
Cyber Security Manager
Posted Aug 27

Posted Aug 27
This is a fully remote position, open to applicants in United Kingdom.
• Oversee security operations for a dynamic AI company including core business functions, commercial client projects, and Metis Red.
• Manage identity and access, endpoints, network controls, vulnerability remediation, resilience testing, UK IT services, and facilities.
• Create monitoring frameworks, identify weaknesses, and address them effectively.
• Design and develop an agentic detection and response capability alongside the team.
• Conduct manual security operations while the autonomous capability is being established, then oversee the resulting capability.
• Take full responsibility for alert triage, investigations, and incident response processes.
• Operate and fine-tune the autonomous security operations capability, treating agent outputs as preliminary assessments rather than final conclusions.
• Lead detection engineering efforts, including logging standards, alert quality, coverage gaps, and reduction of false positives.
• Assess detection coverage against internal red-team attack strategies and address any gaps.
• Conduct post-incident reviews and ensure follow-up actions are completed.
• Manage onboarding, transitions, and departures, including privileged access, SSO, and secrets management.
• Strengthen endpoints, ensure patch compliance, administer EDR systems, and oversee device lifecycle management.
• Control network and edge security, remote access, and segmentation protocols.
• Execute auditor-ready access reviews.
• Oversee UK IT services, user support, devices, and the on-premise server ecosystem.
• Manage an approximately 85-product SaaS portfolio, including licensing, access, expenditure, and rationalization.
• Establish and report on service levels while maintaining a healthy support queue.
• Direct IT procurement and asset management initiatives.
• Manage backup security and ransomware recovery, including testing recovery processes.
• Conduct business continuity and disaster recovery drills while maintaining thorough documentation.
• Develop and validate an out-of-hours support arrangement.
• Supervise and nurture an offshore security resource.
• Generate continuous operational documentation for ISO 27001 and SOC 2 compliance.
• Address the operational aspects of client due diligence inquiries.
• Keep precise inventories of assets, logs, and access controls.
• A minimum of five years in security operations, with at least two years holding direct accountability for incident response in a live setting.
• Practical experience in cloud security operations with AWS and Azure, covering logging, monitoring, and identity management.
• Extensive identity and access management experience at scale: SSO, privileged access, and joiner/leaver processes.
• Proficient in endpoint and EDR administration across a distributed network.
• Broad experience in vulnerability management, showcasing a history of addressing findings effectively.
• Familiarity with ISO 27001 or SOC 2 control frameworks and producing evidence that meets auditor acceptance.
• Automation-oriented mindset: capable of scripting, utilizing infrastructure as code, or demonstrating proficiency in directing agentic tools and evaluating their outcomes.
• Ability to uphold standards with engineers and commercial teams and provide rationale for rejections.
• Relevant certifications such as CREST, GIAC, or an equivalent hands-on qualification are preferred.
• Experience with operational technology or industrial environments is a plus.
• Awareness of practical applications of AI or machine learning security is desirable.
• Background in a startup, scale-up, or managed service provider environment is advantageous.
• Experience in managing or mentoring offshore or distributed team members is preferred.
• Fully remote work setup.
• Chance to develop and establish an autonomous security operations capability from the ground up.
• Responsibility for line management and development of an offshore security resource.
• Professional exposure to ISO 27001 and SOC 2 assurance frameworks.
• Work on an AI foundation model tailored for energy operations.
• Opportunity to engage across core business functions, commercial client projects, and an agentic security testing platform.
Robots & Pencils
Latitude IT Solutions | SDVOSB
Latitude IT Solutions | SDVOSB
11:11 SYSTEMS
Get handpicked remote jobs straight to your inbox weekly.