Global Head of Cyber Defense
17 hours ago
Job Description
This is an opportunity to join Ascot Group - one of the world's preeminent specialty risk underwriting organizations.
Designed as a modern-era company operating through an ecosystem of interconnected global operating platforms, we're bound by a common mission and purpose: One Ascot. Our greatest strength is a talented team who flourish in a collaborative, inclusive, and entrepreneurial culture, steeped in underwriting excellence, integrity, and a passion to find a better way,
The Ascot Way
.
The Ascot Way guides our people and our organization. Our underwriting platforms collaborate to find creative ways to deploy our capital in a true cross-product and cross-platform approach. These platforms work as one, deploying our capital creatively through our unique Fusion Model: Client Centric, Risk Centric, Technology Centric.
Built to be resilient, Ascot maximizes client financial security while delivering bespoke products and world class service — both pre- and post-claims. Ascot exists to solve for our clients' brightest tomorrow, through agility, collaboration, resilience, and discipline.
Job Summary
Reporting to the Chief Information Security Officer, the
Global Head
Cyber Defense
helps build, manage and mature our cybersecurity posture. This is a key role that is accountable for our 24X7 global security operations center, improving our incident detection, incident response and incident management capabilities, and ensuring we have the appropriate people, processes and technologies to detect, prevent and respond to the ever-changing cyber threat landscape.
This key role in the cybersecurity organization involves collaborating with various teams across the organization, such as and not limited to - the IT leadership team, Infrastructure, business unit stakeholders, Legal, Finance, Enterprise Risk Management, and Compliance functions. The position requires strong technical knowledge in cybersecurity and IT along with business acumen to effectively communicate with the business tailoring content according to the audience, help build trust put forward recommendations and deliver strategic initiatives.
This individual needs to demonstrate a record of successfully leading, motivating, and developing high-performing cybersecurity teams along with executive presence and the ability to drive change in a dynamic environment.
Responsibilities
- Work with the CISO and take ownership of the Cybersecurity Defense function that includes, and is not limited to - strategy, improving cyber resilience, finance/budget, a service catalogue comprising of the Security Operations Center, Threat Intelligence, Threat Hunting, Insider Threat and achieving compliance with regulatory & audit requirements.
- Support other functions within the cybersecurity group to lead a coordinated effort to meet objectives – such as penetration testing, red/purple team exercises, training and awareness along with presenting at various internal forums and committees.
- Serve as a point of escalation for the L1, L2, L3 SOC Analysts, Head of SOC, MSSP, and other vendors, lead and coordinate response efforts with other groups and stakeholders with varying technical expertise, such as IT, Legal, business etc. Provide oversight and governance over the daily operations of the MSSP and SOC team at a global level, mentor and provide training to junior SOC team members.
- Oversee the incident response process, ensuring rapid identification, containment, eradication, and recovery from security incidents.
- Act as an Incident Commander during cybersecurity incidents working across incident confirmation, containment, and communicating to internal and external stakeholders.
- Manage and create incident reports, identify improvements to detect and prevent similar incidents from occurring in the future.
- Work with end users, vendors, and MSSP where appropriate on security related incident through closure.
- Stay current with evolving threats, vulnerabilities, tools, technologies and threat actor TTPs to help improve detection and response capabilities.
- Develop and refine standard operating procedures in the form of run books and playbooks for incident response and threat detection. Create and make improvements to procedures and playbooks.
- Provide oversight and guidance on the technical analysis, log reviews, and assessments of cybersecurity incidents throughout the incident management lifecycle.
- Identify opportunities of improvement with the processes, procedures, and our detection capabilities including detection use cases within our SIEM for our expanding estate using appropriate scripting languages.
- Assist with additional ad hoc projects as required.
- Run and coordinate annual cybersecurity tabletop exercises, that spread across both technical and non-technical areas and testing.
Experience Required
- 12 years of extensive cybersecurity experience, with at least 5 years in a senior leadership role and a proven track record in leading a global cyber defense function.
- Excellent written and verbal communication skills, interpersonal and collaborative skills, and the ability to communicate cybersecurity and risk-related concepts to technical and nontechnical audiences at various hierarchical levels, ranging from senior leadership to technical specialists.
- Track record of successfully managing a high-performing cybersecurity organization with the ability to motivate and mentor high-performing security teams and foster a culture of excellence.
- Knowledge of current and upcoming methodologies and trends in the cybersecurity landscape, including a deep knowledge of cyber threats, attack techniques, and cybersecurity frameworks/standards.
- Deep knowledge of threat detection and response; digital forensics and malware analysis; cloud security across the various cloud hosting platforms; endpoint detection and response; SIEM platforms and working knowledge of managed security service providers.
- Familiarity with existing and experimental cybersecurity philosophies and experience implementing leading-edge capabilities.
- Strong leadership skills to influence organizational change, build teams, and communicate security priorities effectively across the enterprise.
- Technology management skills, including security architecture design, engineering, operations, and vendor oversight.
- Business acumen to understand enterprise operations, risk tolerance, and industry dynamics.
- Analytical skills to conduct technical assessments, prioritize vulnerabilities, and develop risk treatment plans.
- Project management skills to assist with the development and execution of the cybersecurity strategy and roadmaps to strengthen and continuously improve the cybersecurity posture.
- Passion for continuous learning to stay current on advancing threats and security best practices.
- Ability to maintain a calm structured mindset even when under pressure.
***This position may be filled at a different level, depending on experience***
Please be aware that Ascot Group's job opportunities will be posted on our official careers page. All official communication comes from email addresses, if you receive a job offer or recruitment communication from Ascot Group that you suspect might be fraudulent, do not hesitate to contact us directly to verify its legitimacy . We will never ask for payment or sensitive personal information during any stage of the recruitment process. Your privacy and trust are of utmost importance to us, and we strive to ensure that you have a positive experience with Ascot Group.
-
Head of Cyber Security
1 week ago
London, Greater London, United Kingdom TechNET IT Recruitment Ltd Full time £100,000 - £150,000 per yearInterim Global Head of IT Security & GovernanceLocation: London / Midlands / Sussex (Hybrid)Contract Length: 3 - 6 monthsDay Rate: Competitive DOEWe're supporting a global organisation seeking an immediate-impact security leader to guide and accelerate major cyber transformation and governance programmes.As Interim Global Head of IT Security & Governance,...
-
Analyst - Cyber Threat Intelligence
2 weeks ago
London, Greater London, United Kingdom Orpheus Cyber Full time £60,000 - £120,000 per yearThere is a new and exciting opportunity for a Cyber Threat Intelligence Analyst, or Associate Threat Intelligence Analyst (DOE) to join our team.Orpheus is a specialist CTI provider that uses its understanding of the threat landscape to power its consulting, managed service, cyber risk ratings, and data services. We are also accredited to the highest level...
-
Cyber Security Engineer
1 week ago
London, Greater London, United Kingdom Global Switch Full timeJob DescriptionAbout the RoleAs a Cyber Security Engineer, you will be responsible for protecting digital assets, detecting and mitigating threats, and ensuring technical security controls are effective to ensure the confidentiality, integrity, and availability of systems and data. The role will use security software tools and collaborate with internal...
-
Head of Risk, Cyber
2 weeks ago
London, Greater London, United Kingdom Schroders Full time £80,000 - £120,000 per yearJob DescriptionHead of Risk – Cyber & TechnologyWho We're Looking ForWe are looking for an experienced cyber and technology risk professional with strong technical skills combined with the ability to communicate with and influence both technical and non-technical senior management.About SchrodersWe're a global investment manager. We help institutions,...
-
Head of Risk, Cyber
2 weeks ago
London, Greater London, United Kingdom Schroders Full time £54,000 - £110,000 per yearDescription Head of Risk – Cyber & TechnologyWho we're looking forWe are looking for an experienced cyber and technology risk professional with strong technical skills combined with the ability to communicate with and influence both technical and non-technical senior management.About SchrodersWe're a global investment manager. We help institutions,...
-
Head of Information and Cyber Security
1 week ago
London, Greater London, United Kingdom Sadler Recruitment Full time £960,000 - £1,008,000 per yearJob Description: Role: Head of Cyber SecurityLocation: Hybrid 1 day per week in London (flexible)Salary: £80,000 - £84,000 + benefitsOverviewThis is a pivotal leadership role in shaping and strengthening the cybersecurity landscape of a values-driven, non-profit organisation. The organisation is recognised as a top 100 Employer, historically named as...
-
Technical Cyber Security Lead
2 weeks ago
London, Greater London, United Kingdom Genus PLC Full timeRole OverviewWe are looking for a Technical Cyber Security Lead to join our teamYou will be responsible for building and embedding secure technology solutions across Genus's global estate. Your focus will be on architecture, engineering, and advanced technical assurance to ensure systems, applications, and data are designed, implemented, and operated...
-
Senior Manager, Cyber Policy
1 week ago
London, Greater London, United Kingdom Vodafone Full timeIn this global role, you'll lead the development and governance of our Cyber and Information Security policies, standards, and control frameworks—ensuring they reflect industry best practices and align with our risk appetite. You'll collaborate with senior stakeholders across all markets and entities, driving complex change programmes and supporting...
-
Senior Director of Cyber Security
1 day ago
London, Greater London, United Kingdom WTW Full timeDescriptionThe Senior Leader of Cyber Engineering and Identity & Access Management (IAM) will provide enterprise-wide leadership to secure critical assets, enable digital transformation, and ensure compliance with regulatory expectations. As a designated Senior Management Function (SMF) under the Financial Conduct Authority's Senior Managers & Certification...
-
London, Greater London, United Kingdom Citi Full timeJob DescriptionCiti continues to enhance its business control and governance framework by building out Institutional Credit Management (ICM), a function in the 1st Line of Defense, to house and consistently manage credit risk activities performed across its Institutional Client Group organization. ICM's objective is to provide integrated "end-to-end" credit...