cover image
FWD View

Security Operations Lead

On site

London, United kingdom

Senior

Freelance

17-11-2025

Share this job:

Skills

Communication Leadership Python Incident Response Forensics DevOps Machine Learning Programming

Job Specifications

Interim Information Security Operations Lead (Short-Term Contract) – London

Start date: Within 2 weeks

Location: London

Contract type: Short-term / Interim

Overview

A leading global investment and technology-driven organisation is seeking an Interim Information Security Operations Lead to provide hands-on leadership of its Security Operations Centre (SOC) during a period of transition. This role sits within the senior information security leadership team and plays a critical part in safeguarding the confidentiality, integrity, and availability of the firm’s systems, data, and digital infrastructure.

The position is well-suited to a senior security operations specialist comfortable operating in complex, hybrid environments and capable of rapidly stepping into an escalation, investigation, and strategy-shaping capacity.

Key Responsibilities

Security Operations Leadership

Own and oversee the firm’s SOC, delivered through an MSSP model.
Serve as the escalation point for security incidents, occasionally requiring out-of-hours response.
Lead and guide threat hunting activities, contributing directly where required.
Act as the subject matter expert for all Security Operations–related matters.

Capability Build & Management

Manage third-party SOC providers and develop enhanced SOC capabilities as needed, including managed incident response.
Define, build, and operate the firm’s threat intelligence capability, including participation in external intelligence communities.
Define, build, and operate the firm’s digital forensics capability.
Develop and maintain SOC-related SLOs and SLAs.
Drive security automation opportunities across the organisation, exploring innovative approaches.

Incident Response & Forensics

Provide leadership during security events, coordinating investigations end-to-end.
Conduct and oversee digital forensics activities.
Produce high-quality incident documentation suitable for senior, non-technical stakeholders.

Person Specification

Required Experience

Leadership experience within a Security Operations environment.
10+ years hands-on experience in cybersecurity roles.
Background in financial services or technology-driven organisations.
Experience operating in hybrid cloud / on-prem environments.
Strong experience with at least one major cloud service provider.
Exposure to regulated environments.
Strong verbal and written communication skills, including producing reports for senior stakeholders.

Desirable Experience

Experience managing MSSP or outsourced SOC relationships.
Engineering or DevOps mindset.
Professional security certifications.
Experience producing threat intelligence and incident reporting materials.

Technical Skills

Required

Hands-on experience with SIEM, SOAR, and EDR platforms.
Experience creating and operating SOC playbooks.
Comfortable working with some legacy technology components.
Experience onboarding logs and engineering detections.
End-to-end incident handling.
Digital forensics experience (hands-on and managerial).
Ability to operate independently while contributing to a senior leadership team.

Desirable

Knowledge of industry frameworks (MITRE ATT&CK, CIS, NIST, ISO, etc.).
Experience using machine learning techniques in SOC automation.
Threat modelling / attack-path mapping skills.
Knowledge of a programming language (ideally Python) and familiarity with serverless or containerised deployment environments.

About the Company

FWD View is a leading data & technology consultancy for the financial services industry that partners with you from strategy to implementation, focused on unblocking the data bottlenecks that hamper innovation & transformation. We focus on the business outcome and bring leading expertise across core areas such as: Data Virtualisation, Data Governance, Data Protection, Data Cataloguing, Analytics and Data Products. We merged with Nagarro PLC in October '24, bringing 20,000+ colleagues and a truly global reach that means we ca... Know more