Cyber Security Manager - Hybrid
We are seeking an experienced Cyber Security Manager to lead and strengthen the cyber security function within a large public sector organisation, protecting essential services, client data and business-critical information. This is a hands-on technical leadership role, combining day-to-day security operations with strategic leadership. You will work directly with security technologies, investigate threats and incidents, improve detection and response capabilities, and work closely with technical teams and senior stakeholders. The role is hybrid, with 3 days per week in the organisation’s offices in North West London.
A key focus will be the extensive practical use and optimisation of the Microsoft Security portfolio particularly: Microsoft Sentinel, Microsoft Defender, Entra ID, Intune, Purview and Copilot for Security. You will be expected to work hands-on with these technologies, rather than simply manage their use. This will include security monitoring, alert investigation, threat hunting, detection engineering, vulnerability management and security automation.
Key Responsibilities
Lead on day-to-day cyber security operations and continuously improve the organisation’s SOC capability. Investigate and manage security incidents from initial triage through containment, remediation and recovery. Develop and improve threat detection, monitoring and threat-hunting capabilities using Sentinel and Defender. Identify vulnerabilities and security weaknesses and work with technical teams on remediation. Develop incident response playbooks, automation and security processes. Support security architecture and technical design reviews. Provide cyber security leadership and advice to senior management. Manage cyber risk, governance, policies and compliance across the technology estate. Ensure alignment with NCSC guidance, PSN, PCI-DSS, GDPR, Cyber Essentials Plus and recognised security frameworks.
Key skills required
- Proven experience leading or improving a SOC or security operations function.
- Extensive hands-on experience with Microsoft Sentinel and the Defender suite.
- Strong practical experience with Sentinel detection, analytics, alerting and incident investigation.
- Extensive experience investigating and responding to threats using Microsoft Defender.
- Good working knowledge of Entra ID, Intune and Purview, with awareness of Copilot for Security.
- Strong experience in incident response, threat hunting, detection engineering and vulnerability management.
- Strong understanding of modern cyber threats and attack techniques.
- Excellent leadership and stakeholder management skills.
- Ability to operate effectively at both technical and strategic levels, communicating complex security issues clearly to senior and non-technical audiences.
- Strong knowledge of relevant cyber security frameworks, governance and compliance requirements.
This is a genuine opportunity to shape the cyber security strategy for a large, diverse organisation delivering essential services to the local community. The role is offered with a salary range of between £ 70,000 - £92,000p.a. dependant on experience