Regional CERT Manager

Unilever

Indore District

Hybrid

INR 9,606,000 - 17,291,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Unilever in Kingston is seeking a Regional CERT Manager to lead cyber incident response across the region, combining strategic leadership with hands-on security expertise to drive resilience.

You will oversee the end-to-end incident lifecycle, coordinate major investigations, mentor IR personnel, and collaborate with SOC teams to enhance detection, containment, and remediation using SIEM, EDR/XDR, and SOAR technologies.

Qualifications

  • Minimum 8 years' experience within enterprise Security Operations Centre (SOC), Incident Response, or Cyber Defence environments, including at least 3 years in a people leadership role.
  • Experience managing and reporting through strong regulation systems like NIS2
  • Strong hands-on expertise with SIEM, EDR/XDR, SOAR, threat detection, monitoring, and incident response technologies.

Responsibilities

  • Lead regional Cyber Emergency Response Team (CERT) operations, providing both strategic direction and technical guidance for complex cyber security incidents.
  • Own and continuously improve the end-to-end Incident Management lifecycle, ensuring alignment with industry best practices and organisational security objectives.
  • Monitor, analyse, and report on key performance indicators (KPIs), metrics, and incident trends to drive continual service improvement and operational effectiveness.
  • Direct incident response activities including triage, containment, investigation, remediation, recovery, and stakeholder communications.
  • Coordinate major incident investigations with internal teams, external forensic specialists, law enforcement, and third-party partners where required.
  • Partner with Security Operations Centre (SOC) teams to enhance detection, monitoring, automation, and response capabilities through effective use of SIEM, EDR/XDR, and SOAR technologies.
  • Contribute to security operations projects, ensuring seamless integration of new technologies, processes, and use cases into the incident response framework.
  • Manage relationships with key stakeholders, vendors, and managed security service providers, establishing clear governance, accountability, and RACI models.
  • Provide leadership, coaching, and professional development to incident response personnel, fostering a high-performing and collaborative team culture.
  • Communicate complex cyber security risks, incidents, and remediation strategies effectively to technical and non-technical stakeholders, including senior leadership.

Skills

SOC operations
Incident response leadership
NIS2 compliance
SIEM/EDR/XDR/SOAR
Digital forensics
Threat intelligence
Stakeholder management

Tools

SIEM
EDR/XDR
SOAR

Job description

Regional CERT Manager

Location: Sunlight House, Kingston - Full time

Hybrid Working: 3 days per week in the office

About Unilever

Unilever is one of the world’s leading suppliers of Home and Personal Care products with sales in over 190 countries and reaching 2 billion consumers a day. Unilever has more than 400 brands found in homes around the world, including Dove, Tresemme, Lynx, Persil, Domestos and Vaseline.

Faced with the challenge of climate change and the need for human development, we want to move towards a world where everyone can live well and within the natural limits of the planet. That’s why our purpose is ‘to make sustainable living commonplace’

Role Overview

The Regional CERT Manager is responsible for leading cyber incident response operations across the region, ensuring effective detection, containment, investigation, remediation, and recovery from security incidents. This role combines strategic leadership with hands-on technical expertise to drive operational excellence, strengthen security capabilities, and enhance organisational cyber resilience.

Key Responsibilities
  • Lead regional Cyber Emergency Response Team (CERT) operations, providing both strategic direction and technical guidance for complex cyber security incidents.
  • Own and continuously improve the end-to-end Incident Management lifecycle, ensuring alignment with industry best practices and organisational security objectives.
  • Monitor, analyse, and report on key performance indicators (KPIs), metrics, and incident trends to drive continual service improvement and operational effectiveness.
  • Direct incident response activities including triage, containment, investigation, remediation, recovery, and stakeholder communications.
  • Coordinate major incident investigations with internal teams, external forensic specialists, law enforcement, and third-party partners where required.
  • Partner with Security Operations Centre (SOC) teams to enhance detection, monitoring, automation, and response capabilities through effective use of SIEM, EDR/XDR, and SOAR technologies.
  • Contribute to security operations projects, ensuring seamless integration of new technologies, processes, and use cases into the incident response framework.
  • Manage relationships with key stakeholders, vendors, and managed security service providers, establishing clear governance, accountability, and RACI models.
  • Provide leadership, coaching, and professional development to incident response personnel, fostering a high-performing and collaborative team culture.
  • Communicate complex cyber security risks, incidents, and remediation strategies effectively to technical and non-technical stakeholders, including senior leadership.

Essential Skills

  • Minimum 8 years' experience within enterprise Security Operations Centre (SOC), Incident Response, or Cyber Defence environments, including at least 3 years in a people leadership role.
  • Experience managing and reporting through strong regulation systems like NIS2
  • Strong hands-on expertise with SIEM, EDR/XDR, SOAR, threat detection, monitoring, and incident response technologies.
  • Practical experience in malware analysis, digital forensics, threat hunting, and network security investigations.
  • Proven ability to lead and coordinate major cyber incident response activities within complex global organisations.
  • Strong understanding of cyber security operations, threat intelligence, attack methodologies, and adversary techniques.
  • Excellent stakeholder management, communication, and influencing skills.
  • High levels of integrity, professionalism, and accountability.

Desirable Skills

  • Experience partnering with Legal, Compliance, Privacy, Risk, and Business Continuity teams during significant cyber incidents.
  • Working knowledge of scripting and automation tools such as Python, PowerShell, or Perl.
  • Knowledge of recognised incident response frameworks and methodologies, including NIST 800-61, ISO 27035, and MITRE ATT&CK.
  • Relevant GIAC certifications such as GCFE, GCFA, GREM, GNFA, GCIA, or GMON.
  • Cloud security certifications and experience across Azure, AWS, and/or Google Cloud Platform (GCP).
  • Experience driving security automation and orchestration initiatives to improve incident response efficiency.

What we offer

Whilst the role is advertised on a full-time basis, we would be happy to discuss possible flexible working options and what this may look like for you. We strive to achieve a family-friendly and inclusive workplace and to, above all, create possibilities for all.

Diversity at Unilever is about inclusion, embracing differences, creating possibilities and growing together for better business performance. We embrace diversity in our workforce. This means giving full and fair consideration to all applicants and continuing development of all employees regardless of age, disability, gender reassignment, race, religion or belief, sex, sexual orientation, marriage and civil partnership, and pregnancy and maternity. We are also more than happy to provide reasonable adjustments during our application and interview process to enable you to be present your best self.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Assistant manager - Vulnerability Management
Assistant manager - Vulnerability Management

Unilever • Bengaluru

On-site
INR 300,000 - 600,000
L5 Lead Security Operations Centre Specialist
L5 Lead Security Operations Centre Specialist

Deliveroo • Hyderabad

On-site
INR 2,000,000 - 3,000,000
Healthcare benefits
Parental leave
Generous annual leave
+1
Global Head – Cyber Resilience
Global Head – Cyber Resilience

Cyber UK • Bengaluru

On-site
INR 10,256,000 - 14,103,000
Supply Chain Analyst - Transportation
Supply Chain Analyst - Transportation

6267 Magnum ICC IN Service Co • Pune District

On-site
INR 900,000 - 1,500,000
Market-competitive pay
Flexible working arrangements
Health, wellbeing and life outside of—
+2
Supply Chain Analyst
Supply Chain Analyst

6267 Magnum ICC IN Service Co • Pune District

On-site
INR 900,000 - 1,500,000
Flexible working
Health & wellbeing support
Learning & development
+1
Data Scientist
Data Scientist

Unilever • Bengaluru

On-site
INR 1,500,000 - 2,100,000
Sr. Key Account Executive
Sr. Key Account Executive

Unilever • Mumbai

On-site
INR 600,000 - 900,000
Principal Security & DevOps Engineer
Principal Security & DevOps Engineer

Integrity360 • India

Hybrid
INR 4,000,000 - 7,000,000
Senior Manager - GBS Supplier Operations Transformation
Senior Manager - GBS Supplier Operations Transformation

Unilever • Bengaluru

On-site
INR 3,000,000 - 4,200,000
SIEM Content Development Specialist - Cyber Defence - VOIS
SIEM Content Development Specialist - Cyber Defence - VOIS

VOIS • Maharashtra

On-site
INR 900,000 - 1,500,000