- Company Name
- Trainline
- Job Title
- Security Operations Manager
- Job Description
-
**Job Title**: Security Operations Manager
**Role Summary**
Lead the security operations function for a high‑traffic digital platform, managing a team of analysts and engineers, overseeing threat intelligence, incident response, and security tool pipelines. Drive continuous improvement of security posture, automate detection and response workflows, and partner with engineering, platform, and cloud teams to mitigate vulnerabilities and advocate security culture across the organization.
**Expectations**
- Manage, mentor, and grow a multidisciplinary security operations team.
- Deliver secure, resilient systems for a large global ticket‑sales platform.
- Maintain alignment with industry standards (OWASP, PCI DSS, ISO 27001, GDPR).
- Communicate effectively with stakeholders and operational teams.
**Key Responsibilities**
- Lead the security operations team, setting priorities and coaching junior staff.
- Develop, maintain, and tune SIEM, EDR, WAF, and vulnerability‑scanning toolchains.
- Automate detection, triage, and remediation workflows to increase efficiency.
- Conduct threat intelligence analysis and share insights with product and engineering teams.
- Coordinate vulnerability assessment, remediation planning, and verification of fixes.
- Act as primary liaison between security operations, incident management, and cross‑functional partners.
- Produce reports, dashboards, and metrics to communicate security status and progress.
- Design and deliver security awareness initiatives across engineering and business units.
- Monitor emerging threats, vulnerabilities, and best practices; recommend process and tool enhancements.
**Required Skills**
- Leadership and people‑management experience (teams of analysts/engineers).
- Proven incident‑management and threat‑intelligence capability.
- In‑depth knowledge of SIEM, EDR, WAF, and vulnerability‑scanning tools.
- Strong understanding of risk assessment, vulnerability remediation, and secure‑coding practices.
- Familiarity with OWASP, PCI DSS, ISO 27001, GDPR, and related regulatory frameworks.
- Excellent written and verbal communication; able to explain security concepts to non‑technical stakeholders.
- Proficiency in automating security workflows (scripts, playbooks, SOAR).
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field.
- Professional security certifications such as CISSP, CISM, CEH, or equivalent. (Preferred)