Security Operations Lead – SC Cleared
Ref: BBBH67805_1786364424Security Operations Lead – SC Cleared
Whitehall Resources are currently looking for a Security Operations Lead – SC Cleared based in Lancashire or Scotland for an initial 6 month contract.
*** MUST HOLD ACTIVE SC CLEARANCE ***
*** INSIDE IR35 ***
Job Spec:
The Security Operations Lead operates within the Operational Integrator (OI) function and provides governance, leadership, assurance, and strategic oversight of security incident management across a complex multi-supplier environment.
The role is responsible for ensuring suppliers manage security incidents consistently, effectively, and in accordance with client policy, regulatory obligations, and operational risk requirements. Acting as the primary OI lead for incident governance, the consultant provides a consolidated view of incident risk, drives supplier accountability, and supports continual improvement across the incident management lifecycle.
This is a governance, assurance, and supplier management role and does not perform SOC monitoring, incident investigation, forensic analysis, or operational response activities.
Key Responsibilities:
Security Incident Governance:
- Own and govern the security incident management framework across suppliers
- Define and maintain:
- Incident classification criteria
- Escalation models
- Reporting standards
- Major incident governance processes
- Ensure alignment to client policies, regulatory obligations, and security controls
Supplier Governance & Performance Management:
- Act as the primary OI lead for security incident governance
- Challenge, validate, and assure supplier incident management processes
- Drive consistency in reporting, escalation, communications, and evidence standards
- Manage escalations relating to significant or recurring incidents
Incident Risk & Executive Oversight:
- Maintain visibility of security incident exposure across all suppliers
- Ensure major incidents receive appropriate governance attention
- Support risk-based decision making through accurate incident reporting
- Provide oversight of supplier corrective and preventative actions
Reporting & Executive Visibility:
- Produce consolidated security incident reporting across suppliers
- Provide insight into:
- Incident trends
- Response performance
- SLA adherence
- Recurring root causes
- Risk exposure
- Support governance boards, service review meetings, and client security leadership
Assurance & Evidence Management:
- Define incident management evidence requirements
- Ensure traceability across:
- Detection
- Escalation
- Investigation outcomes
- Recovery activities
- Closure decisions
- Support audits, assurance reviews, and regulatory inspections
Post-Incident Review & Continuous Improvement:
- Coordinate governance of Post Incident Reviews (PIRs)
- Ensure suppliers provide:
- Root cause analysis
- Corrective actions
- Improvement activities
- Identify opportunities to improve incident governance, reporting, and operational effectiveness
Key Skills:
- Significant experience in Security Incident Management, Cyber Governance, Service Management, or GRC roles
- Security incident lifecycles
- Major incident management
- Security reporting and governance
- Experience working within complex multi-supplier environments
- Strong stakeholder engagement and supplier management skills
- Experience presenting incident risk information to senior stakeholders
Desirable Skills:
- NIST Cyber Security Framework (CSF)
- NCSC guidance
- ITIL Major Incident Management
- ISO 27001
- Experience supporting security assurance and audit activities
- Experience in Defence, Government, or highly regulated sectors
Key Deliverables:
- Security Incident Management Framework
- Consolidated supplier incident reporting
- Executive incident dashboards
- Governance and assurance reporting packs
- Post Incident Review governance outputs
- Continuous improvement roadmap
All of our opportunities require that applicants are eligible to work in the specified country/location, unless otherwise stated in the job description.
Whitehall Resources are an equal opportunities employer who value a diverse and inclusive working environment. All qualified applicants will receive consideration for employment without regard to race, religion, gender identity or expression, sexual orientation, national origin, pregnancy, disability, age, veteran status, or other characteristics.
