Cyber Incident Response Manager in Manchester
Cyber Incident Response Manager

Cyber Incident Response Manager in Manchester

Manchester Full-Time 48000 - 72000 £ / year (est.) No home office possible
P

At a Glance

  • Tasks: Lead a team in responding to cyber incidents and enhancing security measures.
  • Company: Join PXC, the UK's largest wholesale connectivity provider with a dynamic culture.
  • Benefits: Enjoy flexible working, 25 days holiday, private healthcare, and more perks.
  • Why this job: Make a real impact in cyber security while developing your skills in a supportive environment.
  • Qualifications: Experience in cyber incident response and knowledge of threat intelligence processes.
  • Other info: Be part of a diverse team that values innovation and personal growth.

The predicted salary is between 48000 - 72000 £ per year.

We are PXC, the UK’s largest provider of wholesale connectivity. Our vision is to be the UK’s #1 wholesale platform, a one-stop shop provider of connectivity, voice, cloud and security underpinned by the UK’s most robust, secure, resilient and reliable network. Born from the combination of Virtual1 and TalkTalk’s wholesale services and national network business, we operate across our 3 core sites (Salford, London and Skopje, North Macedonia). Our mission is clear, to be the UK’s best company to work for and best to work with. We believe this success is driven by the power of our employees. We empower our people to become true experts in their field who embody our values every day: we care; we challenge; we commit.

Cyber security is a real and growing threat to all businesses. Maintaining an effective security capability is critical for PXC and its customers. The CIRT Manager will lead the teams responsible for security incident escalations, intrusion analysis, threat intelligence, insider threat monitoring, forensic investigation, security operations tooling orchestration and automation. In addition, this role will be key for supporting product development of cyber security related products and services as well as accountable for building the tooling and response packages for any product(s) that need to be supported by Security operations teams. The CIRT Manager will be adaptable to the changing Security landscape and have excellent verbal and written presentation skills in relation to communication of technical findings to senior stakeholders. They will enjoy mentoring more junior colleagues to promote growth and development within the team. The role is based in the PXC main office, in Salford, and is aligned with PXC’s dynamic working policy.

About the Team

The CIRT team identifies and responds to security threats affecting the PXC and partner environments, though interaction with disparate sources, including cyber threat sensors and threat intelligence data. We implement containment, eradication, recovery, forensic and post incident measures commensurate with the threat to business operations, whilst coordinating and escalating to business partners as appropriate. The team is also responsible for ensuring that effective and efficient incident response platforms and controls are available to all colleagues across Technical and Security Operations (TSOC) and CIRT. This includes identification, development and implementation of appropriate Security technologies, processes and procedures, onboarding of Technologies initiated by other areas requiring Security monitoring, as well as driving the CIRT Strategy for the business. In addition, the team is also responsible for several areas of testing/simulation to ensure that our Team and Controls are operating optimally, as well as driving evaluation and implementation of new security products PXC wish to offer to its customers in the future.

Key Responsibilities

  • Define the yearly CIRT strategy, aligned to the wider Security team strategy and aimed at identifying key opportunities for continual improvement across Detect and Respond capabilities.
  • Responsibility for ensuring our responses (both TSOC and CIRT) are adaptable & optimised to current external threats, based on up-to-date and reliable Cyber Threat intel sources.
  • Ensure Incident response and related communication procedures are adhered to throughout incident lifecycles, whilst leading on complex incident response and related post-incident activities following incident resolution.
  • Lead the Operational Security team onboarding of new services or platforms aligned to the Security Programme, providing complex engineering analysis and support for the establishment of operational security controls.
  • Maximise current security technology investments, ensuring their full capabilities are realised whilst embracing the potential to develop additional associated automation capabilities in relation to incident response maturity and are managed in line with established quality and operational requirements throughout their lifecycle, including change management, appropriate Operational processes and via defined SLAs.
  • Lead the technical development of specialist operational roles (e.g. security monitoring, forensics, malware analysis, threat intelligence, proactive hunting) to ensure we have highly skilled, situationally aware personnel.
  • Work with the TSOC team and Security SMEs to ensure all day-to-day operational Security activities are delivered in an efficient and effective manner, ensuring that in-scope knowledge transfer and training has been provisioned to all operational Security teams, to support the Strategic aim of Cross Skilling the 24x7 team whilst identifying and leading on CSI for the team.
  • Ensure that the Security Ops knowledge management system for Security processes, operating procedures, knowledgebase and interface documents for external Security partners, can be used intuitively and efficiently by all Security Ops personnel.
  • Manage the Blue team response to Red team testing, ensuring Post Incident Reviews and appropriate Lessons learnt actions are completed.
  • Ensure appropriate CIRT team involvement in the development and implementation of Cyber Threat Tabletop and Simulation testing exercises, whilst working with SMEs to define and maintain Mitre Att&ck framework-based security control testing.
  • Lead on Security Case Management control selection initiatives accounting for current and future team, industry and business demands, and including but not limited to gathering of Functional and Non-Functional requirements for new internal Security products, in addition to leading on renewal conversations for existing Security controls.
  • Lead the establishment of new Security Managed Services and Products, liaising with Pre-Sales, Sales, Product Managers, Account Managers, Commercial teams, Ops Centre Management and Security SMEs to ensure appropriately scoped, revenue generating products are available to our customers, with developed support processes and procedures for the PXC TSOC.
  • Involvement in preparing for and attending regular audit meetings on behalf of SOAR dept regarding tooling and Security Ops Procedures.

What Will Make You Successful in this Role

  • Proven experience leading a cyber incident response team
  • Knowledge and understanding of threat and intelligence processes, playbooks and detection engineering
  • Knowledge and understanding of digital forensics pipelines and processes
  • SIEM & SOAR experience (ideally Google SecOps)
  • Telco experience preferred but not essential

How we look after our employees

  • Our hybrid working policy offers you flexibility to work from home as well as connecting with your colleagues in one of our accessible and collaborative office spaces
  • A starting holiday allowance of 25 days* holiday and up to 10 extra days* leave via our holiday purchase scheme
  • Flex30, an additional 30 hours* of leave every year for you to use how you wish
  • Free private healthcare for all employees, competitive pension scheme and the opportunity to earn bonus
  • Free broadband for all employees plus gifts for major life events such as marriages and births
  • Flexible salary sacrifice scheme including dental, gym plus a huge range of shopping and leisure discounts so you can save even more cash

* (Days and hours are based on a full-time employee’s working pattern and leave is pro-rated for part-time employee)

At PXC, we know that diversity means success and innovation. We want our workplace to reflect the communities and customer we serve. Being inclusive is part of our DNA; we are all 100% human, and we create a culture where you can truly be yourself. We’re also not your usual 9-5. We are a dynamic workplace and we want to talk to you about how you like to work.

Cyber Incident Response Manager in Manchester employer: PXC

At PXC, we pride ourselves on being the UK’s largest provider of wholesale connectivity, offering a dynamic work environment that fosters employee empowerment and growth. Our commitment to flexibility, inclusivity, and professional development is reflected in our hybrid working policy, generous holiday allowances, and comprehensive benefits package, making us an exceptional employer for those looking to thrive in the cyber security field in Salford.
P

Contact Detail:

PXC Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cyber Incident Response Manager in Manchester

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the cyber security field. Attend meetups, webinars, or even local events. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your skills! Create a portfolio or a personal website showcasing your projects, certifications, and any relevant experience. This is your chance to shine and demonstrate what you can bring to the table beyond just a CV.

✨Tip Number 3

Prepare for interviews by practising common questions and scenarios related to incident response. Use the STAR method (Situation, Task, Action, Result) to structure your answers. This will help you articulate your experience clearly and confidently.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at PXC.

We think you need these skills to ace Cyber Incident Response Manager in Manchester

Cyber Incident Response
Threat Intelligence
Digital Forensics
SIEM
SOAR
Incident Management
Communication Skills
Team Leadership
Analytical Skills
Problem-Solving Skills
Security Operations
Automation Capabilities
Knowledge Management
Cross-Skilling
Simulation Testing

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cyber Incident Response Manager role. Highlight your relevant experience in cyber security, incident response, and any leadership roles you've held. We want to see how your skills align with our mission at PXC!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how you embody our values of care, challenge, and commitment. Let us know what excites you about working with PXC and the CIRT team.

Showcase Your Technical Skills: In your application, don't forget to showcase your technical skills, especially in areas like threat intelligence, digital forensics, and SIEM tools. We’re looking for someone who can hit the ground running, so make sure we see your expertise!

Apply Through Our Website: We encourage you to apply through our website for a smooth application process. It’s the best way for us to receive your application and keep track of it. Plus, you’ll get to explore more about PXC and our amazing culture!

How to prepare for a job interview at PXC

✨Know Your Cyber Security Stuff

Make sure you brush up on your knowledge of cyber incident response, threat intelligence, and digital forensics. Be ready to discuss specific tools and processes you've used in the past, especially any experience with SIEM or SOAR platforms like Google SecOps.

✨Showcase Your Leadership Skills

As a CIRT Manager, you'll need to demonstrate your ability to lead a team effectively. Prepare examples of how you've mentored junior colleagues or led complex incident responses. Highlight your communication skills, especially when presenting technical findings to non-technical stakeholders.

✨Understand PXC's Vision and Values

Familiarise yourself with PXC’s mission to be the UK’s best company to work for and with. Reflect on how your personal values align with theirs—think about how you care, challenge, and commit in your previous roles.

✨Prepare for Scenario-Based Questions

Expect to face scenario-based questions that test your problem-solving skills in real-time. Think through potential security incidents and how you would respond, including containment, eradication, and recovery strategies. This will show your adaptability to the changing security landscape.

Cyber Incident Response Manager in Manchester
PXC
Location: Manchester

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>