Cyber Engineering and Automation Manager

IAG Transform

England

On-site

GBP 60,000 - 80,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

A leading airline group in the UK is looking for a Cyber Engineering and Automation Manager to define and implement security operations strategies. The role requires expertise in automation tools, SOC processes, and collaboration with external vendors. Candidates should possess strong problem-solving and analytical skills, along with scripting experience in languages like Python and PowerShell. This full-time position offers an opportunity to enhance cybersecurity measures within a prestigious organization.

Qualifications

  • Strong knowledge of SOC processes including incident response and threat detection.
  • Ability to design and implement automation solutions for security operations.
  • Experience in creating automated response playbooks.

Responsibilities

  • Define and implement operating model for collaboration between SOC and support functions.
  • Work with MSSP vendor to outline operational procedures and SLAs.
  • Design automation solutions to streamline SOC processes.

Skills

Proficiency in automation tools
Expertise in scripting languages
Strong knowledge of SOC processes
Experience with SIEM platforms
Ability to integrate and automate security tools
Strong problem-solving and analytical skills
Experience in developing automated workflows and playbooks
Knowledge of security frameworks
Strong collaboration and communication skills
Experience with log management and event correlation automation

Tools

Simulated Security Automation Response (SOAR) platforms
Splunk
Ansible

Job description

Cyber Engineering and Automation Manager

Join to apply for the Cyber Engineering and Automation Manager role at IAG Transform.

Looking for a challenge in one of the world’s leading airline groups – a dual FTSE 100 and IBEX 35 listed company that combines airlines in Ireland, the UK and Spain with key non-airline businesses, enhancing their presence in the aviation market.

Purpose of the Role

This is a high-impact greenfield role ideal for a strategic and hands‑on cybersecurity professional. As a senior manager within the Group SOC, you will define and implement the end‑to‑end operating model for collaboration between the central Security Operations Center (SOC) and supporting functions. You will formulate core processes, define handover areas with the core SOC, and establish the technology stack and deliverables necessary to enable scalable and effective security operations encompassing cyber threat intelligence and cyber incident response.

A key early responsibility will be contributing to the onboarding and transition of a new Managed Security Services Provider (MSSP). You will work closely with the chosen vendor to define operational procedures, service delivery models, key performance indicators (KPIs), and service level agreements (SLAs). Building a strong, collaborative relationship with the MSSP will be a critical short‑term goal.

In the longer term, this role will take ownership of developing the business case for building and strengthening internal capabilities – laying the foundation for a future in‑house team and transitioning key functions where strategically appropriate. You will also be expected to build trusted relationships with external stakeholders across operating companies to ensure SOC services are aligned with business risk and operational priorities.

Accountabilities
  • Automation of SOC Processes
    • Design and implement automation solutions to streamline repetitive tasks such as alert triaging, incident response, and reporting.
  • Platform Support and Tool Integration
    • Oversee and complete transition of SIEM platform support from incumbent to new supplier, resolving any transition blockers.
    • After transition, be responsible for overall BAU platform maintenance of Splunk (SIEM).
    • Creation and maintenance of the SOC KnowledgeBase stores.
    • Integrate various security tools (SIEM, SOAR, firewalls, etc.) to improve data flow and response coordination.
  • Optimization of Workflows
    • Enhance and optimize SOC workflows for improved efficiency and reduced manual effort.
  • Development of Playbooks
    • Create automated response playbooks for common security incidents, enabling faster and more consistent incident handling.
  • Collaboration with Security Teams
    • Work closely with SOC analysts and engineers to identify areas for automation and provide technical solutions.
  • Monitoring and Maintenance
    • Ensure continuous operation and performance of automation tools, resolving issues as they arise.
Required Skills, Qualifications & Experience
  • Proficiency in automation tools (e.g., SOAR platforms, Ansible, Phantom).
  • Expertise in scripting languages (e.g., Python, PowerShell, Bash).
  • Strong knowledge of SOC processes (incident response, threat detection).
  • Experience with SIEM platforms (e.g., Splunk).
  • Ability to integrate and automate security tools.
  • Strong problem‑solving and analytical skills.
  • Experience in developing automated workflows and playbooks.
  • Knowledge of security frameworks (e.g., MITRE ATT&CK, NIST).
  • Strong collaboration and communication skills.
  • Experience with log management and event correlation automation.
Seniority Level

Mid‑Senior level

Employment Type

Full‑time

Job Function

Information Technology

Industry

Airlines and Aviation

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

2nd/3rd line Cyber Defence Engineer
2nd/3rd line Cyber Defence Engineer

Airbus • Newport

On-site
GBP 55,000 - 90,000
25 days holiday
Flexi time
Option to purchase holidays
+5
Cyber Security Analyst L1
Cyber Security Analyst L1

Airbus Protect • Newport

On-site
GBP 25,000 - 35,000
25 days holiday
Generous pension scheme
Share options
+2
AI Security (SOC) Engineer
AI Security (SOC) Engineer

Source Technology Limited • Greater London

Hybrid
GBP 110,000 - 150,000
Senior Cyber Engineering & Automation Lead
Senior Cyber Engineering & Automation Lead

IAG Transform • England

On-site
GBP 60,000 - 80,000
Cyber Defence Analyst L2
Cyber Defence Analyst L2

Cyber UK • Newport

On-site
GBP 35,000 - 50,000
Exciting development opportunities
Attractive company pension scheme
Airbus Group success share scheme
+1
Senior SOC Manager – Managed Cyber Defence
Senior SOC Manager – Managed Cyber Defence

SwiftCruit • Glasgow

Hybrid
GBP 90,000 - 130,000
Private medical cover
Flexible working arrangement
Volunteer days
+1
AI Security SOC Engineer - SGI
AI Security SOC Engineer - SGI

eFinancialCareers • Greater London

Hybrid
GBP 90,000 - 140,000
Information Security Analyst
Information Security Analyst

Flexjet • Farnborough

On-site
GBP 65,000 - 90,000
Senior Security Operation Centre (SOC) Analyst
Senior Security Operation Centre (SOC) Analyst

Civil Aviation Authority • England

Hybrid
GBP 45,000 - 53,000
Flexible & hybrid working arrangements
28 days annual leave + public holidays
Generous pension scheme (up to 12% employer contribution)
+2
Cyber Delivery Assurance Lead
Cyber Delivery Assurance Lead

British Airways • Greater London

On-site
GBP 90,000 - 130,000