Manager - Cyber Defence Strategy
Core
Own enterprise cybersecurity strategy, operational resilience, and risk posture representation to CTO and Board.
Role type
Manager, Cyber Defence Strategy and Operations
Builds
Multi-year security strategy, target-state architecture, specialist sub-teams (security architecture, vulnerability management, cyber GRC), Zero Trust programme, AI security posture.
Domain
Cybersecurity, Cloud Security, AI Security, Regulatory Compliance
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Cybersecurity strategy, Threat intelligence, Vulnerability management, Security architecture, Zero Trust implementation, Incident command, Regulatory compliance (CMMC, FedRAMP, ISO 27001, NIST CSF), Cloud security (Azure), Identity and access management, AI security governance
Preferred skills
CMMC Registered Practitioner, Microsoft SC-100, AZ-500
Technologies
Azure, Microsoft Defender, Microsoft Sentinel, Entra ID, Microsoft Purview
Responsibilities
Develop multi-year cybersecurity strategy and target-state security architecture; Represent cyber risk posture to CTO, IS Leadership Team, and Board Risk Committee; Build specialist sub-teams to relieve SOC and restore follow-the-sun coverage; Own enterprise vulnerability-management programme; Command incident response for significant events; Define and govern Zero Trust programme; Own AI security posture for agentic systems and shadow AI; Govern CMMC Level 2 and FedRAMP readiness.
Seniority
Manager, strategic and operational leadership