Sportradar Group AG Logo

Sportradar Group AG

VP, Security Operations

Posted Yesterday
Be an Early Applicant
In-Office
London, Greater London, England, GBR
Entry level
In-Office
London, Greater London, England, GBR
Entry level
Lead Sportradar’s global security operations function, including the SOC, incident response, detection engineering, threat intelligence, threat hunting, and purple teaming. Build and evolve the SOC operating model, tooling, automation, metrics, and distributed technical team. Personally lead major incident response, improve cloud and application detection coverage, oversee SIEM and data lake capabilities, manage DDoS mitigation, and report operational effectiveness to senior leadership.
The summary above was generated by AI
Company Description

We’re the world’s leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and technology to boost their business.

Job Description

Sportradar · Global · Reports to the EVP, Information Security (Group CISO), Privacy and Enterprise Risk 

This is a hands-on leadership role. You need to be technical, in the detail, and able to lead an incident bridge. You will run a global function and own Security Operations end to end: the SOC, incident response, detection engineering and threat intelligence, along with the people and platforms behind them. 

THE CHALLENGE: 

  • Own incident response. 
    • Preparation, triage, containment, eradication, and the post-incident reviews that make the next incident smaller. You will lead major incidents personally and set the standard for what good looks like. 
  • Build the SOC we need next, not the one we have. 
    • Evolve the operating model, the on-call structure, the tooling and the automation. You will have built a SOC before, either from scratch or through a major rebuild. 
  • Treat detection engineering as an engineering discipline. 
    • Detections as code: versioned, tested, tuned, and mapped to the threats that actually target us rather than a vendor's default rule pack. You will drive the coverage roadmap across our cloud estate and applications, and you know the difference between a thousand alerts and one good one. 
  • Make threat intelligence earn its keep. 
    • Build an intel capability that changes what we hunt for, what we detect, and what we brief to leadership. 
  • Be the voice of operational reality. 
    • At the leadership table, you are the person who knows what is happening on the ground, and says so. You will work closely with engineering, product security and the wider InfoSec leadership so that what we build is defensible and what we defend is understood. 
  • Own operational effectiveness. 
    • Define and improve measures that matter: detection coverage, investigation quality, time to detect and contain, escalation effectiveness, and whether lessons from incidents get implemented. 

  ABOUT YOU:

  • Deep, current incident response experience. You have personally led the response to serious incidents rather than observing them from a governance layer. 
  • You have built a SOC: stood one up, or rebuilt one that wasn't working. The operating model, the hiring, the tooling, the metrics. You know what the first 90 days look like because you have lived them. 
  • Technical, with a solid grounding in cloud. You understand how modern cloud environments (AWS, GCP, Azure) are attacked and defended, including identity, logging, lateral movement and containment, and how incident response works within them. 
  • Detection engineering experience. You have built or led detection programmes covering rule development, coverage mapping, tuning and automation, and you can review a detection and tell whether it is good. 
  • Threat intelligence experience. You have built or run an intel function and made it operational, feeding hunts, detections and decisions. 
  • A track record of leading globally distributed technical teams across time zones. 
  • Hands-on experience with SIEM/Data Lakes, implementing and supporting. 
  • Experience with DDoS mitigation. 
  • Experience with threat hunting and purple teaming. 

OUR OFFER

  • A collaborative environment with colleagues from all over the world (Offices in Europe, Asia, North & South America).  
  • Impactful Work: Contribute to the development of groundbreaking products that influence industries globally.
  • Ability to shape your own workday and career via a clearly defined professional and personal development plan. 
  • We are a diverse and collaborative global team with a unique spirit, determined to achieve our goals with integrity and focus.
  • Opportunity to work with senior leadership, develop yourself and build your career within an inspiring and fast-growing company and digital sports environment. 
  • Flexible working model. 

While we appreciate the flexibility and benefits of working from home, we strongly believe that coming together in person fosters stronger connections, encourages collaboration, and drives innovation—both as individuals and as a company. The energy, shared ideas, and team support we experience in the office strengthen the foundation of our success and culture. For this reason, we are generally an office-first business operating on a hybrid model, with team members working in the office four days a week to build relationships, exchange ideas, and grow together. 

OUR RECRUITMENT PROCESS: 

  • Initial Screening: A quick chat with our Talent Acquisition Partner to understand your background and expectations. 
  • Two Hiring Team Interviews: Meet with the Hiring team and Hiring Manager to dive into your expertise, as also discuss team fit. 
  • Final Steps: Receive feedback and, if successful, an offer! 

Additional Information

To be selected for a Senior Executive role at Sportradar or a role within the Compliance, Finance, Integrity, or Legal business areas of Sportradar, Candidates must, as permitted by applicable laws, successfully complete a background check or submit proof of successfully passing such a check. Candidates with criminal histories will be considered in a manner consistent with the applicable requirements necessary for the business area and consistent with applicable laws.

At Sportradar, we celebrate our diverse group of hardworking employees. Sportradar is committed to ensuring equal access to its programs, facilities, and employment opportunities. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. We encourage you to apply even if you only meet most of the requirements (but not 100% of the listed criteria) – we believe skills evolve over time. If you’re willing to learn and grow with us, we invite you to join our team!

Sportradar Group AG London, England Office

London, United Kingdom

Similar Jobs

6 Days Ago
Hybrid
London, Greater London, England, GBR
Mid level
Mid level
Financial Services
Lead a global SOC/Attack Analysis team providing 24/7 monitoring and incident response. Manage SOC analysts, guide alert triage and case analysis, track metrics, improve detection/tuning, coordinate incident workstreams, and prepare senior management communications. Coach and develop team members and collaborate with cross-functional cyber teams and cloud stakeholders.
Top Skills: AWSAzureDnsGCPHttp(S)LinuxOsiPcapSmtpTcp/IpWindows
6 Days Ago
Hybrid
London, Greater London, England, GBR
Senior level
Senior level
Financial Services
Lead design and execution of blockchain security operations: monitor on-chain/off-chain data, detect and respond to threats, collaborate cross-functionally, improve security posture, and implement detection for smart contracts and digital assets.
Top Skills: BlockchainCloudHybridMalware AnalysisNetwork SecurityOn-Chain MonitoringOn-PremSecurity ArchitectureSecurity Information And Event Management (Siem)Smart ContractsThreat Hunting
2 Hours Ago
Remote or Hybrid
Internship
Internship
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Supports project management teams during a 12-week internship by coordinating internal initiatives, maintaining documentation and status reports, organizing meetings and materials, tracking action items and deadlines, and supporting team communications. The role provides hands-on experience coordinating client engagements and process-improvement projects within a cybersecurity environment.
Top Skills: Ai TechnologiesAsanaGainsightJIRASalesforce

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account