Cyber Defence Operations Director

Cambridge
8 months ago
Applications closed

Related Jobs

View all jobs

Technology Engineer / Cyber Security / IT Network Infrastructure

Director / Head of SOC - Greenfield SOC (Gov.)

Senior SOC Analyst

Vulnerability Analyst

Operations Manager

Operations Manager

Job overview:

This is an opportunity to lead global Security Operations focused on safeguarding Arm’s digital environment through exemplary threat detection, incident response, and vulnerability management capabilities.

This senior role, reporting directly into the CISO is accountable for driving the strategic direction of Arm’s Detect & Response function, delivering outstanding performance and ensuring we are resilient against an evolving threat landscape! In addition to operations, you will lead cyber crisis management, C-Suite level stress testing, team development, and top-level cybersecurity thought leadership.

 

Responsibilities:

Own and deliver the strategic roadmap for cyber incident and vulnerability detection & response in line with Arm’s threat profile and business objectives. You will guide and develop a high-performing team, driven with context of emerging threats and strategic objectives.

Ensure Threat Intelligence, Proactive Security Testing and Security Analytics functions develop under your leadership to deliver maximum context into the operational team, as well as enabling real time risk validation and actionable security insights.

Continue delivering automation and detection as code for security operations, enabling increased scalability and efficiency. Whilst maximising data insights and intelligence to inform operational and strategic decision making.

Drive collaboration across Arm and external vendors as we embed a shared understanding to deliver our cyber strategies. Provide strategic input and collaborate with IT, Enterprise Security, and business leadership to inform security roadmaps, governance, and operating models.

Maintain a balanced, comprehensive framework of processes, governance, and performance metrics (e.g., SLAs) for operations. Coordinate security testing, audit, governance, and operational reporting.

Champion a culture of continuous learning, training, and professional development across the team, including handling wellbeing and performance for an agile, high-impact environment!

Maintain awareness of internal and external technology development, particularly across emerging AI use, enabling continuous improvement and innovation.

Required skills and experience:

10+ years of experience in a security role focused on the entire threat lifecycle with demonstrated experience designing and implementing Security Operations strategies within a sophisticated enterprise and disparate technological landscape. Demonstrated leadership in high-stress, fast paced operational environments.

Excellent communication skills and ability to convey complex security issues to senior leadership, including the executive committee. Deep understanding of enterprise security domains and how they can be used as a force multiplier for a technology business strategy, with the ability to influence at all levels.

Extensive people management experience, fostering a culture focused on mentoring, wellbeing and trust.

 

“Nice to have” skills & experience:

BSc or higher or equivalent experience within a relevant security-related subject.

 

Certifications such as CISSP, GCIH, GIAC, GCFE, GREM, or SANS certifications. Solid grasp of ITIL and familiarity with project management methodologies.

 

Experience leading security transformation initiatives, as well as handling third-party vendors and external security partnerships for large scale organisations with a considerable global digital footprint.

Accommodations at Arm

At Arm, we want our people to Do Great Things. If you need support or an accommodation to Be Your Brilliant Self during the recruitment process, please email . To note, by sending us the requested information, you consent to its use by Arm to arrange for appropriate accommodations. All accommodation requests will be treated with confidentiality, and information concerning these requests will only be disclosed as necessary to provide the accommodation. Although this is not an exhaustive list, examples of support include breaks between interviews, having documents read aloud or office accessibility. Please email us about anything we can do to accommodate you during the recruitment process.

Hybrid Working at Arm

Arm’s approach to hybrid working is designed to create a working environment that supports both high performance and personal wellbeing. We believe in bringing people together face to face to enable us to work at pace, whilst recognizing the value of flexibility. Within that framework, we empower groups/teams to determine their own hybrid working patterns, depending on the work and the team’s needs. Details of what this means for each role will be shared upon application. In some cases, the flexibility we can offer is limited by local legal, regulatory, tax, or other considerations, and where this is the case, we will collaborate with you to find the best solution. Please talk to us to find out more about what this could look like for you.

Equal Opportunities at Arm

Arm is an equal opportunity employer, committed to providing an environment of mutual respect where equal opportunities are available to all applicants and colleagues. We are a diverse organization of dedicated and innovative individuals, and don’t discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Cyber Security Jobs for Career Switchers in Their 30s, 40s & 50s (UK Reality Check)

If you’re thinking about switching into cyber security in your 30s, 40s or 50s, you’re in good company. Across the UK, organisations of all sizes are hiring people from diverse backgrounds to protect systems, data & customers. But with hype around “hackers” & quick-win courses, it’s hard to separate reality from fiction. This guide gives you a UK reality check: which roles genuinely exist, what employers actually want, how training really works, what to expect on salary & progression & whether age matters. Whether you come from finance, project management, operations, law, HR or customer service, there is a credible route into cyber security if you approach it strategically.

How to Write a Cyber Security Job Ad That Attracts the Right People

Cyber security is now a board-level priority for organisations across the UK. From financial services and healthcare to critical infrastructure, SaaS platforms and the public sector, demand for skilled cyber security professionals continues to grow. Yet despite this demand, many employers struggle to attract the right candidates. Cyber security job adverts often generate large volumes of applications, but few are a genuine match. Meanwhile, experienced security engineers, analysts and architects quietly ignore adverts that feel vague, unrealistic or disconnected from real security work. In most cases, the problem is not a lack of talent — it is the quality of the job advert. Cyber security professionals are trained to assess risk, spot weaknesses and question assumptions. A poorly written job ad signals organisational immaturity and weak security culture. A well-written one signals seriousness, competence and trust. This guide explains how to write a cyber security job ad that attracts the right people, improves applicant quality and positions your organisation as a credible security employer.

Maths for Cyber Security Jobs: The Only Topics You Actually Need (& How to Learn Them)

If you are applying for cyber security jobs in the UK it can feel like “real security people” must be brilliant at maths. The reality is simpler: most roles do not need degree-level pure maths. What they do need is confidence with a small set of practical topics that show up repeatedly in day-to-day work across SOC, incident response, cloud security, AppSec, threat detection, IAM & security engineering. This guide strips the maths down to what actually helps you get hired. It includes a 6-week learning plan plus portfolio projects you can publish to prove the skills. You will focus on: Number systems & bitwise thinking (binary, hex, bytes, XOR) Modular arithmetic basics (enough to understand how modern crypto “works”) Probability & statistics for detection, triage & risk Discrete maths for logic, sets, graphs & complexity Security maths habits: estimation, false positive control & evidence-led reporting You will not waste time on heavy theory that rarely appears in junior or mid-level cyber security roles.