×
Register Here to Apply for Jobs or Post Jobs. X

Offensive Security Lead

Job in Tadworth, Surrey County, KT20, England, UK
Listing for: Fidelity International
Full Time position
Listed on 2026-02-28
Job specializations:
  • IT/Tech
    Cybersecurity, Security Manager, Information Security
Salary/Wage Range or Industry Benchmark: 80000 - 100000 GBP Yearly GBP 80000.00 100000.00 YEAR
Job Description & How to Apply Below

Offensive Security Lead

Job Type: Permanent

Location:

Kingswood, Surrey
Department:
Global Cybersecurity Operations

Reports To:

Detection Engineering & Automation Manager - CDO (UK)
Level: 5

Final date to receive applications: 31 May 2026

About The Opportunity

We’ve been helping our clients build better financial futures for over 50 years by fostering teamwork across the globe. As part of Fidelity International’s Global Cyber & Information Security (GCIS) Group, the Global Cybersecurity Operations function develops a proactive, intelligence‑led cyber‑security response to defend against threats, reduce risk and business impact, and enable rapid response to incidents.

Department Description

The Global Technology Group delivers IT services that underpin Fidelity’s core business functions. Within GCIS, the Cybersecurity Operations team supports infrastructure, data centre, network, security, incident management and remediation services that keep the organization operational.

Purpose of Your Role

The successful candidate will bring engineering expertise to security operations, championing automation and threat‑informed defenses. Your primary focus will be to drive continuous offensive security assurance by leveraging Breach and Attack Simulation (BAS) and running purple team exercises, thereby validating existing controls, identifying gaps, and driving remediation across the organization.

Key Responsibilities
  • Actively participate in purple team exercises with detection engineering teams to validate and improve defensive controls.
  • Use Breach and Attack Simulation tooling to continuously assess security posture and identify gaps in detection and response.
  • Ensure the BAS platform is fully embedded into security operations, providing continuous validation of security controls and clear assurance reporting.
  • Translate BAS findings into prioritized remediation tasks and track progress with relevant stakeholders.
  • Where gaps cannot be remediated, raise risks through internal governance processes and ensure visibility at the right level.
  • Work with CTI to run adversary emulation exercises based on the top threat actors relevant to the organization.
  • Collaborate with a wide range of stakeholders to ensure timely remediation of identified gaps and raise relevant risks.
  • Provide clear, actionable reports and dashboards to leadership, highlighting gaps, remediation progress, and residual risks.
Experience And Qualifications
  • Experience and strong understanding of frontline security operations.
  • At least 4 years in Security Operations Engineering, including log onboarding, log assessment, detection use‑case development and upkeep.
  • Proficiency in scripting languages required for automation (e.g., KQL, Python).
  • Experience managing security solutions such as SIEM (Sentinel preferred), email protection, IDS/IPS, anti‑virus, EDR (Microsoft Defender), and ticketing tools like Service Now (Sec Ops).
  • Strong experience in offensive security testing, purple teaming, or adversary emulation.
  • Hands‑on experience with BAS platforms (e.g., Attack

    IQ, Safe Breach, Cymulate).
  • Knowledge of MITRE ATT&CK, threat modelling, and attack chains.
  • Ability to translate technical findings into actionable remediation plans.
  • Excellent stakeholder management and communication skills.
  • Banking or Finance industry experience desirable.
Nice to have
  • Experience dealing with security incidents using the NIST framework.
  • Certifications such as OSCP, OSCE, CEH, CHFI, CISSP or similar.
  • Experience working with CTI teams and integrating threat intelligence into testing.
  • Familiarity with cloud security testing and hybrid environments.
Feel rewarded

We offer a comprehensive benefits package, support your wellbeing and development, and provide flexible working options that balance personal and professional commitments. For more about our culture and future growth opportunities, visit care

#J-18808-Ljbffr
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary