Security Operations and Engineering Manager
The Law Society
About the Organisation
Law Society represents solicitors in England and Wales. From negotiating with and lobbying the profession's regulators, government, and others, to offering training and advice, we're here to help, protect, and promote solicitors across England and Wales. An exciting opportunity has arisen to recruit for a role at the heart of the Law Society's campaigning and political influencing activity.
The Law Society is the independent professional body for over 200,000 solicitors in England and Wales. A year into the new government, there is a significant opportunity to influence the political debate, drive important issues such as access to justice, the rule of law, and a thriving legal business sector up the agenda, and influence policy on behalf of our members.
About the role
The Security Operations and Engineering Manager is responsible for leading The Law Society’s cyber security operations capability, ensuring effective protection of the organisation’s systems, data, and services. Reporting into the Head of Cyber Security, you will oversee security operations, incident response, security engineering, vulnerability management, and the performance of outsourced security partners. Working closely with internal Technology teams and third-party providers, you will drive continuous improvement across security controls, detection capabilities, and operational processes, ensuring cyber risks are managed effectively and aligned with business objectives.
Responsibilities
Core Duties:
- Own and improve the security teams’ operational capability by managing outsourced security services, ensuring security alerts and escalations are fully managed to resolution, validating incident severity and impact and ensure incident response processes are defined and followed.
- Manage the outsourced SOC service by defining operational requirements and improvements, monitoring SLA and KPI performance and creating monthly operational reporting.
- Lead the design, implementation and continuous improvement of the security controls for Identity, cloud, endpoint, email and data.
- Lead technical incident responses by creating and maintaining incident playbooks, managing technical investigation teams (internal and external), engaging forensic partners and conducting post incident reviews to ensure remediation actions are completed.
- Own the continuous improvement of detection capabilities by working with internal and external teams to reduce false positives and improve early detection.
- Lead technical exposure management by reviewing vulnerabilities, reviewing remediation, and tracking risk acceptance.
- Lead and continually develop the operational effectiveness of the security platforms implemented.
- Ensure technical assurance and security by design is adopted for all new projects and solutions.
- Produce meaningful security operational reporting to include detection, platform health, Incidents and overall maturity.
- Manage and develop the security team to provide a great service to its customers.
- Effectively collaborate with internal teams in relation to cybersecurity audits, including the resolution of outstanding actions.
- Manage the creation and regular updating of security policies.
Skills, Competencies, Experience & Attributes
Knowledge, Skills & Attributes:
- Strong experience of managing and leading a team
- Strong skills in Microsoft Security platforms including Defender, Sentinel, Entra ID, Purview and Intune
- Strong understanding of mail filtering technologies
- Experience designing and implementing zero trust controls
- Strong skills in detection engineering and SIEM tuning
- Strong skills in cloud and identity security
- Experience with vulnerability management
- Experience in incident response leadership
- Experience with threat intelligence applications
- Excellent understanding of security frameworks (NIST CSF, ISO27001 and Cyber Essentials)
- Strong stakeholder and supplier management experience
- Coaching and mentoring skills
- Microsoft Certified Cyber Security Architect Expert (SC-100)
- Microsoft Certified Security Operations Analyst (SC-200)
- ISC2 CISSP
- ISACA CISM
- SANS Institute GIAC certification
Compensation & Benefits
- 3% flex fund after 3 months, plus comprehensive benefits
- Generous flexible benefits package
- A friendly working environment and the opportunity to develop your career within a professional organisation.
Working locations
- Hybrid model, working in the London office and remotely
How to apply
- Apply to our website
- Please note: if you are an internal applicant, the Pay Policy will apply.
Policies
This is an excellent opportunity to work with contemporary thinkers in a progressive membership organisation. The successful candidate will join a strong brand with a reputation for excellence and legal expertise, committed to promoting equality, diversity and inclusion, and a culture of trust, clarity, excellence and respect. The Law Society represents solicitors in England and Wales. From negotiating with and lobbying the profession's regulators, government and other decision makers, to offering training and advice, we're here to help, protect and promote solicitors.
The job vacancy information provided here is from third-parties and the AAE can not guarantee the accuracy of the information.