Sportradar Group AG Logo

Sportradar Group AG

Security Operations Manager

Posted 4 Days Ago
Be an Early Applicant
In-Office
London, Greater London, England, GBR
Expert/Leader
In-Office
London, Greater London, England, GBR
Expert/Leader
Lead the global security operations function, including the SOC, incident response, detection engineering, and threat intelligence. Personally manage major incidents, build or rebuild SOC operations, improve cloud security coverage, develop detections and automation, operationalize threat intelligence, and establish effectiveness metrics. Lead globally distributed technical teams and collaborate with engineering, product security, and information security leadership. The role requires hands-on expertise with cloud environments, SIEM and data lakes, DDoS mitigation, threat hunting, and purple teaming.
The summary above was generated by AI
Company Description

We’re the world’s leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and technology to boost their business.

Job Description

This is a hands-on leadership role. You need to be technical, in the detail, and able to lead an incident bridge. You will run a global function and own Security Operations end to end: the SOC, incident response, detection engineering and threat intelligence, along with the people and platforms behind them. 

THE CHALLENGE: 

  • Own incident response. 
    • Preparation, triage, containment, eradication, and the post-incident reviews that make the next incident smaller. You will lead major incidents personally and set the standard for what good looks like. 
  • Build the SOC we need next, not the one we have. 
    • Evolve the operating model, the on-call structure, the tooling and the automation. You will have built a SOC before, either from scratch or through a major rebuild. 
  • Treat detection engineering as an engineering discipline. 
    • Detections as code: versioned, tested, tuned, and mapped to the threats that actually target us rather than a vendor's default rule pack. You will drive the coverage roadmap across our cloud estate and applications, and you know the difference between a thousand alerts and one good one. 
  • Make threat intelligence earn its keep. 
    • Build an intel capability that changes what we hunt for, what we detect, and what we brief to leadership. 
  • Be the voice of operational reality. 
    • At the leadership table, you are the person who knows what is happening on the ground, and says so. You will work closely with engineering, product security and the wider InfoSec leadership so that what we build is defensible and what we defend is understood. 
  • Own operational effectiveness. 
    • Define and improve measures that matter: detection coverage, investigation quality, time to detect and contain, escalation effectiveness, and whether lessons from incidents get implemented. 

  ABOUT YOU:

  • Deep, current incident response experience. You have personally led the response to serious incidents rather than observing them from a governance layer. 
  • You have built a SOC: stood one up, or rebuilt one that wasn't working. The operating model, the hiring, the tooling, the metrics. You know what the first 90 days look like because you have lived them. 
  • Technical, with a solid grounding in cloud. You understand how modern cloud environments (AWS, GCP, Azure) are attacked and defended, including identity, logging, lateral movement and containment, and how incident response works within them. 
  • Detection engineering experience. You have built or led detection programmes covering rule development, coverage mapping, tuning and automation, and you can review a detection and tell whether it is good. 
  • Threat intelligence experience. You have built or run an intel function and made it operational, feeding hunts, detections and decisions. 
  • A track record of leading globally distributed technical teams across time zones. 
  • Hands-on experience with SIEM/Data Lakes, implementing and supporting. 
  • Experience with DDoS mitigation. 
  • Experience with threat hunting and purple teaming. 

OUR OFFER

  • A collaborative environment with colleagues from all over the world (Offices in Europe, Asia, North & South America).  
  • Impactful Work: Contribute to the development of groundbreaking products that influence industries globally.
  • Ability to shape your own workday and career via a clearly defined professional and personal development plan. 
  • We are a diverse and collaborative global team with a unique spirit, determined to achieve our goals with integrity and focus.
  • Opportunity to work with senior leadership, develop yourself and build your career within an inspiring and fast-growing company and digital sports environment. 
  • Flexible working model. 

While we appreciate the flexibility and benefits of working from home, we strongly believe that coming together in person fosters stronger connections, encourages collaboration, and drives innovation—both as individuals and as a company. The energy, shared ideas, and team support we experience in the office strengthen the foundation of our success and culture. For this reason, we are generally an office-first business operating on a hybrid model, with team members working in the office four days a week to build relationships, exchange ideas, and grow together. 

OUR RECRUITMENT PROCESS: 

  • Initial Screening: A quick chat with our Talent Acquisition Partner to understand your background and expectations. 
  • Two Hiring Team Interviews: Meet with the Hiring team and Hiring Manager to dive into your expertise, as also discuss team fit. 
  • Final Steps: Receive feedback and, if successful, an offer! 

Additional Information

To be selected for a Senior Executive role at Sportradar or a role within the Compliance, Finance, Integrity, or Legal business areas of Sportradar, Candidates must, as permitted by applicable laws, successfully complete a background check or submit proof of successfully passing such a check. Candidates with criminal histories will be considered in a manner consistent with the applicable requirements necessary for the business area and consistent with applicable laws.

At Sportradar, we celebrate our diverse group of hardworking employees. Sportradar is committed to ensuring equal access to its programs, facilities, and employment opportunities. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. We encourage you to apply even if you only meet most of the requirements (but not 100% of the listed criteria) – we believe skills evolve over time. If you’re willing to learn and grow with us, we invite you to join our team!

Sportradar Group AG London, England Office

London, United Kingdom

Similar Jobs

10 Days Ago
In-Office
Crawley, West Sussex, England, GBR
Senior level
Senior level
Aerospace
Leads cyber security incident response, complex threat investigations, threat hunting, detection engineering, and security automation across cloud, endpoint, network, identity, and application environments. Acts as technical incident lead, improves SIEM and response capabilities, mentors security analysts, coordinates with technology teams and external partners, and provides risk-based recommendations. Participates in an on-call rota and supports out-of-hours incident response.
Top Skills: AWSAzureEdr/XdrKqlLinuxLogic AppsMicrosoft DefenderMicrosoft SentinelMitre Att&CkPowershellPythonSIEMSoarWindows
21 Days Ago
Hybrid
Farnborough, Rushmoor, Hampshire, England, GBR
Senior level
Senior level
Cloud • Consulting • Cybersecurity • Defense
Lead development and maintenance of information security, risk management, and compliance frameworks. Oversee incident response, vulnerability assessments, penetration testing, audits, and assurance reporting. Ensure alignment with standards (ISO 27001, Cyber Essentials, JSPs), GDPR compliance, governance, stakeholder engagement, training, and business continuity. Manage security resources and support secure-by-design throughout system lifecycles.
Top Skills: Cloud TechnologiesCyber EssentialsIso 27001Jsp 440Jsp 453Penetration TestingSecure By DesignVulnerability Assessment
An Hour Ago
Hybrid
London, Greater London, England, GBR
Entry level
Entry level
Fintech • Mobile • Payments • Software • Financial Services
Own Wise’s global card partnerships and expansion strategy across Visa, Mastercard, issuer banks, and acquiring partners. Lead commercial negotiations, card programme economics, market launches, regulatory and compliance initiatives, and cross-functional delivery. Serve as the company’s expert on issuing, acquiring, scheme rules, settlement, interchange, digital wallets, and payment acceptance while shaping product strategy and enabling scalable international growth.
Top Skills: AmlCard AcquiringCard IssuingDigital WalletsFinancial Crime ComplianceInterchangeIssuer ProcessingMastercardPayment AcceptanceSettlementVisa

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account