IT Information Security Manager
We are on the search for a passionate, dynamic and charismatic individual to join us at our London Central Services as IT Information Security Manager.
This is a fantastic opportunity for someone looking for a new challenge in a hands-on role. You’ll also need to live and breathe our values; be Creative by being playful and inspiring. Being Genuine by always being true to who we are, and by being Smart by delivering results in a clever and effective way.
What you’ll do:
- Own the YOTEL security stack and act as the primary point of contact for our managed SOC, overseeing the relationship, SLAs, escalations, and detection tuning.
- Triage and coordinate responses to security alerts and incidents, ensuring prompt and effective management.
- Handle identity and access controls, including Conditional Access, MFA, Identity Protection, and PIM.
- Drive vulnerability management, compliance efforts (PCI-DSS, Cyber Essentials Plus), and comprehensive security reporting.
- Continuously work to harden our security posture and improve our Microsoft Secure Score.
- Maintain and manage the IT security risk register.
- Own and maintain an accurate inventory of all hardware and software assets across our estate.
- Ensure all devices are onboarded with appropriate security, asset management tools and correct policies applied.
- Manage software licensing compliance and optimise usage within Microsoft 365.
- Oversee device management and compliance using Microsoft Intune.
- Track assets throughout their lifecycle—from setup to disposal—guaranteeing secure configuration and proper retirement.
What you’ll bring:
- At least three years of experience in IT security or security operations.
- Strong, hands-on experience administering Microsoft 365 and/or related security tools, such as Microsoft Defender, Crowd Strike, Entra ID, and Intune.
- Demonstrable expertise with Microsoft Defender XDR and/or Microsoft Sentinel.
- Proven experience working with a SOC or managing a managed security service provider, with the ability to hold vendors accountable for SLAs and outcomes.
- Solid understanding of identity and access management, including Conditional Access and multi-factor authentication.
- Working knowledge of incident response processes, with the ability to stay calm and coordinate effectively under pressure.
- A good grasp of common attack techniques and the modern threat landscape, such as phishing, ransomware, and identity-based attacks.
- Excellent communication skills, enabling them to bridge the gap between technical SOC analysts and non-technical business stakeholders.
- The ability to clearly articulate security concepts to a non-technical audience.
- Right to work in the UK.
About YOTEL
With 23 properties in sought-after locations globally, YOTEL is for people on the move. People who are experiencing, doing and achieving; Non-Stop. From buzzing cities to bustling airports YOTEL exists to challenge the status quo of the hospitality industry and deliver a different experience for guests through smart design, creative technology and awesome people. YOTEL is the pit stop for the Non-Stop.