At a Glance
- Tasks: Lead a dynamic cybersecurity team to protect and enhance our IT security landscape.
- Company: Join ION, a leader in trading and workflow automation software.
- Benefits: Enjoy competitive salary, inclusive culture, and opportunities for professional growth.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: 10+ years in information security with strong leadership and technical skills.
- Other info: Be part of a diverse team committed to innovation and excellence.
The predicted salary is between 60000 - 84000 Β£ per year.
The IT Security Engineering Manager is a global role within ION's central services division and will support the Group Security strategy and operational excellence through the identification, mitigation and remediation of information security risks to the business. This role reports to the Global Head of IT Security, who reports to the Group Chief Information Security Officer (CISO). As a member of the ION Security team, the successful candidate will be responsible for managing the cybersecurity engineering team. This team is responsible for management, maintenance, support, tuning and improvement of technical security controls to protect ION's information technology (IT) systems and networks across the group and will help ION evolve its technical security posture to keep up with the ever-changing security landscape and emerging threats. This role may require shift work in the support of a 24x7 globally coordinated operation.
The IT Security Engineering Manager's other responsibilities include oversight and management of the MSSP and security vendor relationships, creating governance initiatives for all security tooling in the form of product steering committees, product/vendor roadmaps, annual product reviews and formally tracking feature adoption and any other duties assigned by Head of IT Security. We are looking for a diligent, dedicated, creative and motivated individual. Excellent communication skills are a must, and the role holder will be expected to cultivate working relationships with other teams and colleagues of varying technical ability. The role would suit a technically strong candidate with an extensive cybersecurity background, at least 10+ years working in a security role, with focus on security engineering.
Responsibilities
- This role may require work out of hours.
- Primary responsibilities of this role:
- Personnel Management:
- Ensure team members have clear objectives/development plans.
- Align Teams' objectives to OKRs.
- Be the escalation point for security tooling issues and critical security breaches.
- Responsible for team development, upskilling & mentoring.
- Responsible for vendor/MSSP relationships for the group-wide organization.
- Manage security tooling to ensure coverage/availability/efficacy of tooling.
- Provide oversight, guidance and leadership of the IT Security Engineering Team.
- Drive improvements and feature enhancement to ensure ROI.
- Configure, tune, maintain and operate key security controls, technologies, and other risk mitigations.
- Own the management reporting and provide monthly Executive level reporting.
- Drive process/procedure changes accordingly.
- Ensure quality of ticketing & runbook maintenance.
- Cultivate and maintain strong vendor relationships.
- Have an attitude of continuous improvement.
- Be accountable/responsible for security tool health throughout the estate.
- Manage the governance initiative for security tooling.
- Engage with vendors to introduce formal QBRs, tool reviews, feature enhancements and adoption.
- Create and own the overarching security tooling strategy.
- Regular tool reviews.
- Documented process for a formalized approach to security tool selection.
- Participate in CAB, Tool review or Architecture Review Boards (ARBs).
As a member of the ION IT Security Team, it is expected that the person in this role will:
- Execute ongoing, operational business-as-usual (BAU) tasks to meet management-defined KPIs and SLAs, and deliver security projects in line with management-defined priorities and deadlines.
- Stay current with the latest security news, threats, intelligence, tactics, techniques, and vulnerabilities.
- Research and analyze new threats and vulnerabilities to determine exposure.
- Assist and/or lead efforts to isolate, contain, respond to, and recover from security incidents.
- Identify, review, prioritize, plan, coordinate, and follow-up on the remediation of vulnerabilities.
- Configure, customize, tune, manage, troubleshoot, and maintain effective and efficient operation of security technologies, such as SIEM, endpoint security, secure web gateway, CASB, DLP, email security, intrusion detection/prevention systems, etc. This may also include scripting, automation, and orchestration across various platforms.
- Define, document, and follow approved processes for all the responsibilities included in this job description.
- Create and maintain documentation for systems, including design and operation.
- Review systems, configurations, and processes to ensure and report on compliance with ION policy, client requirements, audit controls, regulations, and industry best practices.
- Provide best practice security recommendations to IT and other teams within ION, based on review results.
- Respond to information security-related inquiries and requests.
Qualifications
- Degree/diploma/certifications in a technology-related field and/or relevant working experience; highly desired certifications include: Security+, CCSP, CEH, GCIH, GMON, CASP, or CISSP.
- 10+ years' experience in information security with at least 3-5 years in a Security Engineering role.
- Fundamental understanding of programming/scripting.
General characteristics
- A team player with the ability to work independently and unsupervised.
- Ability to own delegated tasks and see them through to completion.
- Ability to manage time and prioritize work to maximize productivity.
- Excellent communication skills (both written and verbal).
- Exceptional attention to detail and quality.
- Excellent problem-solving techniques and trouble analysis skills.
The candidate should have a good knowledge of:
- Endpoint security concepts, controls, and best practices for workstations (e.g. Windows and Mac) and server (e.g. Windows and Linux) operating systems.
- SIEM technology to monitor, analyze, and respond to security events.
- General IT networking concepts, protocols, standards and network security concepts, controls, and best practices.
- Cryptography fundamentals and data security controls and best practices.
- Forensic investigation techniques.
- Security standards/best practices and frameworks.
About ION
Weβre a diverse group of visionary innovators who provide trading and workflow automation software, high-value analytics, and strategic consulting to corporations, central banks, financial institutions, and governments. Founded in 1999, weβve achieved tremendous growth by bringing together some of the best and most successful financial technology companies in the world. ION is committed to maintaining a supportive and inclusive environment for people with diverse backgrounds and experiences. We respect the varied identities, abilities, cultures, and traditions of the individuals who comprise our organization and recognize the value that different backgrounds and points of view bring to our business. ION adheres to an equal employment opportunity policy that prohibits discriminatory practices or harassment against applicants or employees based on any legally impermissible factor.
IT Security Engineering Manager in City of Westminster employer: Openlink
Contact Detail:
Openlink Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land IT Security Engineering Manager in City of Westminster
β¨Tip Number 1
Network like a pro! Reach out to your connections in the cybersecurity field, attend industry events, and join relevant online forums. You never know who might have the inside scoop on job openings or can put in a good word for you.
β¨Tip Number 2
Show off your skills! Create a portfolio showcasing your past projects, achievements, and any cool security tools you've developed or improved. This will give potential employers a taste of what you can bring to their team.
β¨Tip Number 3
Prepare for interviews by brushing up on common cybersecurity scenarios and challenges. Be ready to discuss how you've tackled similar issues in the past and demonstrate your problem-solving skills. Practice makes perfect!
β¨Tip Number 4
Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining our team. Plus, it gives you a chance to showcase your enthusiasm for the role right from the start.
We think you need these skills to ace IT Security Engineering Manager in City of Westminster
Some tips for your application π«‘
Tailor Your CV: Make sure your CV is tailored to the IT Security Engineering Manager role. Highlight your relevant experience in cybersecurity and security engineering, and donβt forget to showcase your leadership skills and any vendor management experience.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why youβre the perfect fit for the role. Mention specific projects or achievements that align with the responsibilities listed in the job description, and show us your passion for cybersecurity.
Show Off Your Communication Skills: Since excellent communication is a must for this role, make sure your application reflects that. Use clear and concise language, and structure your documents well. This will demonstrate your ability to communicate effectively with both technical and non-technical teams.
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. Itβs the best way for us to receive your application and ensures you donβt miss out on any important updates from our team!
How to prepare for a job interview at Openlink
β¨Know Your Stuff
Make sure you brush up on your technical knowledge, especially around security engineering concepts and tools like SIEM, endpoint security, and intrusion detection systems. Be ready to discuss your experience with these technologies and how you've used them to mitigate risks in previous roles.
β¨Showcase Your Leadership Skills
As an IT Security Engineering Manager, you'll need to demonstrate your ability to lead a team effectively. Prepare examples of how you've managed teams, set objectives, and developed team members in the past. Highlight any mentoring or upskilling initiatives you've implemented.
β¨Communicate Clearly
Excellent communication skills are a must for this role. Practice explaining complex security concepts in simple terms, as you'll need to collaborate with colleagues of varying technical abilities. Think about how you can convey your ideas clearly and concisely during the interview.
β¨Stay Current with Trends
The cybersecurity landscape is always changing, so be prepared to discuss recent threats and vulnerabilities. Show that you're proactive by mentioning any relevant news or trends you've been following, and how they might impact the organisation's security posture.