Cyber Security Manager

Posted Aug 27

This is a fully remote position, open to applicants in United Kingdom.

📋 Description

• Oversee security operations for a dynamic AI company including core business functions, commercial client projects, and Metis Red.

• Manage identity and access, endpoints, network controls, vulnerability remediation, resilience testing, UK IT services, and facilities.

• Create monitoring frameworks, identify weaknesses, and address them effectively.

• Design and develop an agentic detection and response capability alongside the team.

• Conduct manual security operations while the autonomous capability is being established, then oversee the resulting capability.

• Take full responsibility for alert triage, investigations, and incident response processes.

• Operate and fine-tune the autonomous security operations capability, treating agent outputs as preliminary assessments rather than final conclusions.

• Lead detection engineering efforts, including logging standards, alert quality, coverage gaps, and reduction of false positives.

• Assess detection coverage against internal red-team attack strategies and address any gaps.

• Conduct post-incident reviews and ensure follow-up actions are completed.

• Manage onboarding, transitions, and departures, including privileged access, SSO, and secrets management.

• Strengthen endpoints, ensure patch compliance, administer EDR systems, and oversee device lifecycle management.

• Control network and edge security, remote access, and segmentation protocols.

• Execute auditor-ready access reviews.

• Oversee UK IT services, user support, devices, and the on-premise server ecosystem.

• Manage an approximately 85-product SaaS portfolio, including licensing, access, expenditure, and rationalization.

• Establish and report on service levels while maintaining a healthy support queue.

• Direct IT procurement and asset management initiatives.

• Manage backup security and ransomware recovery, including testing recovery processes.

• Conduct business continuity and disaster recovery drills while maintaining thorough documentation.

• Develop and validate an out-of-hours support arrangement.

• Supervise and nurture an offshore security resource.

• Generate continuous operational documentation for ISO 27001 and SOC 2 compliance.

• Address the operational aspects of client due diligence inquiries.

• Keep precise inventories of assets, logs, and access controls.


⛳️ Requirements

• A minimum of five years in security operations, with at least two years holding direct accountability for incident response in a live setting.

• Practical experience in cloud security operations with AWS and Azure, covering logging, monitoring, and identity management.

• Extensive identity and access management experience at scale: SSO, privileged access, and joiner/leaver processes.

• Proficient in endpoint and EDR administration across a distributed network.

• Broad experience in vulnerability management, showcasing a history of addressing findings effectively.

• Familiarity with ISO 27001 or SOC 2 control frameworks and producing evidence that meets auditor acceptance.

• Automation-oriented mindset: capable of scripting, utilizing infrastructure as code, or demonstrating proficiency in directing agentic tools and evaluating their outcomes.

• Ability to uphold standards with engineers and commercial teams and provide rationale for rejections.

• Relevant certifications such as CREST, GIAC, or an equivalent hands-on qualification are preferred.

• Experience with operational technology or industrial environments is a plus.

• Awareness of practical applications of AI or machine learning security is desirable.

• Background in a startup, scale-up, or managed service provider environment is advantageous.

• Experience in managing or mentoring offshore or distributed team members is preferred.


🏝️ Benefits

• Fully remote work setup.

• Chance to develop and establish an autonomous security operations capability from the ground up.

• Responsibility for line management and development of an offshore security resource.

• Professional exposure to ISO 27001 and SOC 2 assurance frameworks.

• Work on an AI foundation model tailored for energy operations.

• Opportunity to engage across core business functions, commercial client projects, and an agentic security testing platform.

People also viewed

Robots & Pencils9 hours ago

Staff Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$56 – $77/hour
ApplyView job
Latitude IT Solutions | SDVOSB10 hours ago

Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$102k – $118k/year
ApplyView job
Latitude IT Solutions | SDVOSB10 hours ago

Senior Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$119k – $137k/year
ApplyView job
11:11 SYSTEMS20 hours ago

Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
11:11 SYSTEMS20 hours ago

Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
11:11 SYSTEMS21 hours ago

Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers