Unilever
Regional CERT Manager

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
Regional CERT Manager
Location: Sunlight House, Kingston - Full time
Hybrid Working: 3 days per week in the office
About Unilever
Unilever is one of the world’s leading suppliers of Home and Personal Care products with sales in over 190 countries and reaching 2 billion consumers a day. Unilever has more than 400 brands found in homes around the world, including Dove, Tresemme, Lynx, Persil, Domestos and Vaseline.
Faced with the challenge of climate change and the need for human development, we want to move towards a world where everyone can live well and within the natural limits of the planet. That’s why our purpose is ‘to make sustainable living commonplace’
Role Overview
The Regional CERT Manager is responsible for leading cyber incident response operations across the region, ensuring effective detection, containment, investigation, remediation, and recovery from security incidents. This role combines strategic leadership with hands-on technical expertise to drive operational excellence, strengthen security capabilities, and enhance organisational cyber resilience.
Key Responsibilities
- Lead regional Cyber Emergency Response Team (CERT) operations, providing both strategic direction and technical guidance for complex cyber security incidents.
- Own and continuously improve the end-to-end Incident Management lifecycle, ensuring alignment with industry best practices and organisational security objectives.
- Monitor, analyse, and report on key performance indicators (KPIs), metrics, and incident trends to drive continual service improvement and operational effectiveness.
- Direct incident response activities including triage, containment, investigation, remediation, recovery, and stakeholder communications.
- Coordinate major incident investigations with internal teams, external forensic specialists, law enforcement, and third-party partners where required.
- Partner with Security Operations Centre (SOC) teams to enhance detection, monitoring, automation, and response capabilities through effective use of SIEM, EDR/XDR, and SOAR technologies.
- Contribute to security operations projects, ensuring seamless integration of new technologies, processes, and use cases into the incident response framework.
- Manage relationships with key stakeholders, vendors, and managed security service providers, establishing clear governance, accountability, and RACI models.
- Provide leadership, coaching, and professional development to incident response personnel, fostering a high-performing and collaborative team culture.
- Communicate complex cyber security risks, incidents, and remediation strategies effectively to technical and non-technical stakeholders, including senior leadership.
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Essential Skills
- Minimum 8 years' experience within enterprise Security Operations Centre (SOC), Incident Response, or Cyber Defence environments, including at least 3 years in a people leadership role.
- Experience managing and reporting through strong regulation systems like NIS2
- Strong hands-on expertise with SIEM, EDR/XDR, SOAR, threat detection, monitoring, and incident response technologies.
- Practical experience in malware analysis, digital forensics, threat hunting, and network security investigations.
- Proven ability to lead and coordinate major cyber incident response activities within complex global organisations.
- Strong understanding of cyber security operations, threat intelligence, attack methodologies, and adversary techniques.
- Excellent stakeholder management, communication, and influencing skills.
- High levels of integrity, professionalism, and accountability.


Get help with your application
Your very own career expert that helps elevate your application to the next level.
Desirable Skills
- Experience partnering with Legal, Compliance, Privacy, Risk, and Business Continuity teams during significant cyber incidents.
- Working knowledge of scripting and automation tools such as Python, PowerShell, or Perl.
- Knowledge of recognised incident response frameworks and methodologies, including NIST 800-61, ISO 27035, and MITRE ATT&CK.
- Relevant GIAC certifications such as GCFE, GCFA, GREM, GNFA, GCIA, or GMON.
- Cloud security certifications and experience across Azure, AWS, and/or Google Cloud Platform (GCP).
- Experience driving security automation and orchestration initiatives to improve incident response efficiency.
What we offer
Whilst the role is advertised on a full-time basis, we would be happy to discuss possible flexible working options and what this may look like for you. We strive to achieve a family-friendly and inclusive workplace and to, above all, create possibilities for all.
Diversity at Unilever is about inclusion, embracing differences, creating possibilities and growing together for better business performance. We embrace diversity in our workforce. This means giving full and fair consideration to all applicants and continuing development of all employees regardless of age, disability, gender reassignment, race, religion or belief, sex, sexual orientation, marriage and civil partnership, and pregnancy and maternity. We are also more than happy to provide reasonable adjustments during our application and interview process to enable you to be present your best self.
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Location