Cyber Security Operations Advisory, Manager/Senior Manager, Cyber Risk, London/Reading/Bristol

Deloitte ,
London, Greater London
Salary: £20,000 - £29,999, £30,000 - £39,999, £40,000 - £49,999, £50,000 - £59,999

Overview

The Opportunity Cyber Risk & Security. Everybody's talking about it. Every major corporation is concerned by it. The Government is investing £1.9 billion in tackling it. We're shaping strategies and transforming technology to minimise it and we need you to join us. You'll build strong relationships within a Cyber and Resilience practice with some 300 extremely talented individuals. Our team brings together people who graduated in everything from Philosophy to Law, Maths and Computer Science. Join them and you will operate at the cutting edge, enjoying the kind of professional development that will set your potential free. We are proud to offer flexible working arrangements which allow our people to choose the most suitable working arrangement that works for them. Whether this is working 4 days per week, taking the summer months off work, or more flexibility around your working pattern, we consider both formal and informal working arrangements that allow our people and our clients the best outcome. Your Role Working as a Security Operations Advisor you will be supporting clients across industry develop their cyber security operational capabilities in a rapidly changing and evolving environment. Providing industry-leading insight, you will assess their security operations across a variety of capability areas and provide recommendations for remedial activities, identify areas for improvement, work alongside operational teams to deliver capability uplift and provide clear and concise communications to senior security stakeholders. Responsibilities: Assess customers Cyber Security Operations maturity, across People, Process, Technology and Data Perform capability gap analysis and assist in definition of future solutions at an operating model, functional and logical architecture level Develop capability delivery strategies/plans/roadmaps Advise within Security Operations on areas of improvement Manage the delivery of projects Coordinate resources from within both Deloitte and the customer's business to fulfil requirements Determine root cause of operational issues, both through lessons learnt from incidents, or by the analysis of information/data gathered post-assessment Maintain and employ a strong understanding of advanced threats, continuous vulnerability assessment, incident detection, response and mitigation strategies used in Cybersecurity operations Create custom approaches to help clients mitigate highly dynamic threats to the enterprise based upon credible threat intelligence obtained from multiple sources Your work, your choice At Deloitte we believe the best impact is the value we add, not the hours we sit at our desk. We carefully consider agile ways of working, both formal and informal, that allow for the best impact for our people and our clients. Please speak to your recruiter about the working pattern that works best for you. Location - London or Reading Work Pattern - This is a Permanent opportunity Your Professional Experience Essential: Proven leadership / managerial experience in Security Operations Prior operational experience in the majority of common capabilities found within a Security Operation Centre (expertise in all not mandatory): Digital Forensics, Incident Response & Management, Vulnerability Management, Attack Surface Reduction, SDLC, Pen Test, Control Efficacy Testing Threat Intelligence, Modelling & Hunting, Detection, Monitoring, Data Analytics SOC Architecture & Engineering, content lifecycle management Project Management experience, preferably focussing on cyber security improvement, capability development or transformation In-depth knowledge of control measures commonly deployed to networks to aid cyber security Strong presentational and communication skills, being able to articulate to a variety of stakeholder groups, both technical and non-technical information, and translate between them Passion for information security and service excellence that matches our own Highly developed organisational skills, both as a leader and as part of a larger team A strong analytical and problem-solving mind-set, being able to spot issues and propose prioritised remedial action Desirable: Hold SC/DV clearance or willingness to undertake security vetting an advantage Hands on delivery experience in one/multiple Security Operation capability areas Familiarity with threat modelling and attack path mapping Experience in the development of security use cases Red Team/Blue Team/Purple Team/Pen-Testing Strong interest in the development of new and emerging security technologies Experience in procurement of security tooling Knowledge of security technologies/vendors and the key differences between them Knowledge of the Mitre Att&ck framework Candidate must have at least: BSc in Computer Science, Engineering, Information Science or a related discipline (or equivalent experience) Ideally at least 5 years' experience in Cyber Security Operations Candidate should have one or more of the following: GIAC Certified Forensic Analyst (GCFA) or Crest Host Intrusion Analyst (CCHIA) GIAC or Crest Intrusion Analyst (GCIA, CPIA, CRIA, CCNIA) GIAC or Crest certified Malware Reverse Engineer (GREM, CCMRE) GIAC certified Continuous Monitoring and Security Operations (GMON) GIAC certified Advanced Network Forensics (GNFA) CISSP CISM ISO27001 Lead Implementer/Auditor ITIL Foundation Your service line: Risk Advisory In Risk Advisory, our thinking and actions give clients, our people and society the confidence to succeed responsibly in a rapidly changing world. We don't just work with our clients to manage risk, we help them understand and grab the opportunities it presents too, helping them gain a competitive advantage. Our expertise and industry knowledge run deep here. At Deloitte, you'll find yourself working with some of the most inspiring and experienced colleagues and with clients who trust you to lead the way to smart choices, better control frameworks, and new systems, including bespoke solutions that have a direct impact on their bottom line. Personal independence Regulation and controls are standard practice in our industry and Deloitte is no exception. These controls provide important legal protection for both you and the firm. We are subject to a number of audit regulations, one of which requires that certain colleagues abide by specific personal independence constraints. This can mean that you and your "Immediate Family Members" are not permitted to hold certain financial interests (shares, funds, bonds etc.) with audit clients of the firm. The recruitment team will provide further detail as you progress through the recruitment process. About Deloitte Our Purpose & Strategy To make an impact that matters for our clients, our people and society - defines who we are and what we stand for. Our purpose provides the foundation for our strategy and our aspiration to be the undisputed leader in professional services: this is not about size, it's about being the first choice. The first choice for the largest and most influential clients, and the first choice for the best talent. What do we do? Deloitte offers global integrated professional services that include Audit & Assurance, Consulting, Financial Advisory, Legal, Risk Advisory and Tax Consulting. Our approach combines intellectual leadership, industrial expertise, insight, consulting & problem solving capabilities whatever the role, technology revolutions and innovation from multiple disciplines to help our clients excel anywhere in the world. Beyond the UK: Deloitte North and South Europe The UK is part of Deloitte North and South Europe (NSE), the second largest member firm in the Deloitte network. Deloitte NSE combines operations in Belgium, Greece, Ireland, Italy, Malta, the Netherlands, the Nordics (Denmark, Finland, Iceland, Norway and Sweden), Switzerland and the UK. Deloitte NSE brings together 2,500 partners and over 40,000 people, combining our unmatched breadth and depth of capabilities in audit and assurance, consulting, financial advisory, risk advisory, and tax and legal across the region. Being part of Deloitte NSE supports our aspiration to be the undisputed leader in professional services and will create more opportunity and growth for our people. What do we value? What brings us all together at Deloitte? It's how we approach the thousands of decisions we make every day. How we behave, our beliefs and our attitudes. In other words: our values. Whatever we do, wherever we are in the world, we lead the way, serve with integrity, take care of each other, foster inclusion, and collaborate for maximum impact. These five shared values lead every decision we make and action we take, guiding us to deliver impact how and where it matters most. Being a Leader at Deloitte Cultural fit and purpose-led leadership is crucial for Deloitte. Our leaders always set the example and inspire their colleagues. They make quality time for people and take an interest in them. They know what matters to people - both inside and outside work - and value them as individuals; always finding opportunities to develop them while showing respect and appreciation. We expect colleagues at all levels to embrace and live our purpose and our leadership culture by challenging themselves to identify issues that are most important for our clients, our people, and for society and make an impact that matters. We know leadership comes in all shapes and sizes, but our Leadership Charter helps all of our people understand what we're looking for: We live our purpose: we act as a role model, embracing and living our purpose and values, and recognising others for the impact they make We develop talent: we develop high-performing people and teams through challenging and meaningful opportunities We drive performance: we deliver exceptional client service; maximise results and drive high performance from people while fostering collaboration across businesses and borders We believe positive influence can make an impact that matters: we influence clients, teams, and individuals positively, leading by example and establishing confident relationships with increasingly senior people We move, together, towards a strategic direction: we understand key objectives for clients and Deloitte, aligning people to objectives and setting priorities and direction. SLRSKA BACYBR Deloitte LLP is a limited liability partnership registered in England and Wales with registered number OC303675 and its registered office at 1 New Street Square, London EC4A 3HQ, United Kingdom. Deloitte LLP is the United Kingdom affiliate of Deloitte NSE LLP, a member firm of Deloitte Touche Tohmatsu Limited, a UK private company limited by guarantee ("DTTL"). DTTL and each of its member firms are legally separate and independent entities. DTTL and Deloitte NSE LLP do not provide services to clients. Please see www.deloitte.com/about to learn more about our global network of member firms. © 2020 Deloitte LLP. All rights reserved. Requisition code: 173382