Adversary Emulation Manager

3 weeks ago


London, UK, United Kingdom TP ICAP Full time
The TP ICAP Group is a world leading provider of market infrastructure.

Our purpose is to provide clients with access to global financial and commodities markets, improving price discovery, liquidity, and distribution of data, through responsible and innovative solutions.

Through our people and technology, we connect clients to superior liquidity and data solutions.

The Group is home to a stable of premium brands. Collectively, TP ICAP is the largest interdealer broker in the world by revenue, the number one Energy & Commodities broker in the world, the world's leading provider of OTC data, and an award winning all-to-all trading platform.

The Group operates from more than 60 offices in 27 countries. We are 5,300 people strong. We work as one to achieve our vision of being the world's most trusted, innovative, liquidity and data solutions specialist.

Role Overview

Operating as a function of Cyber Defence under Information Security, you will lead TP ICAP's purple teaming function, and ensure the firm is well positioned to prevent and detect modern cyber-attacks. As TP ICAP embarks on extensive EDR and SIEM refresh projects, you will be responsible for ensuring these tools are fit for purpose through the delivery of threat-led sprints, and the creation or customisation of attack detection rules.

Being able to model sophisticated and persistent adversaries is essential, and you will be given existing tools such as Prelude, Cobalt Strike, and Vectr to support you, plus any others that you identify.

Role Responsibilities
  • Define and execute purple team sprints that materially and demonstrably improve TP ICAP's ability to prevent and detect modern attacks.
  • Simulate both established and emerging attacker TTPs and personally build the respective detection rules and response procedures.
  • Through the delivery of purple team sprints, identify opportunities to reduce TP ICAP's attack surface using preventative controls.
  • Work with the Security Engineering team as necessary to support the deployment and tuning of security-related tooling, particularly those that pertain to prevention and detection.
  • Develop processes for attack surface monitoring and constant validation through automation.
  • Act as an escalation point for the SOC and assist with incident response.
Experience / Competences

Essential
  • Practical experience emulating sophisticated cyber-attacks, likely in a purple or red team capacity.
  • Deep understanding of modern attacker tools, techniques and procedures.
  • Comfortable identifying appropriate telemetry sources to collect, and using these to build custom attack detection rules where out the box capability doesn't exist.
Desired
  • Active contributor to offensive security research and/or tooling, perhaps presenting this research at industry-recognised conferences and forums.
  • Experience working with a SOC to:
    • Tune existing rules and increase alert fidelity/decrease alert fatigue
    • Include analysts on the purple team journey, aiding in staff retention
    • Train analysts in modern attacker TTPs and the 'attacker mindset'
  • Able to evade defensive controls such as EDR and AV, tailoring open source tooling and rolling your own where required.
  • Experience using Infrastructure-as-Code to support emulation activities, for example Terraform/Ansible.
  • Experience attacking or securing AWS infrastructure.
  • Development experience in one or more programming languages, with one of them ideally being python.


Not The Perfect Fit?

Concerned that you may not meet the criteria precisely? At TP ICAP, we wholeheartedly believe in fostering inclusivity and cultivating a work environment where everyone can flourish, regardless of your personal or professional background. If you are enthusiastic about this role but find that your experience doesn't align perfectly with every aspect of the job description, we strongly encourage you to apply. You may be the ideal candidate for this position or another opportunity within our organisation. Our dedicated Talent Acquisition team is here to assist you in recognising how your unique skills and abilities can be a valuable contribution. Don't hesitate to take the leap and explore the possibilities. Your potential is what truly matters to us.

Company Statement

We know that the best innovation happens when diverse people with different perspectives and skills work together in an inclusive atmosphere. That's why we're building a culture where everyone plays a part in making people feel welcome, ready and willing to contribute. TP ICAP Accord - our Employee Network - is a central to this. As well as representing specific groups, TP ICAP Accord helps increase awareness, collaboration, shares best practice, and holds our firm to account for driving continuous cultural improvement.

Location
UK - 135 Bishopsgate - London

  • London,, UK, United Kingdom McGregor Boyall Full time

    **Permanent role**Up to £115k per annum**Hybrid home/office model**Sponsorship - NOT AVAILABLEThe CompanyA world-leading provider of market infrastructure that provides clients with access to global financial and commodities markets.The RoleYou will lead the firm's purple teaming function and ensure the firm is well-positioned to prevent and detect...


  • London,, UK, United Kingdom ChangeEngine Full time

    We are looking for a Senior Product Manager to guide our Employee Journeys, Automation and Comms Orchestration products. This role is central to managing tools designed to automate and streamline employee communication across various lifecycle events, delivering a personalized and engaging employee experience.Key ResponsibilitiesProduct Strategy and Vision:...


  • London,, UK, United Kingdom ChangeEngine Full time

    We are looking for a Senior Product Manager to guide our Employee Journeys, Automation and Comms Orchestration products. This role is central to managing tools designed to automate and streamline employee communication across various lifecycle events, delivering a personalized and engaging employee experience.Key ResponsibilitiesProduct Strategy and Vision:...


  • London, UK, UK, United Kingdom Integrity360 Full time

    Role: Senior Cyber Incident Response AnalystLocation: Remote with occasional visit to client sites (must have valid right to work)About Integrity360 Integrity360 is an the largest independent cybersecurity provider in UK&I, with Security Operations Centers in Dublin & Sofia, employing 310+ employees, of which over 80% are technical. We help our clients...


  • London,, UK, United Kingdom Protection Group International Full time

    Senior Digital Investigations Analyst- RussianOur Digital Investigations Team is all about social media intelligence. We've been at it for over a decade, honing our skills and becoming true experts globally. We've got experience working with social media platforms, governments, and non-profit organisations - helping them understand and navigate...

  • AWS SecOps Engineer

    5 days ago


    London, South East, UK, United Kingdom Cognizant Full time

    Cognizant has an excellent opportunity for an AWS SecOps Engineer to be part of our Infrastructure services practice. This full-time AWS SecOps Engineer role is based in London and comes with a generous salary and benefits package. There would be no out-of-hours responsibilities for this role.As an AWS SecOps Engineer, you will identify, research, and...


  • London, UK, United Kingdom London Stock Exchange Group Full time

    Role Purpose The Senior Incident Response role is part of a global Incident Response team that sits within the Global Security Operations Centre (GSOC). The role is responsible for identifying and responding to cyber security incidents and enhancing the defensive capabilities of the GSOC. LSEG GSOC  is a central function employing people, process and...


  • London, UK, United Kingdom London Stock Exchange Group Full time

    ABOUT US: LSEG (London Stock Exchange Group) is more than a diversified global financial markets infrastructure and data business. We are dedicated, open-access partners with a dedication to excellence in delivering the services our customers expect from us. With extensive experience, deep knowledge and worldwide presence across financial markets, we enable...


  • London, UK, United Kingdom London Stock Exchange Group Full time

    Role Purpose Developing cyber defence capabilities to protect LSEG from cyber threats that impact the confidentiality, integrity, and availability of group assets. Domain area is Vulnerability & Threat Management. Reports to Senior Manager, Vulnerability & Threat Management No direct FTE reports, but may handle contingents and vendor/partner resources....


  • London, UK, United Kingdom London Stock Exchange Group Full time

    ABOUT US: LSEG (London Stock Exchange Group) is more than a diversified global financial markets infrastructure and data business. We are dedicated, open-access partners with a dedication to excellence in delivering the services our customers expect from us. With extensive experience, deep knowledge and worldwide presence across financial markets, we enable...


  • London, United Kingdom TP ICAP Group Full time

    Adversary Emulation Manager page is loaded Adversary Emulation Manager Apply locations London time type Full time posted on Posted 30+ Days Ago job requisition id R2386 The TP ICAP Group is a world leading provider of market infrastructure. Our purpose is to provide clients with access to global financial and commodities markets, improving price...


  • London, United Kingdom TP ICAP Group Full time

    Adversary Emulation Manager page is loaded Adversary Emulation Manager Apply locations London time type Full time posted on Posted 30+ Days Ago job requisition id R2386 The TP ICAP Group is a world leading provider of market infrastructure. Our purpose is to provide clients with access to global financial and commodities markets, improving price...


  • London, United Kingdom TP ICAP Full time

    Role Overview Operating as a function of Cyber Defence under Information Security, you will lead TP ICAP’s purple teaming function, and ensure the firm is well positioned to prevent and detect modern cyber-attacks. As TP ICAP embarks on extensive EDR and SIEM refresh projects, you will be responsible for ensuring these tools are fit for purpose...


  • London, United Kingdom TP ICAP Full time

    Role Overview Operating as a function of Cyber Defence under Information Security, you will lead TP ICAP’s purple teaming function, and ensure the firm is well positioned to prevent and detect modern cyber-attacks. As TP ICAP embarks on extensive EDR and SIEM refresh projects, you will be responsible for ensuring these tools are fit for purpose...


  • London, United Kingdom McGregor Boyall Full time €115,000

    Role: Threat Emulation Manager Salary: £115,000 + Bonus Location: London, Hybrid (2-3 days a week in the office) A renowned global organisation specialising in financial market infrastructure seeks an experienced professional to spearhead its offensive security simulation efforts. This firm provides cutting-edge solutions to enhance price discovery,...


  • London, United Kingdom McGregor Boyall Full time €115,000

    Role: Threat Emulation Manager Salary: £115,000 + Bonus Location: London, Hybrid (2-3 days a week in the office) A renowned global organisation specialising in financial market infrastructure seeks an experienced professional to spearhead its offensive security simulation efforts. This firm provides cutting-edge solutions to enhance price discovery,...


  • London, United Kingdom McGregor Boyall Full time

    Role: Threat Emulation ManagerScroll down to find the complete details of the job offer, including experience required and associated duties and tasks.Salary: £115,000 + BonusLocation: London, Hybrid (2-3 days a week in the office)A renowned global organisation specialising in financial market infrastructure seeks an experienced professional to spearhead...


  • London, United Kingdom TP ICAP Full time

    Full Job Description The TP ICAP Group is a world leading provider of marketinfrastructure. Our purpose is to provide clients withaccess to global financial and commodities markets, improving pricediscovery, liquidity, and distribution of data, through responsibleand innovative solutions. Through our people andtechnology, we connect clients to superior...


  • London, United Kingdom TP ICAP Full time

    Full Job Description The TP ICAP Group is a world leading provider of marketinfrastructure. Our purpose is to provide clients withaccess to global financial and commodities markets, improving pricediscovery, liquidity, and distribution of data, through responsibleand innovative solutions. Through our people andtechnology, we connect clients to...


  • London, United Kingdom TP ICAP Full time

    Full Job Description The TP ICAP Group is a world leading provider of marketinfrastructure. Our purpose is to provide clients withaccess to global financial and commodities markets, improving pricediscovery, liquidity, and distribution of data, through responsibleand innovative solutions. Through our people andtechnology, we connect clients to superior...


  • London Area, United Kingdom McGregor Boyall Full time

    Role: Threat Emulation Manager Salary: £115,000 + Bonus Location: London, Hybrid (2-3 days a week in the office) A renowned global organisation specialising in financial market infrastructure seeks an experienced professional to spearhead its offensive security simulation efforts. This firm provides cutting-edge solutions to enhance price discovery,...


  • London, United Kingdom McGregor Boyall Full time

    Role: Threat Emulation ManagerSalary: £115,000 + BonusLocation: London, Hybrid (2-3 days a week in the office)A renowned global organisation specialising in financial market infrastructure seeks an experienced professional to spearhead its offensive security simulation efforts. This firm provides cutting-edge solutions to enhance price discovery, liquidity,...


  • London Area, United Kingdom McGregor Boyall Full time

    Role: Threat Emulation ManagerSalary: £115,000 + BonusLocation: London, Hybrid (2-3 days a week in the office)A renowned global organisation specialising in financial market infrastructure seeks an experienced professional to spearhead its offensive security simulation efforts. This firm provides cutting-edge solutions to enhance price discovery, liquidity,...


  • London Area, United Kingdom McGregor Boyall Full time

    Role: Threat Emulation ManagerSalary: £115,000 + BonusLocation: London, Hybrid (2-3 days a week in the office)A renowned global organisation specialising in financial market infrastructure seeks an experienced professional to spearhead its offensive security simulation efforts. This firm provides cutting-edge solutions to enhance price discovery, liquidity,...


  • London, United Kingdom TP ICAP Full time

    The TP ICAP Group is a world leading provider of market infrastructure. Our purpose is to provide clients with access to global financial and commodities markets, improving price discovery, liquidity, and distribution of data, through responsible and innovative solutions. Through our people and technology, we connect clients to superior liquidity and data...


  • London, United Kingdom TP ICAP Full time

    The TP ICAP Group is a world leading provider of market infrastructure. Our purpose is to provide clients with access to global financial and commodities markets, improving price discovery, liquidity, and distribution of data, through responsible and innovative solutions. Through our people and technology, we connect clients to superior liquidity and...


  • London, United Kingdom TP ICAP Full time

    The TP ICAP Group is a world leading provider of market infrastructure. Our purpose is to provide clients with access to global financial and commodities markets, improving price discovery, liquidity, and distribution of data, through responsible and innovative solutions. Through our people and technology, we connect clients to superior liquidity and data...


  • London, United Kingdom TP ICAP Full time

    The TP ICAP Group is a world leading provider of market infrastructure. Our purpose is to provide clients with access to global financial and commodities markets, improving price discovery, liquidity, and distribution of data, through responsible and innovative solutions. Through our people and technology, we connect clients to superior liquidity and data...


  • London, United Kingdom TP ICAP Full time

    The TP ICAP Group is a world leading provider of market infrastructure. Our purpose is to provide clients with access to global financial and commodities markets, improving price discovery, liquidity, and distribution of data, through responsible and innovative solutions. Through our people and technology, we connect clients to superior liquidity and data...


  • London, United Kingdom McGregor Boyall Full time

    **Permanent role**Skills, Experience, Qualifications, If you have the right match for this opportunity, then make sure to apply today.Up to £115k per annum**Hybrid home/office model**Sponsorship - NOT AVAILABLEThe CompanyA world-leading provider of market infrastructure that provides clients with access to global financial and commodities markets.The...