IT Security Operations Lead

3 weeks ago


London, UK, United Kingdom LTIMindtree Full time

This role requires an active involvement in new projects to ensure security requirements are designed and delivered as part of project lifecycle. They will be able to demonstrate the ability to communicate and promote security requirements to a range of stakeholders. They will help to develop IT security process/procedures to achieve improved efficiency/effectiveness and audit compliance.


Key Responsibilities:

  • Supporting the Group CISO, you will help lead Security Program to manage, monitor, and improve the daily operations of the Cyber Security program, oversight of the annual and ongoing risk assessment process, development, implementation, and maintenance of policies and procedures, ensuring the confidentiality, integrity and access of electronic PII and of monitoring program compliance as well as investigation and tracking of incidents and breaches and in compliance with federal and state laws. Our Aspen Values are expected to be reflected in the delivery and performance of every role.
  • The role requires that security processes and procedures be followed covering a range of activities covered by this role: threat/vulnerability assessment, vulnerability management, security monitoring, security alert handing, incident response.
  • Able to manage a diverse workload, and able to communicate effectively with technical teams, project managers and key stakeholders.
  • As we move to a ‘Cloud-First’ strategy, strong Azure/M365 experience is a must. Windows Defender, Sentinel, Purview, are all a requirement for this role.
  • Hands on activity on regular operational tasks may also be required to support on-going BAU activities.
  • The processes/procedures in place must be developed, documented and implemented/operational with evidence of controls produced as KPI and KRI to evidence operational performance.
  • Manage the deployment and administration of technical security initiatives to enable adequate protection against the evolving cyber threat landscape.
  • Maintain, deploy, upgrade, and troubleshoot various security solutions across detect, protect, response and recover.
  • Lead security assessments and risk analysis and makes recommendations to improve overall security.
  • Manage the threat and vulnerability program to ensure timely remediation of vulnerabilities in line with policy and compliance requirements.
  • Work with internal teams to ensure adequate security solutions are engineered and deployment across environments/platforms to mitigate security risks.
  • Manage the integration of security solutions, tools and platforms with internal systems to improve organizational security posture and maturity.
  • Design, implement and maintain procedures and controls necessary to ensure the protection of all information system assets against intentional or inadvertent misuse, access, modification, disclosure or destruction.
  • Investigate security incidents and breaches by operationalizing technical incident response efforts, as an integral part of the Security Incident Response Team
  • Provide people leadership, mentoring and training on relevant networks, tools, policies, and procedures to direct reports including security analysts and engineers.
  • Maintain up-to-date knowledge of the latest security trends and technology and recommends appropriate security products and solutions for various platforms.
  • Manage relationships with third-party managed security service providers.
  • Perform all duties inherent in a supervisory role.
  • Manage a team of offshore Cyber Analysts.


Skills and Experience:


Functional / Technical Competencies:

  • 5 years+ of information security or cyber security experience
  • Experience and/or certifications which provide evidence of Information/Cyber Security capabilities.
  • Experience and/or certification which provide evidence of Infrastructure knowledge/capabilities.
  • Strong Cloud experience, ideally recently with MS Azure.
  • Experience with implementation of security tools such as EDR, NDR, SIEM, Data Leakage.
  • Experience in implementing various security controls, such as NIST, SOX, GDPR, CSA, etc.
  • Prevention, Automation and Orchestration, Encryption, etc.
  • Experience with DarkTrace, Proofpoint, Thales (DPOD/CipherTrust), Zscaler are a Plus.

Work Experience:

  • Recent Azure experience to include Defender, Sentinel, Purview, MS O365 - Required
  • Strong experience of operational security activities such as vulnerability management, security monitoring, alert/incident response, security reviews – Required.
  • In-depth knowledge of security technologies such as firewall, SIEM, vulnerability management, email security, IAM – Required.
  • Hands-on implementation experience deploying, maintaining, and administering security technologies such as Endpoint security, Firewalls & IDS, DLP, Reverse Proxies, CASB, MDM, Vulnerability and Patch management - Required.
  • Excellent knowledge of secure network design and system/security hardening – Required.
  • Advanced knowledge of incident response and threat mitigation – Required.
  • Strong understanding of cloud-based architecture and models – Required.
  • Extensive Windows experience including deep knowledge of log file analysis, log auditing and common configuration deficiencies - a Plus.
  • Experience in one or more programming languages for scripting and automation - a Plus.
  • Managing an offshore team – a Plus
  • Financial services experience - Preferred

Education / Qualifications:

  • Degree is preferable.
  • Microsoft certifications are a Plus.
  • SANS GSEC/GCED/GSOC or similar are a Plus.
  • CISSP/CISM/CISA are a Plus.



  • London,, UK, United Kingdom Iceberg Cyber Security Full time

    My client has embedded themselves into the finical markets as a serious player and with a small global team, they are leading the way in their field. Why is this a good more for a Cyber Security professional? Autonomy, they are an agile business and reporting directly to the CISO you will have the ability to not only drive initiatives forward, take...

  • Security Engineer

    6 days ago


    London,, UK, United Kingdom acre security Full time

    Are you passionate about shaping the future of security solutions? Do you thrive in an environment that values innovation and teamwork? If so, acre security is the place for you! Join us in making the world a safer place, one innovation at a time.Position: Security EngineerLocation: London, UK.A Bit About Us:At acre, we're not just creating security...


  • London,, UK, United Kingdom Iceberg Cyber Security Full time

    Senior Security Engineer – Network Security Working in the financial trading industry is highly motivating for security technologists because the environment is constantly changing at a fast pace, allowing you to work with cutting-edge technology. The exciting aspect of this opportunity is that you do not need current or previous experience within the...

  • Security Incident Lead

    3 months ago


    London,, UK, United Kingdom Acumin Full time

    Security Incident LeadJoin our Cyber Security product group as a Security Incident Lead, a pivotal role within our team dedicated to cyber security incident management and security operations technologies. Our mission is to deliver top-tier enterprise security services across the organization.Key Responsibilities:Subject Matter Expertise: Lead as the expert...


  • London,, UK, United Kingdom Harrington Starr Full time

    Lead DevSecOps EngineerA leading global financial services firm is seeking an experienced Lead DevSecOps Engineer to join their dynamic team. This firm operates across a range of markets, providing essential services in commodities, energy, and financial sectors with a global reach and a strong balance sheet.Key Responsibilities:Secure and enhance the CI/CD...


  • London,, UK, United Kingdom HAYS Full time

    Security operations Manager / Lead to develop and build SIEM / monitoring, tooling strategies. NO SPONSORSHIP AVAILABLE - UK ONLY.You will be collaborating with the cloud and product security teams.Rotational security coverage.Experience Required.Elastic SIEM.Security Audits.Incident management and response.GCP / AWS Cloud.GDPR experienceTechnical and non...


  • London,, UK, United Kingdom Iceberg Cyber Security Full time

    I’m currently representing a global tech organisation whose base of operations is in London and this year they have grown strength to strength in investing heavily in their platforms and tech stack. With this level of innovation, the senior leadership have identified the need for a senior Network Security Engineer with a deep understanding of CISCO...


  • London,, UK, United Kingdom TENTEN PARTNERS PTE LTD Full time

    Our client is a pioneering company in the digital finance sector, focusing on the innovative landscape of digital assets. They are seeking skilled Senior Cybersecurity Engineer with extensive experience in Application and Cloud Security. Our client has a foundation backed by a well-established global financial institution and is committed to delivering...

  • Security Team Lead

    3 weeks ago


    London,, UK, United Kingdom La Fosse Full time

    Role – Team Lead – Infrastructure & Cyber SecurityLocation – London (3 days a week), Remote (2 days a week)Salary & Package - £51,088 + Benefits Main Purpose of Job:To develop and maintain the Cyber Security capability, aligned to the overall IS and strategy, to ensure that the business remains cyber secure and achieves the required accreditations.Key...

  • Cyber Security Lead

    1 month ago


    London,, UK, United Kingdom Radius Full time

    Radius is seeking a technically hands on Cyber Security Lead / Consultant. This is a technically hands on role and a role wearing many hats:Mentoring360 Design to project implementationStrategyGovernance / Frameworksdeveloping security Solutions / service capabilityThis is a technically hands-on role, focused on the continued success of our security...


  • London,, UK, United Kingdom CornerStone - Risk, Cyber & Security Full time

    CornerStone is a leading independent Security Risk Consultancy, and we are now looking for a Technical Security Consultant to join our award-winning team in a UK-wide capacity. We are seeking an individual who enjoys working in a fast-paced, collaborative environment that is built upon innovation, teamwork, taking ownership, and supporting each other....


  • London, UK, UK, United Kingdom Legal & General Full time

    Helping over ten million people around the world manage their savings, retirement plans and life insurance requires a lot of people behind-the-scenes. It’s up to us in L&G Group functions – which includes our tech and digital teams, Group Finance, HR, Risk and Corporate Comms to provide the essential support services that all areas of the business need,...

  • Cyber Security Lead

    3 months ago


    London,, UK, United Kingdom Premier Group Recruitment Full time

    Exciting Opportunity at a Leading MSP!I'm reaching out on behalf of a world-renowned Managed Service Provider (MSP) with over 30 years of experience. They're seeking a highly experienced Head of Cyber Security to join their team on a permanent basis.The client caters to a prestigious international clientele in the professional and finance sectors,...


  • London, UK, United Kingdom Deutsche Bank Full time

    Job Description: Job Title Lead Cloud Security Architect Location London Corporate Title Vice President This position exists within the Enterprise Security Architecture & Enablement team of the Chief Security Office of Deutsche Bank. The Enterprise Security Architecture & Enablement team provides overall direction and guidance in the definition of...

  • Technical Lead

    3 weeks ago


    London, UK, UK, United Kingdom Fruition IT Full time

    Technical Lead - Location: Central London or Crawley - 2 days a weekPaying up to £80,000 + 10% bonus8 weeks working abroad per year + 25 days holiday private healthcareFruition IT are working with a global tech organisation based in London, they are an innovative supplier of customer loyalty solutions such as products and services across: Loyalty, Lifestyle...


  • London,, UK, United Kingdom Harrington Starr Full time

    Harrington Starr are seeking a Security Testing and Vulnerability Management Lead for one of our key banking clients. The role will involve oversight of all penetration testing and vulnerability management openings across EMEA working closely with other teams on a global basis. The role is newly formed role as part of a growing Cyber Resilience Team.Key...

  • Lead Network Engineer

    2 weeks ago


    London,, UK, United Kingdom ARC IT Recruitment Full time

    Lead Network EngineerLondon/HybridCirca £80k + bonus + excellent benefitsCisco, FortigateLead Network Engineer is sought to join the Global Network team within prestigious financial services organisation based in the City of London. This role will report into the Network Manager and be responsible for the management, oversight and delivery of IT services to...

  • Security Leader

    2 weeks ago


    London,, UK, United Kingdom SSR Personnel Full time

    Our prestigious client is looking for a Security Leader who will be responsible for developing and implementing security strategies to ensure the safety and security of the company's assets, employees, and facilities. The Security Manager leads on all aspects of security including overseeing the operations of the security control room, ensuring effective...


  • London,, UK, United Kingdom Stealth iT Consulting Full time

    A large IT consultancy is currently seeking a Senior Consultant experienced in cloud operating models to provide advisory services to clients.PermanentRemote with occasional client visitsSalay up to £70,000 + Additional BenefitsCandidates must be eligible for SC ClearanceAn Overview of The RoleOur Cloud Transformation Advisory Services enables our clients...


  • London,, UK, United Kingdom Eames Consulting Full time

    Excellent opportunity for a strong Cyber Security & Infrastructure Audit lead to be responsible for the development and implementation of the long-term vision, strategy and target operating model of Cyber Security and Infrastructure audit coverage within Internal Audit.Responsible for demonstrating strong accountability and responsibility for the delivery of...