Lead Cyber Security Engineer
Davies North AmericaAbout the role
About Us
At Davies, we get it... you are not just looking for a job, you are looking to build a life and a career. We believe in our people and realize that our success is a direct result of creating a learning atmosphere, leadership opportunities, and promoting from within. We believe that engaging in corporate social activities and working together as a team is a vital part of the Davies culture.
With a multinational global team, Davies Group is a specialist professional services and technology firm working in partnership with leading insurance, highly regulated, and global businesses. At Davies Group, we help clients to manage risk, operate core business processes, and to transform and grow. We deliver operations, consulting and technology solutions across the risk and insurance value chain, including excellence in claims, underwriting, distribution, regulation, customer experience, human capital, transformation, and change management.
Are you looking for a company that is Dynamic and Innovative where the employees are Connected and Succeed Together? If so, Davies may just be the right choice for you.
Job Overview
Davies US is looking for an Lead Cyber Security Engineer to help enable the business to achieve objectives in a safe and secure manner within an appropriate and proportionate set of controls, policies, and procedures. Reporting to the Group Head of Cyber Security and working with the Global Cyber team, you will be in a hands-on leadership role that is responsible for the investigation of IT security alerts and incidents, including the monitoring and maintenance of security tooling, including Security Incident & Event Management (SIEM), anti-virus, and vulnerability management platforms. You will enable the business to exploit opportunities with a degree of acceptance of risk while being prepared to respond to any adverse consequences.
To be successful in this role, you need have superb communication skills, strong cyber incident response management, exceptional documentation skills and capable of communicating technical information to technical and non-technical staff across the business. You must have one or more relevant IT security qualifications from a recognized body such as GIAC GSEC or ISC2 CISSP, have prior experience working within a variety of teams, have a solid technical understanding and strong knowledge of IT security best practice, common attack types and detection/prevention methods, including CIS Security Benchmarks, OWASP and NIST guidelines as well, and experience overseeing/managing complex and varied technology issues coupled with extensive practical operation security experience within an end user organization. Additionally, you will need to be a team player that is flexible and approachable, able to work under pressure on multiple workstreams to meet tight deadlines and have excellent stakeholder management skills. This role is a full-time, home-based position and will require working outside of business hours and being on-call at times as well as traveling up to 15%.
Responsibilities and Duties
- Act as the reporting line for Cyber Security Engineers and Analysts
- Be an Escalation point from the business or Cyber Security staff for incidents and issues
- Lead on Cyber incident response when required
- Provide Operational IT security, including the monitoring and maintenance of IT security tools, such as Security Incident & Event Management (SIEM), anti-virus, and vulnerability management platforms
- Assist with task planning for team members
- Review and/or make changes to technical policies
- Validation and risk assessment of newly identified vulnerabilities
- Support the CISO to deliver risk-based improvements, including public-facing websites and services
- Assist with IT security gap and risks assessments including CIS, ISO 27001, and Cyber Security Essentials
- Producing KPI / KRI monthly reports to show risk position
- Assist with internal audit and external audit
- Regularly review all aspects of the IT infrastructure and recommend improvements where appropriate
- Share best practice and promote innovation
- Promote continuous improvement mindset across all areas of Security
- Exhibit company values of We are Dynamic, We are Innovative, We are Connected, and We Succeed Together
- Perform other duties as assigned
Experience and Qualifications
Required
- One or more relevant IT security qualifications from a recognized body, such as GIAC GSEC or ISC2 CISSP
- Experience of overseeing and managing complex and varied technology issues
- Extensive practical operational security experience wit
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s