Responsibilities
- Own and be accountable for security incidents; taking the lead in driving global remediation activities.
- Ensure simple, repeatable, manual tasks are automated within the Incident Response process.
- Ensure a "best-practice" program is in place to manage and maintain our security response procedures.
- Proactively develop and deliver new incident response capabilities, tooling, and processes.
- Develop an incident management strategy, focusing on regular reviews and exercises.
- Create and deliver tabletop and simulated exercises focusing on areas of risk identified by our Threat Intelligence team.
- Ensure the operational security process is consistently maintained across our global regions, considering different regulatory requirements and rules.
- Act as the point of contact for our global business incident management team for all security-related incidents.
- Run Post Incident Reviews and track and manage issues to delivery.
Experience and Skills Required
- Experience and strong understanding of frontline security operations.
- Experience running a vulnerability remediation program or overseeing vulnerability teams is advantageous.
- Experience managing complex security incidents at a global scale.
- Experience creating or improving incident management programs.
- Strong reporting skills and ability to tailor reports to show improvements and learnings.
- In-depth understanding of modern attack techniques and flows.
- Understanding of NIST and MITRE ATT&CK Frameworks.
- Experience in cloud environments, ideally Azure.
- Strong communication skills, especially in translating technical feedback into improvements.
- Banking or finance industry experience is desirable.
- Security Incident Management qualifications preferred, such as SANS 504.
- At least 3 years of experience in an Incident Response role.
- Experience responding to global security events.
- Experience using NIST or MITRE frameworks for defensive actions.
- Ability to explain security threats and create mitigations.
- Knowledge of IT infrastructure technologies and principles.
- Experience with vulnerability management tools like Nexpose, Qualys.
- Understanding of Networking Architecture (OSI Model).
- Analytical skills and process challenge mindset.
- Passion for cybersecurity, good time management, and organizational skills.
- Nice to have certifications: Security+, Network+, GCIA, GCIH, GCFA, GMON, GNFA, SSCP, OSCP.
Benefits
We offer a comprehensive benefits package, support your wellbeing, and promote flexible working arrangements. Our goal is to motivate and support your career development. Learn more about our work culture and opportunities at careers.fidelityinternational.
As a regulated financial organization, this role involves compliance with FCA and PRA regulations, including the application of their Conduct Rules (COCON). Training on these regulations is provided. More information can be found in the Employment Handbook.