Cyber Security Lead in London

Cyber Security Lead in London

London Full-Time 60000 - 84000 £ / year (est.) No home office possible
Go Premium
N

At a Glance

  • Tasks: Lead and innovate in cybersecurity, building security operations from the ground up.
  • Company: Join Navro, a pioneering B2B payments startup transforming global transactions.
  • Benefits: Enjoy 26 days annual leave, private healthcare, and flexible working arrangements.
  • Why this job: Make a real impact in a fast-paced environment and shape the future of payments.
  • Qualifications: Experience in cybersecurity, SIEM, and incident response; thrive in chaotic startup settings.
  • Other info: Be part of a diverse team with excellent career growth opportunities.

The predicted salary is between 60000 - 84000 £ per year.

Location: London, UK (Hybrid: 2 days per week in the office)

Company: Navro – Pioneering the Future of Payments

This isn’t just another Information Security role. No legacy systems. No corporate red tape. No coasting. This is about building something from the ground up. Fast. We’re Navro, a rapidly scaling B2B payments startup, and we’re looking for a bold, proactive, and hands-on Cybersecurity Lead to design, implement, and operate our security operations function, including SIEM, incident response, threat detection, secure by design, shift-left security engineering, and automated monitoring and response.

You’ll run and be part of the projects that implement, build, and maintain security integrations across our tech stack, establish incident response playbooks, and lead day-to-day SOC operations that protect our platform and customers. You won’t have layers of approval slowing you down. You will have the freedom to make real, impactful decisions from day one. This isn’t a passenger role. We’re bringing you in for your expertise and your relentless drive. You will be responsible for understanding our information assets, identifying emerging threats, and implementing robust security measures that protect Navro and our clients.

Who We Are

We are transforming payments for global platforms and e-commerce businesses. As the world’s first payments curation platform, we simplify cross-border transactions by uniting best-in-class infrastructure into a seamless ecosystem, enabling businesses to scale and operate effortlessly across borders. Cross-border workforce payments are slow, expensive, and outdated. We can’t be. Businesses rely on us to pay their people accurately and on time - contractors, freelancers, and employees across the globe. When we say we’ll deliver, failure isn’t an option. If we don’t do what we said we would, people don’t get paid - not just a transaction delayed, but real workers left without wages. That means a developer in Argentina missing their paycheck, a freelancer in the Philippines unable to pay rent, or a contractor in Poland unable to get to work. No excuses. No passengers. No tolerance for politics or mediocrity.

Requirements

What This Role Demands:

  • You Own It – You lead our detection and response mission. You help define the roadmap, build the pipelines, and drive measurable outcomes across threat visibility, MTTD/MTTR, and resilience.
  • You Ask Questions – You challenge assumptions to improve signal-to-noise, coverage, and automation.
  • You Fix What’s Broken – If telemetry is missing or playbooks stall, you instrument, tune, and automate.
  • You’re Hands-On – One hour you’re shipping a new Sentinel analytic rule, the next you’re leading a live incident bridge, then refining a post-incident problem record and control improvements.
  • You Thrive in Chaos – Startups are messy. You bring clarity with crisp runbooks, decision trees, and SLAs that keep operations calm when things get loud.
  • You Handle the Pressure – High stakes, time-sensitive incidents, vendor escalations. You prioritise ruthlessly, communicate precisely, and keep teams aligned.
  • You’re Here for the Journey – This is a career-defining role. You will build capability, mentor others, and leave a legacy of a high-performing SOC built on automation, quality data, and continuous learning.

What You’ll Be Doing:

  • Own the design, implementation, and operation of our SIEM and SOC capability with Microsoft Sentinel, including data ingestion, workspace architecture, analytics, automation, and dashboards.
  • Integrate high-value telemetry sources (Entra, M365, Google Workspace, AWS, GCP, endpoints/EDR, network, SaaS, CI/CD, identity, and proprietary platforms) into Sentinel via native connectors, APIs, custom logs, and event hubs.
  • Engineer detection content: write, test, and tune KQL analytics, scheduled rules, UEBA policies, MSTIC notebooks, watchlists, and hunting queries that map to industry frameworks (MITRE ATT&CK).
  • Build incident response playbooks and SOAR automation with Logic Apps to enrich, correlate, contain, notify, and ticket, reducing MTTD/MTTR and false positives.
  • Run the incident lifecycle: triage, investigation, containment, eradication, recovery, lessons learned, and problem management with crisp communications to stakeholders and customers as needed.
  • Establish and lead the SOC operating model: business and non-business hours on-call, runbooks, SLAs/OLAs, quality reviews, and where applicable, manage an MDR/MSSP partner for 24x7 coverage and surge capacity.
  • Stand up threat intelligence workflows: curate intel sources, integrate TI into Sentinel, operationalise indicators, and drive threat-informed defence and periodic purple-team exercises.
  • Partner with DevOps/SRE to enforce security controls in CI/CD, secure by design infrastructure as code, and configuration baselines; shift-left through preventive guardrails and detection-in-depth.
  • Support audits and regulators by evidencing monitoring, incident response, logging coverage, and continuous improvement; align to ISO 27001, SOC 2, PCI-DSS, and DORA incident obligations.
  • Develop the Secure Development Lifecycle with members of the team and Engineering; uplevel the wider team’s security capabilities and automate.
  • Lead tabletop exercises and simulations; keep IR playbooks current for scenarios like identity compromise, malware/ransomware, email compromise, data exfiltration, insider risk, vendor breach, and cloud abuse.
  • Measure what matters: publish operational metrics (alert volumes, use-case efficacy, dwell time, containment time, critical incident trends), and drive quarterly capability maturity improvements.

What We’re Looking For:

  • Start-It-Up – Preferably have worked in a start-up or scale-up environment before where ambiguity and chaos do not faze you, you are proactive and hungry for the challenge.
  • Detail-Obsessed – You don’t miss a thing. Your attention to detail and decision-making capabilities are top-notch.
  • SIEM Sentinel Expertise – Proven experience in architecting, implementing, and operating Microsoft Sentinel at scale: data connectors, KQL, analytics, UEBA, SOAR (Logic Apps), workbooks, and cost governance.
  • SOC Leadership – Demonstrated capability to build and run a SOC internally, including processes, on-call, playbooks, case management, ticketing, and continuous detection engineering.
  • Incident Response – Hands-on leadership of security incidents across identity, endpoint, cloud, email, and SaaS; confident in live triage, scoping, containment, eradication, and stakeholder comms.
  • Engineering Mindset – Comfortable with APIs, scripting (PowerShell, Python), automation, infrastructure logging (Datadog), CNAPP (Wiz), and integrating tools (EDR, Email security, Storage security, WAF/CDN, IdP, MDM, etc.).
  • Cloud Identity – Strong knowledge of Microsoft Entra ID, Azure, security workloads, Google Workspace, plus familiarity with AWS logging and control sets; experience with zero-trust principles.
  • Compliance Savvy – Understanding of ISO 27001 controls for logging/monitoring, SOC 2 CC7, PCI-DSS logging/IR, and DORA incident reporting; able to evidence controls and outputs.
  • Collaborator Extraordinaire – Strong communications skills with the ability to explain technical and security concepts, risks, controls in business terms.

You may not possess every single required skill listed, and that’s perfectly fine. If you have most of them, along with grit, passion, a desire to learn quickly, and the willingness to get stuck in, we encourage you to apply.

Why Navro?

  • Lead and Shape the Future: This is your chance to build and grow a market from zero to one.
  • Make Real Impact: Your decisions will directly shape Navro’s growth journey.
  • Innovative Environment: Be at the forefront of Fintech innovation and payments disruption.
  • Career-Defining Role: This isn’t just another job. It’s a legacy.

Ready to Build Something Big? This is your chance to leave your mark. If you’re ready to lead, build, and grow with the intensity that only startups offer, we want to hear from you.

Benefits

  • You will enjoy 26 days of annual leave (excluding Bank holidays).
  • Volunteering.
  • Compassionate leaves.
  • Maternity and Paternity leaves.
  • Private Healthcare.
  • Company Options Scheme.
  • Team socials.
  • Comprehensive, interactive engaging Training - Leadership, Communication and Presentation Skills, Behavioural Profiling, Conflict Management, etc.
  • Career frameworks.
  • Flexibility surrounding other commitments; within your team we will work around child-care or other appointments you have. We just ask for advance notice!
  • For those London Based 2-3 days per week in office.
  • Working in a diverse and inclusive environment where we ensure that our people thrive.

Cyber Security Lead in London employer: Navro

Navro is an exceptional employer for those looking to make a significant impact in the fast-paced world of fintech. With a vibrant work culture that encourages innovation and autonomy, employees are empowered to lead projects from inception to execution, all while enjoying generous benefits such as 26 days of annual leave, private healthcare, and flexible working arrangements. Located in London, this hybrid role offers the unique opportunity to shape the future of payments while being part of a diverse and inclusive team dedicated to personal and professional growth.
N

Contact Detail:

Navro Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Security Lead in London

✨Tip Number 1

Network like a pro! Get out there and connect with people in the cyber security field. Attend meetups, webinars, or industry events. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to SIEM, incident response, or threat detection. This gives potential employers a taste of what you can do and sets you apart from the crowd.

✨Tip Number 3

Prepare for interviews by practising common questions and scenarios specific to cyber security. Think about how you would handle real-life incidents and be ready to discuss your thought process. Confidence is key!

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re genuinely interested in joining Navro and being part of our exciting journey in revolutionising payments.

We think you need these skills to ace Cyber Security Lead in London

SIEM Sentinel Expertise
Incident Response
SOC Leadership
Engineering Mindset
Cloud Identity
Compliance Savvy
Data Analysis
Automation
Communication Skills
Threat Detection
Security Operations
Problem-Solving Skills
Attention to Detail
Project Management

Some tips for your application 🫡

Be Bold and Authentic: When you're writing your application, let your personality shine through! We want to see the real you, so don’t be afraid to show your passion for cybersecurity and how you can make a difference at Navro.

Tailor Your Application: Make sure to customise your CV and cover letter to highlight your relevant experience and skills that match the job description. We love seeing how your background aligns with our mission and values!

Showcase Your Achievements: Don’t just list your responsibilities; share your successes! Use specific examples of how you've led projects or improved processes in previous roles. We’re all about measurable outcomes here at Navro.

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for this exciting opportunity to join our team!

How to prepare for a job interview at Navro

✨Know Your Stuff

Make sure you brush up on your knowledge of Microsoft Sentinel and SIEM operations. Be ready to discuss your hands-on experience with KQL analytics, incident response, and threat detection. This role is all about being proactive, so show them you can hit the ground running!

✨Show Your Problem-Solving Skills

Prepare to share specific examples of how you've tackled security challenges in the past. Whether it’s automating processes or refining incident response playbooks, demonstrate your engineering mindset and ability to fix what's broken. They want to see that you can think on your feet!

✨Embrace the Chaos

Navro thrives in a fast-paced startup environment, so be ready to discuss how you handle pressure and ambiguity. Share stories that highlight your ability to bring clarity to chaotic situations, whether through crisp runbooks or effective communication during incidents.

✨Be a Team Player

Collaboration is key in this role. Prepare to talk about how you've worked with cross-functional teams, especially with DevOps and SRE, to enforce security controls. Highlight your strong communication skills and your ability to explain complex security concepts in simple terms.

Cyber Security Lead in London
Navro
Location: London
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

N
  • Cyber Security Lead in London

    London
    Full-Time
    60000 - 84000 £ / year (est.)
  • N

    Navro

Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>