Detection, Engineering and Automation Manager

Reposted 14 Days Ago
Be an Early Applicant
Hiring Remotely in Office, Machaze, Manica, MOZ
Remote
Mid level
Software • Financial Services
The Role
Manage a global Detection, Automation and Engineering team to build, maintain and optimise SIEM, SOAR and other security tooling; drive CI/CD for detections, develop KQL use-cases, integrate APIs and cloud telemetry, mentor staff, report on metrics and improve automation to respond to threats.
Summary Generated by Built In
About the OpportunityJob Type: Permanent

Application Deadline: 31 May 2026

Title                  Detection, Engineering and Automation Manager

Department       FIL – Cyber Defence Operations

Location           Kingswood, Surrey

Reports To       Senior Technical Consultant - CDO

Level                5

 

 

We share a commitment to making things better for clients and each other. We continually explore new technology and different ways of working to put our clients first. So bring your boldest ideas to our Cyber Defense Operations team and feel like you’re making progress.

 

About your team

Technology function across FIL is responsible for all global aspects of Technology, Digital, Cybersecurity, and Innovation. Fidelity is a value-driven, customer-obsessed organization and in Technology we are fortunate to play a direct role in helping our clients with one of the most important aspects of their lives – their financial well-being.

 

Within the Technology function is our Global Cyber & Information Security (GCIS) that operates enterprise security services and controls. These are designed to mitigate Cyber and Information Security risks ensuring that Fidelity's business operates securely. The Technical Cybersecurity teams monitor both the internal and external threat environment, responding to security alerts and events in close to real time, as well as providing security assurance and access management services across the enterprise technology and business environment. Our global innovative Cyber Defence Operations team sits within GCIS and provides proactive, cutting-edge solutions to protect clients’ digital assets and infrastructure against evolving cyber threats.

 

The Detection Engineering & Automation team within our Global Cybersecurity Operations focuses on the development of automated detection capabilities to reduce manual effort of the Global Cybersecurity Operations team freeing up time to focus on real cyber threats.  They ensure that security controls are performing effectively and efficiently and that they are feeding into automation technologies allowing the organisation to make intelligent correlated decisions.

 

About your role
The Detection, Automation and Engineering Manager plays a pivotal role in supporting the Global Cybersecurity Operations team by ensuring security tooling implemented in the organisation are working as intended. The ideal candidate will be responsible for driving excellence and innovation across the team and have extensive knowledge and experience in technologies including, but are not limited to, SIEM Administration (logging, use-case development, resource utilisation and optimisation), SOAR, DDoS, IPS, Email security, Network Anomaly Detection. The ideal candidate has experience of not only using a wide range of technologies to respond to security events, but also supporting ongoing maintenance of the tools.

 

About you

 

Key Responsibilities

 

The Detection, Automation and Engineering Manager will be responsible to:

 

  • Lead and manage a global high performing Detection, Automation and Engineering service.

  • Lead and oversee the development of new security detection use-cases and associated workflows within automation to address emerging threats and vulnerabilities; ensuring robust QA, QC and Change Management is followed and maintained.

  • Lead and own team delivery reporting, detailing key metrics, incidents, and trends for stakeholders, enabling informed decision-making following set formats.

  • Drive engineering maturity by designing and implementing CI/CD pipelines to standardise, automate, and improve the quality, velocity, and reliability of detection and automation releases.

  • Own and govern delivery prioritisation, ensuring sprint planning and team output align to the function roadmap, business priorities, and risk‑based value delivery.

  • Contribute to and influence roadmap development by identifying engineering opportunities, tooling enhancements, and future-state capabilities that strengthen the function's strategic direction.

  • Lead and oversee the maintenance and management of security solutions / services like Sentinel, Defender, ServiceNow, Proofpoint, etc.

  • Regularly assess the effectiveness of security tools through metrics and key performance indicators, driving continuous improvement initiatives within the team.

  • Identify and implement enhancement opportunities with existing tooling to capitalise investments and returns.

  • Guide, upskill and mentor a high performing team, fostering a collaborative and innovative environment to maximize productivity and skill development.

  • Collaborate with cross-functional teams and Security Architects to ensure alignment of security tooling initiatives with broader organizational goals and compliance requirements.

  • Lead the implementation of robust security tooling solutions, ensuring seamless integration with existing systems and infrastructure.

  • Establish and maintain proactive monitoring mechanisms to promptly detect and respond to incidents, utilizing the latest tooling capabilities.

  • Provide expert support to security operations teams by troubleshooting tooling issues, conducting root cause analyses, and implementing corrective measures.

  • Execute and oversee security tooling projects, including resource management, timelines, and deliverables, demonstrating adept project management skills.

 

Experience and Skills Required

 

  • At least 4 years of experience working in a Detection Engineering function, preferably in Financial Services, focusing on Automation and Security Engineering maturity, with experience of managing and maintaining security tools within a global environment.

  • Programming experience (PowerShell, Bash, Python, JavaScript) to automate tasks using scripting on both Windows and Linux systems.

  • Hands-on experience with APIs, demonstrating the ability to integrate security tools seamlessly, automate workflows, and enhance overall security posture through effective API utilization.

  • Experience developing and fine-tuning Detection use-cases using advanced KQL and possess Innovative Mindset to challenge current processes.

  • Experience developing and utilising automation to enhance responses to security alerts.

  • Experience integrating and maintaining a SIEM solution and associated log stream integrations.

  • Experience with Cloud environments and infrastructure integration with a SIEM solution.

  • Demonstrable proficiency utilising built in security functions within Azure and AWS.

  • Apply leadership and management skills in guiding and mentoring a security automation and engineering team to achieve collective success. Proven experience of being organised and methodical manner applying critical thinking to tasks and problems.

  • Employ excellent communication skills, both written and verbal, to articulate security concepts, present findings, and engage with diverse stakeholders, including technical and non-technical audiences.

  • Demonstrate adaptability to evolving security landscapes, staying updated on industry trends, and proactively integrating new technologies and methodologies into security tooling strategies.

 

Feel rewarded

For starters, we’ll offer you a comprehensive benefits package. We’ll value your wellbeing and support your development. And we’ll be as flexible as we can about where and when you work – finding a balance that works for all of us. It’s all part of our commitment to making you feel motivated by the work you do and happy to be part of our team. For more about our work, our approach to dynamic working and how you could build your future here, visit careers.fidelityinternational.com.

 

For more about our work, our approach to dynamic working and how you could build your future here, visit careers.fidelityinternational.com.

 

 

As an international financial services organisation, we are in-scope of international regulations in the way that we carry out our work. This position is involved in work that is regulated by the FCA and/or the PRA and their Individual Conduct Rules (COCON) apply to it, along with any other regulation. We provide training on COCON and how it affects our employees. More information about COCON can be found in the Employment Handbook.

Top Skills

APIs
AWS
Azure
Bash
Ci/Cd
Ddos
Defender
Email Security
Ips
JavaScript
Kql
Network Anomaly Detection
Powershell
Proofpoint
Python
Sentinel
Servicenow
SIEM
Soar
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: London
9,919 Employees
Year Founded: 1969

What We Do

Fidelity International offers investment solutions and services and retirement expertise to more than 2.5 million customers globally. As a privately held, purpose-driven company with a 50-year heritage, we think generationally and invest for the long term. Operating in more than 25 countries and with $739.9 billion* in total assets, our clients range from central banks, sovereign wealth funds, large corporates, financial institutions, insurers and wealth managers, to private individuals. Our Workplace & Personal Financial Health business provides individuals, advisers and employers with access to world-class investment choices, third-party solutions, administration services and pension guidance. Together with our Investment Solutions & Services business, we invest $567 billion on behalf of our clients. By combining our asset management expertise with our solutions for workplace and personal investing, we work together to build better financial futures. *Data as of 31 March 2021

Similar Jobs

Suite Studios Logo Suite Studios

Senior Software Engineer

Cloud • Digital Media • Professional Services • Database
Remote
Office, Machaze, Manica, MOZ
20 Employees
150K-175K Annually

Suite Studios Logo Suite Studios

Intern - General Application

Cloud • Digital Media • Professional Services • Database
Remote or Hybrid
Office, Machaze, Manica, MOZ
20 Employees

Mondelēz International Logo Mondelēz International

Consumer Data Platforms Product Lead

Big Data • Food • Hardware • Machine Learning • Retail • Automation • Manufacturing
Remote or Hybrid
3 Locations
90000 Employees

CrowdStrike Logo CrowdStrike

Growth Development Representative

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
Office, Machaze, Manica, MOZ
10000 Employees

Similar Companies Hiring

Milestone Systems Thumbnail
Software • Security • Other • Big Data Analytics • Artificial Intelligence • Analytics
Lake Oswego, OR
1500 Employees
Fairly Even Thumbnail
Software • Sales • Robotics • Other • Hospitality • Hardware
New York, NY
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account