Senior Manager, Cybersecurity Incident Response
ARM•1d ago
United KingdomHybridFull-timeManager Level5+ yrs exp
Top focus
Cybersecurity AnalystCybersecurity Engineer
Job Overview: Interested in defending a global tech company from the latest cyber threats? Arm is seeking a passionate, experienced Senior Manager of Cybersecurity Incident Response to join our growing Cyber Defence Operations (CDO) team, protecting Arm against current and future cyber-attacks!
Situated within Arm’s Enterprise Security function, this role will lead Arm’s global incident response team across the US, UK and India, including acting as a senior technical and operational leader for major cyber incidents. CDO enables Arm to be successful, delivering scalable and defendable security services that not only provide for the protection of Arm, customer & partner data, but that enables advantage in a competitive industry
Responsibilities
- Lead Arm’s global cybersecurity incident response function, ensuring the team has the people, processes and capabilities needed to respond effectively across regions.
- Lead high-priority and complex security incidents in partnership with partners across the business.
- Facilitate major incident briefings, direct response activities, and deliver clear communications for technical teams, senior stakeholders and Arm leadership.
- Coordinate larger investigations with internal partners, contracted security providers and/or law enforcement.
- Grow and develop the Incident Response team through coaching, training, skills development and continuous improvement.
- Build and maintain incident response runbooks, playbooks and operating procedures to support consistent, high-quality response.
- Support incident readiness through planning, exercises and scenario-based testing.
- Lead post-incident reviews, including root cause analysis, lessons learned and control improvements.
- Provide Incident Response insight to Detection Engineering, Threat Hunting, Exposure Management and other Cyber Defence Operations capabilities.
- Required Skills and Experience: Demonstrable experience progressing from hands-on technical incident response into leadership, including leading incident response teams and investigators through diverse, complex cyber investigations.
- Experience leading major cyber incidents, including incident command, stakeholder coordination, technical investigation, communications and post-incident follow-up.
- In-depth knowledge of the cyber security threat landscape and experience bringing it to bear in a tailored response to a major incident.
- Solid grasp of CDO and Incident Response processes and experience with relevant tools such as EDR, SIEM, IR management, forensics and case management platforms. &ldquo
- Nice To Have&rdquo
- Skills and Experience: BSc or higher in relevant subject (e.g Computer Forensics, digital investigation, computer science), applicable Professional qualification e.g SANS, CISSP, GCIH, GCFA, GCFE, GREM SANS Certifications, EnCE, Incident Response (CSIRT/CERT) (Desirable)!
- In Return: You will play a pivotal role in strengthening organisational resilience, shaping future‑ready cyber defence capabilities
- leading a team whose work truly matters. #LI-JW1 Accommodations at Arm At Arm, we want to build extraordinary teams.
- If you need an adjustment or an accommodation during the recruitment process, please email accommodations@arm.com .
- To note, by sending us the requested information, you consent to its use by Arm to arrange for appropriate accommodations.
- All accommodation or adjustment requests will be treated with confidentiality, and information concerning these requests will only be disclosed as necessary to provide the accommodation.
- Although this is not an exhaustive list, examples of support include breaks between interviews, having documents read aloud, or office accessibility.
- Please email us about anything we can do to accommodate you during the recruitment process.
- Hybrid Working at Arm Arm’s approach to hybrid working is designed to create a working environment that supports both high performance and personal wellbeing.
- We believe in bringing people together face to face to enable us to work at pace, whilst recognizing the value of flexibility.
- Within that framework, we empower groups/teams to determine their own hybrid working patterns, depending on the work and the team’s needs.
- Details of what this means for each role will be shared upon application.
- In some cases, the flexibility we can offer is limited by local legal, regulatory, tax, or other considerations, and where this is the case, we will collaborate with you to find the best solution.
- Please talk to us to find out more about what this could look like for you.
- Equal Opportunities at Arm Arm is an equal opportunity employer, committed to providing an environment of mutual respect where equal opportunities are available to all applicants and colleagues.
- We are a diverse organization of dedicated and innovative individuals
- don’t discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability
- status as a protected veteran.
Required skills
CybersecurityIncident ResponseEDRSIEMForensicsCase Management