At a Glance
- Tasks: Lead security initiatives and collaborate across teams to protect a high-profile website.
- Company: Join Rightmove, a leader in the property market with a commitment to security.
- Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
- Other info: Dynamic environment with a focus on diversity and inclusion.
- Why this job: Make a real impact on information security while working with cutting-edge technologies.
- Qualifications: 5+ years in technical security roles and relevant high-level security qualifications.
The predicted salary is between 60000 - 80000 £ per year.
The role will involve working across a range of areas to support the information security needs of a busy, high‑profile website, as well as an administrative IT environment that supports nearly 1,000 people across 3 office locations with many remote workers. As well as working closely with the other members of the Information Security team, the role will also require extensive engagement across other teams across Rightmove (including IT, Engineering etc.) to ensure security objectives are being met, incidents are being responded to effectively, and our security stance remains strong.
What you'll be doing
- Providing technical leadership and acting as a subject matter expert on information security best‑practice.
- Planning and delivering projects to achieve our information security objectives.
- Collaborating with the IT Infrastructure team on the security elements of migrating Windows estate into Azure.
- Advising our website platform teams on security considerations impacting our website hosting environment in Google Cloud Platform & GKE.
- Working with team members and service providers on SIEM and XDR tooling and establishing processes and playbooks to support incident response and SOC activities.
- Playing a leading role in managing incident response activities and engaging with third‑party DFIR specialists where necessary.
- Leading threat hunts to proactively discover potential compromises before they lead to bad security outcomes.
- Working with team members and external partners on penetration tests and red team engagements to assess our security posture, along with our detection and recovery capabilities.
- Helping to evaluate our response to regulatory/legislative requirements and recommending improvement actions where necessary (e.g. FCA compliance, ISO27001, PCI‑DSS, GDPR etc).
- Keeping up to date with cyber threat intelligence and emerging attack vectors, always evaluating the materiality of the threat to Rightmove and helping shape our response.
- Coaching and developing your people, with regular 1‑to‑1s and continuous feedback.
- Supporting your team members by actively removing blockers.
We're looking for someone who
- Has a passion for Information Security and understands how this is embedded into an organisation.
- Can manage their own workload, making decisions on what tasks need to be prioritised.
- Is confident to communicate and collaborate with internal and external stakeholders, either individually or in group settings, and across a variety of levels of seniority and technical understanding.
- Can reach decisions, even if they are difficult, and is able to provide a clear explanation of the rationale and approach taken.
- Can be trusted to keep confidences, and displays a high level of professional integrity.
- Follows through on commitments and can be relied upon to get things done.
- Is proactive, hands‑on and wants to make things better.
What you'll bring to the role
- Minimum of five years working in a technical security‑based role.
- A high-level Security qualification such as a CISSP, SANS Cyber Defence, EC‑Council Certified Security Analyst, OSCP etc.
- Professional experience in three or more of the following areas (and a willingness to learn about the others):
- Securing Windows, Active Directory and M365 environments
- Container security
- Cloud security (ideally in GCP and/or Azure environments)
- Microsoft 365 security (including Defender, Purview etc.)
- SIEM, SOAR and EDR/ XDR systems
- Strong understanding of networking principles including TCP/IP, DNS etc. and commonly used Internet protocols such as SMTP, HTTP etc.
- Experience working in IT security in a cloud‑hosted environment.
- Good data processing skills – experience with Google SecOps, ELK, Splunk or similar would be beneficial
- Report writing and note taking skills.
- Ability to prioritise both operational and project demands.
- Ability to handle high pressure situations in a productive and professional manner.
Equal Opportunity Employer
As an Equal Opportunity Employer, Rightmove will never discriminate based on age, disability, sex, race, religion or belief, gender reassignment, marriage/civil partnership, pregnancy/maternity or sexual orientation. At Rightmove, we believe that a diverse and inclusive workforce leads to better innovation, productivity and overall success. We are committed to creating a welcoming and inclusive environment for all employees, regardless of their background or identity, to develop and promote a diverse culture that reflects the communities we serve.
Security Operations Manager London, UK employer: Rightmove
Contact Detail:
Rightmove Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Operations Manager London, UK
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or a personal website showcasing your projects and achievements in information security. This gives potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by practising common questions and scenarios related to security operations. Think about how you would handle specific incidents or challenges, and be ready to share your thought process.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Rightmove.
We think you need these skills to ace Security Operations Manager London, UK
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Operations Manager role. Highlight your relevant experience in information security, especially in areas like cloud security and incident response. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about information security and how your background makes you a great fit for our team. Don't forget to mention any specific projects or achievements that showcase your expertise.
Showcase Your Technical Skills: In your application, be sure to highlight your technical qualifications and certifications, like CISSP or OSCP. We love seeing candidates who are proactive about their professional development, so let us know how you've kept up with industry trends and best practices.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands. Plus, it shows us that you're genuinely interested in joining our team at Rightmove!
How to prepare for a job interview at Rightmove
✨Know Your Stuff
Make sure you brush up on your technical knowledge, especially around information security best practices. Be ready to discuss your experience with securing Windows, Active Directory, and cloud environments like GCP and Azure. This will show that you’re not just familiar with the concepts but can also apply them in real-world scenarios.
✨Show Your Leadership Skills
Since this role involves providing technical leadership, be prepared to share examples of how you've led projects or teams in the past. Highlight your experience in managing incident response activities and collaborating with various teams. This will demonstrate your ability to take charge and guide others effectively.
✨Communicate Clearly
You’ll need to engage with stakeholders at all levels, so practice articulating complex security concepts in a way that’s easy to understand. Think about how you can explain your rationale behind decisions clearly, especially when discussing difficult topics. Good communication can set you apart from other candidates.
✨Stay Current with Trends
Cybersecurity is always evolving, so make sure you’re up to date with the latest threats and trends. Be ready to discuss recent incidents or emerging attack vectors and how they might impact the organisation. This shows that you’re proactive and genuinely passionate about information security.