Duties would include, but are not limited to:
The role is responsible for supporting Group cybersecurity governance, assurance, remediation management, incident coordination, security reporting, and continuous SecOps improvement.The role is accountable for accurate tracking, validation, follow-up, escalation, and reporting, while technical remediation remains with the relevant system owners and the MDR/SOC provider retains responsibility for monitoring and detection operations.
- Maintaining the Group ISMS and control trackers, validating evidence, tracking agreed improvement actions, and escalating material control failures or overdue high-risk actions.
- Managing the end-to-end tracking, prioritisation, assignment, follow-up, validation, and closure reporting of vulnerability, penetration test, and external attack-surface findings.
- Coordinating internal actions arising from P1/P2 MDR alerts and cybersecurity incidents, including action logs, incident timelines, ownership, escalation, post-incident reviews, and closure tracking.
- Preparing accurate and timely cybersecurity reporting for governance and executive stakeholders, including risk trends, ageing, recurring findings, blockers, and decisions required.
- Identifying practical improvements to security detections, response playbooks, alert quality, and SecOps operating processes, and tracking agreed enhancements to completion.
- Maintaining a current view of security monitoring and coverage for critical systems across endpoint security, logging, vulnerability scanning, cloud monitoring, and external attack-surface management.
- Recording monitoring gaps, assigning accountable owners and target dates, validating closure evidence, and reporting material gaps and ageing.
- Supporting audits, control assurance reviews, third-party security assessments, and security questionnaires through complete, defensible, and traceable evidence.
- Collaborating with Group and divisional teams, vendors, and security service providers to maintain clear actions, decisions, accountability, and timely escalation.
- Protecting confidential and security-sensitive information and complying with approved cybersecurity policies, incident processes, and management instructions
- Minimum of 3 - 5 years' experience in an IT security, cybersecurity governance, assurance, vulnerability management, or incident coordination role
- Relevant degree or diploma in Information Technology, Cybersecurity, Information Security, or a related field
- Experience within a large, multi-divisional or Automotive industry environment is highly advantageous.
- Excellent communication and interpersonal skills to work with stakeholders across Group and divisional teams
- Strong knowledge of cybersecurity governance, ISMS and control assurance, risk tracking, and evidence management
- Practical knowledge of vulnerability management, penetration testing findings, remediation SLAs, approved extensions, and risk acceptance processes
- Practical understanding of MDR/SOC operations, security alert handling, incident coordination, escalation, and post-incident review processes
- Strong data analysis and reporting skills, with the ability to translate technical security information into clear, decision-useful management reporting
- Working knowledge of endpoint security, SIEM and logging, vulnerability scanning, cloud security monitoring, and external attack-surface management
- Strong analytical, problem-solving, and attention-to-detail skills to validate evidence, identify recurring weaknesses, and challenge incomplete closure
- Strong planning, project, and action-management skills to manage multiple deadlines, dependencies, escalations, and follow-ups
- Ability to work independently, exercise sound professional judgement, maintain confidentiality, and prioritise calmly during active security incidents
- Ability to collaborate constructively with internal technical teams, business stakeholders, auditors, and third-party security providers