- Company Name
- Spirax Group
- Job Title
- Head of Technical Security
- Job Description
-
**Job Title**: Head of Technical Security
**Role Summary**
Lead the organization’s technical security strategy and execution, overseeing secure architecture, identity management, and incident response across Azure and hybrid infrastructures. Manage and mentor a team of security architects and engineers, ensure continuous improvement of security controls, and act as a trusted advisor to senior leadership.
**Expectations**
- Deliver measurable security improvements and align security initiatives with business objectives and regulatory requirements.
- Maintain a deep, hands‑on understanding of Microsoft security tooling and hybrid identity environments.
- Drive security roadmap development using frameworks such as NIST CSF, ISO 27001, CIS, and SOC 2.
- Provide technical leadership for incident response, forensic analysis, and remediation.
**Key Responsibilities**
- Shape and implement technical security strategy and roadmap.
- Oversee secure architecture development and secure‑by‑design practices.
- Support IT and Enterprise Architecture in secure decision‑making for Azure and hybrid infrastructure.
- Deliver integrated identity strategy across Azure AD/Entra ID and on‑prem environments.
- Lead security incident response, including digital forensics and remediation guidance.
- Partner with operations, architecture, and project delivery teams to accelerate security improvements.
- Manage external security engagements (penetration testing, red‑team assessments) in collaboration with Governance, Risk & Compliance.
- Develop and implement technical security improvements from internal and external audits.
- Act as trusted advisor to senior leadership, translating technical risks into actionable business insight.
**Required Skills**
- Expert knowledge of hybrid identity platforms (Entra ID, on‑prem AD, PAM).
- Hands‑on experience with Microsoft security tools: Defender, Sentinel, SIEM, EDR, PAM, vulnerability management.
- Strong understanding of cloud and infrastructure security, especially Azure.
- Familiarity with security frameworks (NIST CSF, ISO 27001, CIS, SOC 2).
- Proven ability to lead security and IT transformation programmes (e.g., data centre migrations, Microsoft 365 adoption).
- Excellent communication, documentation, and stakeholder management skills.
- Analytical, proactive, outcome‑driven mindset with focus on measurable improvement.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field.
- Relevant certifications: AZ‑500, AZ‑104, TOGAF/SABSA, SC‑100, CCSP, CISSP (preferred).
Cheltenham, United kingdom
Hybrid
23-02-2026