National AI Awards 2025Discover AI's trailblazers! Join us to celebrate innovation and nominate industry leaders.

Nominate & Attend

Security Operations Lead London (England) Square Enix Information Technology (IT) Senior (5+ ye[...]

Gamecompanies
London
3 days ago
Create job alert

The Security Operations Lead is responsible for our security monitoring and incident response capabilities within the Square Enix Cyber Security team (covering Europe and North America). The primary goals of the role are the timely detection of security incidents, effective response and the continuous improvement of our preventative and detective controls. This role will work alongside our team of security analysts and engineers to collectively protect our players, people and assets whilst enabling creativity and innovation across Square Enix.
Day to day you will be performing in-depth analysis and investigation of security alerts, game/brand related security events as well as leading the response to incidents. You will be responsible for maintaining and optimising our security operations tools and processes. Additionally you will be testing the effectiveness of our preventative and detective controls, probing weaknesses and implementing improvements alongside our risk and engineering teams.
The role is aimed at candidates with a broad and senior Cyber Security skillset who are seeking to further develop their Cyber Security career in an exciting industry. Engineering skills in maintaining Security Information and Event Management (SIEM) platforms and the configuration of our wider security tools are key. We are also seeking candidates with experience leveraging AI to enhance productivity and effectiveness.
Requirements
Leading investigation and analysis of security alerts to identify and promptly respond to security events.
Leading the response to major cyber security incidents, collaborating with key business and technical stakeholders during investigations to gather further information and coordinate response actions.
Identifying and responding to game related threats like leaks, cheats, piracy, copyright abuse and account compromise.
Managing our security operations outsourcing partners to maximise the value and quality of their service delivery.
Maintaining a broad understanding of IT/online environments and key company assets to enhance decision making and response to incidents.
Tool and Platform Management
Maintaining and optimising our Cyber Security tools and platforms to continuously improve our detection and response capability.
Supporting the management, administration and support of our SIEM platform, including general infrastructure and system administration, troubleshooting and user access management
Maintaining and tuning security detections and alerts within our SIEM platform.
Onboarding and managing security log sources for our SIEM platform, including agent and policy deployment, creation and maintenance of ingest pipelines and index template and pattern creation.
Team Collaboration and Mentoring
Guiding and mentoring the day to day work of our Security Analysts, providing expertise to support their task and project delivery.
Collaborating with risk and architecture teams to continuously test and refine our security controls through attack simulation and purple team operations.
Influencing the strategic direction and priorities of our Cyber Security team by presenting insight into the security events, alerts and incidents we handle.
Continuously improving our security operations processes, escalation paths and playbooks.
Leveraging AI capabilities to enhance the effectiveness of our security capabilities and your own productivity in the role.
Consuming relevant threat intelligence to drive proactive action within the Cyber Security and wider IT environment.
Indicative Performance Measures
Mean time for business recovery to C1 (Highest criticality) level security incidents
Security event triage time
Game/brand leak detection timeframes
High availability of security tools
Security maturity improvements
Knowledge & Experience:
We encourage applications from candidates who can meet some but not necessarily all of the listed experience and skills below. Applicants are welcomed from diverse professional backgrounds, including those who are self-taught or have gained experience through non-traditional paths.
Held senior roles within Cyber Security/Information Security/Security Operations functions.
Background in security, IT, network engineering or administration, or software development.
Experience responding to or handling major cyber security incidents and following common response frameworks.
Experience within the gaming industry providing security operations support to game releases, game infrastructure monitoring and live game operations.
Strong appreciation of the cyber threat landscape and attacker tactics, techniques and procedures.
Experience developing operational processes and playbooks.
Ability to remain composed and effective during high-pressure situations.
Clear focus on coaching, mentoring and development of staff.
Effective communication skills with non-technical stakeholders and executives.
Flexibility to work out-of-office hours, when necessary, in response to incidents.
Ability to manage tasks and priorities effectively, with attention to detail.
Self-motivated and comfortable taking ownership of decisions, with support from the team.
Desirable Technical Experience:
SIEM engineering (especially Elastic Security)
Google Cloud Platform (GCP) or similar cloud infrastructure platforms
Infrastructure automation (Terraform, Ansible, Chef or Puppet)
Scripting, log analysis and dashboard creation
AI literacy and a desire to continuously learn and develop.
Our goal at Square Enix is to hire, retain, develop and promote the best talent, regardless of age, gender, race, religious, belief, sexual orientation or physical ability.
Our pledge to D&I
At Square Enix we believe in the importance of being a diverse and global company, and we stand firmly together against any forms of injustice, intolerance, harassment or discrimination. In our effort to create a truly diverse workforce, we pledge to continue to raise awareness in every step of the employee experience, from recruitment to promotions to ensure equal opportunities for all. One of our goals is to champion diversity in games and at work and work together to inspire real change.
Learning and education around D&I will be a key element for us to continue to grow as an organization. With unconscious bias training, D&I workshops and a variety of initiatives to give our employees the opportunity to be heard and be part of that change to achieve real equality. We need all our efforts to continue to build our culture of inclusion and equality.
We are also proud to partner with UKIE's Raise the Game pledge, BAME in Games and Women in Games, to name a few.
Hybrid Working Policy
Square Enix is pleased to be an employer that offers flexibility within the workplace.
We have a hybrid working policy which allows employees to work from the comfort of their home, three days per week, and in our amazing Blackfriars office for the other two.
Or, if being in the Office is your preference, you can choose three days working from our office and two days working from home. The choice is yours!
About the company

Spreading happiness across the globe by providing unforgettable experiences.
Square Enix is one of the most influential providers of digital entertainment content in the world. In our London and LA offices, Square Enix publish and distributes entertainment content from the Square Enix Group.

The Square Enix Group boasts a valuable portfolio of games including: FINAL FANTASY, which has sold over 144 million units worldwide; DRAGON QUEST, which has sold over 78 million units worldwide; TOMB RAIDER, which has sold over 74 million units worldwide; and the legendary SPACE INVADERS. Square Enix Ltd. is a London-based, wholly owned subsidiary of Square Enix Holdings Co.

#J-18808-Ljbffr

Related Jobs

View all jobs

Security Operations Lead

Security Operations Lead - Engine by Starling

Security Operations Lead

Security Operations Lead - Engine by Starling

Security Operations Lead - Engine by Starling

Contract Security Operations Lead

National AI Awards 2025

Subscribe to Future Tech Insights for the latest jobs & insights, direct to your inbox.

By subscribing, you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

How to Present Cyber Security Solutions to Non-Technical Audiences: A Public Speaking Guide for Job Seekers

Cyber security is no longer just an IT issue—it’s a board-level priority. Whether you’re applying for a role in penetration testing, security operations, risk management, or compliance, your ability to clearly explain cyber threats and solutions to non-technical stakeholders is vital. This guide will help cyber security job seekers develop one of the most in-demand soft skills in the industry: public speaking. You’ll learn how to simplify complex concepts, structure effective presentations, use storytelling and analogies, and handle common stakeholder questions with confidence.

Cyber Security Jobs Employer Hotlist 2025: 50 UK Companies Actively Hiring Right Now

Bookmark this guide—refreshed every quarter—so you always know who’s really expanding their cyber security teams. Ransomware payouts broke records in 2024, the UK’s new Cyber Security Bill imposed mandatory breach disclosure, and the National Cyber Force’s move to Samlesbury has super‑charged the northern skills market. Result? Demand for security architects, SOC analysts, penetration testers, cloud‑security engineers, threat hunters & GRC specialists is at an all‑time high in 2025. Below you’ll find 50 organisations that have posted UK‑based cyber security vacancies or announced head‑count growth during the past eight weeks. They’re organised into five quick‑scan categories. For every employer you’ll see: Main UK hub Example live or recent vacancy Why it’s worth a look (tech stack, culture, mission) Search any company on CyberSecurityJobs.tech to view current ads, or set a free alert so fresh openings land straight in your inbox.

Return-to-Work Pathways: Relaunch Your Cyber Security Career with Returnships, Flexible & Hybrid Roles

Re-entering the workforce after a career break can feel especially challenging in a fast-moving field like cyber security. Whether you stepped away for parenting, caregiving or another life chapter, the UK’s cyber security sector now offers a range of return-to-work pathways—from structured returnships to flexible and hybrid roles. These programmes value the transferable skills and resilience you’ve developed during your break, pairing you with mentorship, upskilling opportunities and supportive networks to ease your transition back into cyber security. In this article, tailored for parents and carers, you’ll discover how to: Understand the growing demand for cyber security talent in the UK Translate your organisational, communication and problem-solving skills into cyber security roles Tackle common re-entry challenges with practical solutions Refresh your technical knowledge through targeted learning Access returnship and re-entry programmes specific to cyber security Find roles that accommodate family commitments—whether hybrid, flexible or full-time Balance your career relaunch with caring responsibilities Master applications, interviews and networking in cyber security Draw inspiration from real returner success stories Whether you aim to return as an analyst, penetration tester, security engineer or compliance specialist, this guide will equip you with the steps and resources to reignite your cyber security career.