs!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your leadership style can benefit our team. Be sure to mention specific experiences that demonstrate your ability to manage high-severity incidents.

Showcase Your Technical Skills: Don’t hold back on showcasing your technical expertise! Whether it's SIEM engineering or EDR platforms, make sure to include relevant skills and tools you've worked with. We love seeing candidates who are hands-on and technically savvy.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at StudySmarter!

How to prepare for a job interview at Nasuni

✨Know Your Stuff

Make sure you brush up on your technical knowledge, especially around incident response and security operations. Be ready to discuss your hands-on experience with SIEM, SOAR, and EDR platforms like SentinelOne. They’ll want to see that you can lead high-severity incidents and understand the tools you'll be using.

✨Show Your Leadership Skills

Since this role involves managing a distributed team, be prepared to share examples of how you've led teams in the past. Talk about your mentoring style and how you’ve driven a culture of accountability and excellence in previous roles. They’ll be looking for someone who can balance being a player-coach effectively.

✨Prepare for Scenario Questions

Expect to face scenario-based questions where you’ll need to demonstrate your problem-solving skills during high-severity incidents. Think through some past incidents you've managed and be ready to explain your thought process, actions taken, and the outcomes. This will show your ability to handle pressure.

✨Understand the Company’s Security Landscape

Do your homework on Nasuni and their cybersecurity operations. Familiarise yourself with their cloud infrastructure, particularly AWS, and any recent news or developments in their security practices. Showing that you understand their environment will set you apart and demonstrate your genuine interest in the role.

Manager, Security Operations
Nasuni

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>