Global Head of Technical Cyber Incident Response

2 weeks ago


London, Greater London, United Kingdom Willis Towers Watson Full time

We are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Technical Cyber Incident Response.

As part of the Cyber Defence and Security Operations department, you will be a senior leader managing the ICS Incident Response service ensuring WTW can contain and eradicate cyber-attacks from our environment.

You will need to have a good technical aptitude, excellent communicative skills to technical and non-technical audiences, and a solid business acumen to deal with other senior stakeholders across the business.

This role would suit those with an extensive history in Incident Response for global enterprise organisations or have led MSSP services and are used to working in a high-pressure environment and managing geographically dispersed teams across different time-zones.

To ensure robust processes are in place to contain and eradicate cyber incidents from the WTW environment in line with regulations and best practise. As the Global Head of Technical Cyber Incident Response, your primary responsibilities will be:


•Manage and develop a global team of Cyber Incident Responders, providing expert assistance during a major cyber incident and for routine investigations escalated by the SOC.

•Lead a wide variety of IR engagements from supplier compromise, financial fraud and cyber related issues.

•To provide L3 support to SOC, Insider Threat and Threat Hunting teams within WTW

•Develop and implement Incident Response plans across ICS to ensure we can respond in an efficient manner to a variety of cyber attacks.

•Support the Global Head of Strategic Cyber Incident Response ensuring IR plans within business segments are understood by ICS.

•Engage third party suppliers to ensure holistic and effective IR process are in place to deal with cyber attacks.

•Conduct regular TableTop exercises across WTW to simulate a cyber-attack.

•Conduct Quality Assurance checks on SOC activities to ensure incidents have been dealt with correctly.

•Provide senior stakeholder and board level briefings and engage with legal teams and regulators when required

•Any other task required by the Global Director of Cyber Defence

Communication and Relationships:
Close working relationships will be needed with other team members around the globe
You will need to work with technical contacts throughout the business and with multiple third parties
You will need to brief the security leadership team, board member and other internal business units on threat related criteria

Essential:
It is essential that you have extensive experience as a senior leader within an enterprise organisation(s) leading Incident Response Teams and managing major cyber incidents
Experience dealing with a wide variety of IR tasks leading to successful outcomes
Solid understand of financial regulations within IR to ensure IR work is carried out in an auditable an legally sound manner that regulators will deem acceptable
A solid understanding of cyber risk and how cyber-attacks are conducted across endpoints, cloud and on-premise networks

Beneficial:
Experience within a Global SOC, either within an MSSP function or an internal enterprise level SOC
Experience working with Sentinel and Defender for "X"
Great verbal and written communication skills, and the ability to write reports, processes and procedures in a structured manner
Previous exposure to a variety of compliance and regulatory requirements such as FCA, PCI, ISO27001, GDPR and other global regulations
Experience running a global team sitting in different time zones

Equal Opportunity Employer

At WTW, we believe difference makes us stronger. We want our workforce to reflect the different and varied markets we operate in and to build a culture of inclusivity that makes colleagues feel welcome, valued and empowered to bring their whole selves to work every day. We are an equal opportunity employer committed to fostering an inclusive work environment throughout our organization. We embrace all types of diversity.

At WTW, we trust you to know your work and the people, tools, and environment you need to be successful. The majority of our colleagues work in a" hybrid" style, with a mix of at home and in-office interactions dependent on the needs of the team, role and clients. Our flexibility is rooted in trust and "hybrid" is not a one-size-fits-all solution.

#J-18808-Ljbffr

  • London, Greater London, United Kingdom Willis Towers Watson Full time

    We are looking for dedicated individuals to join the Cyber Security team at WTW and deliver top-notch service and expertise throughout our organization. As part of a company-wide transformation, we have an exciting opportunity for the role of Global Head of Technical Cyber Incident Response. Joining the Cyber Defence and Security Operations team, you will be...


  • London, Greater London, United Kingdom WTW Full time

    Global Head of Technical Cyber Incident Response We are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Technical Cyber Incident Response . As part...


  • London, Greater London, United Kingdom Sterlings Full time

    Cyber Incident ResponseA global bank is seeking a Cyber Security Analyst to join their Cyber Security team in London, with the team working across infrastructure, business and application risk, penetration testing, and vulnerability management.The cyber security practice is a mature function and this team member will specifically work within the incident...


  • London, Greater London, United Kingdom Breath HR Full time

    Remote, with occasional travel to London Head Office Vacancy listed 26/03/2024 Details Who are we? Reliance Cyber is a leading independent provider of cyber security services in the UK, known for outstanding customer service and independent and trusted advice that offers a 'one stop shop' for clients' cyber security needs. We are passionate about our...


  • London, Greater London, United Kingdom Willis Towers Watson Full time

    We are looking for dedicated individuals to join our Cyber Security team at WTW, where we aim to deliver exceptional service and reliable expertise across all areas of our organization.Join us in this exciting opportunity as the Global Head of Cyber Threat, part of our Cyber Defence and Security Operations department. In this role, you will lead the Global...


  • London, Greater London, United Kingdom LT Harper Ltd Full time

    My client is a global consultancy who are adding to their incident response & proactive threat-hunting team to further develop and polish the company's overall service offering. They are looking for a strong incident response consultant who can independently investigate incidents, conduct threat hunting and engage with clients. Responsibilities of a Cyber...


  • London, Greater London, United Kingdom Willis Towers Watson Full time

    We are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Cyber Threat. As part of the Cyber Defence and Security Operations department, you will be a...


  • London, Greater London, United Kingdom WTW Full time

    We are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Cyber Threat. As part of the Cyber Defence and Security Operations department, you will be a...


  • London, Greater London, United Kingdom Cyber Crime Full time

    Security Analyst, Security Operations and Incident Response Meta is seeking a Security Analyst to join the Global Security Operations and Incident Response team. The Analyst will serve on the front lines of Meta's Security team and will lead and support security investigations across the company's global infrastructure as well as respond to escalations from...


  • London, Greater London, United Kingdom WTW Full time

    As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Cyber Threat. As part of the Cyber Defence and Security Operations department, you will be a senior leader managing the Global Threat Hunting, Forensics and Threat Intelligence Teams and 3rd party threat services. You will need to have a good technical...


  • London, Greater London, United Kingdom Cyber Crime Full time

    Meta Security is looking for an Incident Response Engineer with experience in the identification, containment and mitigation of security incidents. You will be analyzing different data sources to detect, investigate and respond to internal and external threats. You will also be working with our software and production engineering teams to develop scalable...


  • London, Greater London, United Kingdom (8660) IBM United Kingdom Limited Full time

    IntroductionInformation and Data are some of the most important organizational assets in today's businesses. As a Security Consultant, you will be a key advisor for IBM's clients, analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and...


  • London, Greater London, United Kingdom The European Bank for Reconstruction and Development Full time

    Purpose of Job The role sits within the IT Security and Business Continuity team, (part of Cyber Security Operations) which is responsible for protecting the confidentiality, integrity, and availability of the Bank's information assets. The focus of this role is to respond to any cybersecurity incident and assure the continued operations of Information...


  • London, Greater London, United Kingdom LT Harper Ltd Full time £85,000

    Senior Incident Response Consultant - Hybrid - London - Circa £85k My client is a global consultancy who are building out a billable incident response team to further develop and polish the company's overall service offering. They are looking for a strong incident response consultant who can independently investigate incidents and manage/engage with...


  • London, Greater London, United Kingdom Cisco Systems Full time

    What You'll DoThe Cisco Talos Incident Response Consultant will work with Cisco customers, using established methodologies, to perform a variety of reactive and pro-active Incident Response related activities. These may include emergency investigations of cyber incidents, threat intelligence research, proactively hunting for adversaries in customer...


  • London, Greater London, United Kingdom GCS Recruitment Specialists Ltd Full time

    My client is a global intelligence and cyber security consultancy specialising in solving complex information security challenges. Their team is comprised of sharp, curious, and driven individuals who excel at critical thinking and problem-solving. They prioritise work-life balance and invest in their employee's well-being, learning, and growth.As part of my...


  • London, Greater London, United Kingdom LT Harper Ltd Full time £85,000

    This job is brought to you by Jobs/Redefined, the UK's leading over-50s age inclusive jobs board. Senior Incident Response Consultant - Hybrid - London - Circa £85k My client is a global consultancy who are building out a billable incident response team to further develop and polish the company's overall service offering. They are looking for a strong...


  • London, Greater London, United Kingdom GCS Recruitment Specialists Ltd Full time

    Incident Response Associate, LondonFull Time PermanentThe Role:- Managing incident response cases from first contact through to closure: you will be the primary point of contact for all internal and external stakeholders, accountable for delivery in-time and on budget. You will coordinate non-technical workstreams and collaborate with technical leads where...


  • London, Greater London, United Kingdom Barclay Simpson Full time

    I'm working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist.This role is varied, offering the incumbent an opportunity to conduct incident response and threat hunting engagements.Some of your responsibilities will be as follows:Work closely with clients...


  • London, Greater London, United Kingdom Barclay Simpson Full time

    Job DescriptionI'm working with a boutique consultancy, who are seeking to grow to their existing cyber function with another dedicated incident response/threat hunting specialist.This role is varied, offering the incumbent an opportunity to conduct incident response and threat hunting engagements. Some of your responsibilities will be as follows:Work...