Role Overview
The Cyber Operations Team Lead oversees the day-to-day performance, delivery, and development of the Cyber Operations function within Client’s Proactive Cyber division. This role provides leadership to a team of Threat Operations Analysts responsible for validating, and communicating security risks, exposed services, and vulnerabilities across Client’s insured customer base.
The Team Lead ensures operational excellence, drives process improvement, manages workload distribution, and serves as a senior technical escalation point. The ideal candidate combines strong leadership capability with deep technical understanding of attack surfaces, exposure analysis, and modern cyber threats.
Key Responsibilities
Team Leadership & Management
Lead, mentor, and develop a team of Threat Operations Analysts, ensuring high-quality output and strong technical performance.
Oversee day-to-day workflow, case allocation, and SLA management.
Conduct regular quality reviews of analyst findings, advisories, and attribution assessments.
Support hiring, onboarding, training, and ongoing professional development of team members.
Operational Oversight
Ensure accuracy, consistency, and timeliness of threat and vulnerability notifications delivered to customers.
Monitor operational metrics, case volumes, detection triggers, and workload distribution.
Drive continuous improvement of processes, documentation, and internal playbooks.
Coordinate closely with CTRL (Client Threat Research Labs) to ensure smooth integration of new detection patterns, use cases, and scanning methodologies.
Technical Escalation
Serve as the senior escalation point for complex exposure validation, disputed asset ownership, unusual detections, or high-impact vulnerabilities.
Support Underwriting, Customer Support, and Claims with expert analysis when required.
Cross-Team Collaboration
Work with CTRL researchers to feed back real-world findings, false positive trends, and enhancement opportunities for detection pipelines.
Collaborate with the Proactive Engineering and Data teams on tooling, automation, and dataset improvements.
Ensure alignment between UK and Sri Lanka proactive teams.
Customer & Stakeholder Engagement
Oversee the quality of outbound advisories and ensure communications meet Client standards.
Engage directly with brokers or customers for complex cases requiring senior technical clarification.
Represent the Cyber Operations function in internal reviews, presentations, and cross-department initiatives.
Strategic Contribution
Help shape the roadmap of the Cyber Operations function and contribute to the evolution of proactive risk-reduction services.
Identify operational gaps, process inefficiencies, and opportunities for automation or improved accuracy.
Support the rollout of new service lines, detection logic, and operational capabilities.
Required Skills & Knowledge
Strong foundational understanding of networking (TCP/IP, ports, protocols) and common internet-facing services.
Excellent grasp of vulnerability mechanics, CVE/CVSS scoring, adversary behaviours, and exploitation principles.
Experience using exposure assessment tools and datasets (Shodan, Censys, LeakIX, Nuclei, DNS/WHOIS investigations).
Ability to review and validate complex attribution or mitigation scenarios.
Skilled at translating technical issues into clear, actionable customer-ready communication.
Required Skills & Knowledge
Strong foundational understanding of networking (TCP/IP, ports, protocols) and common internet-facing services.
Excellent grasp of vulnerability mechanics, CVE/CVSS scoring, adversary behaviours, and exploitation principles.
Experience using exposure assessment tools and datasets (Shodan, Censys, LeakIX, Nuclei, DNS/WHOIS investigations).
Ability to review and validate complex attribution or mitigation scenarios.
Skilled at translating technical issues into clear, actionable customer-ready communication.
Experience
Senior experience in a cyber operations, SOC, MSSP, threat monitoring, or similar environment.
Demonstrated experience leading or mentoring analysts, or managing operational workflows.
Proven background in exposure validation, or threat verification.
Experience working across distributed teams is advantageous.
Certifications (Desired but Not Essential)
CompTIA Security+, CySA+, Network+, or equivalent vendor-neutral certifications.
GIAC, eLearnSecurity, or other advanced training is beneficial.
Personal Qualities
Strong leadership presence with the ability to motivate and mentor a growing team.
High attention to detail and strong analytical capability.
Clear and confident communicator with excellent organisational skills.
Proactive mindset, comfortable making decisions in fast-moving operational environments.
Passionate about improving processes, accuracy, and customer outcomes.
Teamwork, quality of life, professional and personal development: values that Virtusa is proud to embody. When you join us, you join a team of 27,000 people globally that cares about your growth — one that seeks to provide you with exciting projects, opportunities and work with state of the art technologies throughout your career with us.
Great minds, great potential: it all comes together at Virtusa. We value collaboration and the team environment of our company, and seek to provide great minds with a dynamic place to nurture new ideas and foster excellence.
Virtusa is an Equal Opportunity Employer. All applicants will receive fair and impartial treatment without regard to race, color, religion, sex, national origin, ancestry, age, legally protected physical or mental disability, protected veteran status, status in the U.S. uniformed services, sexual orientation, gender identity or expression, marital status, genetic information or on any other basis which is protected under applicable federal, state or local law.
Applicants may be required to attend interviews in person or by video conference. In addition, candidates may be required to present their current state or government-issued ID during each interview. All candidates must be authorized to work in the USA.
Learn more
Have any questions?
To join our bright team of professionals, you can apply directly to our website under the Careers tab and search all open jobs. https://www.virtusa.com/careers
Yes, you can. Virtusa gives you the flexibility to apply for multiple open positions that excite you about your future and align to your experience and career goals.
Yes, you can. Virtusa is a global Company, and we serve our clients through our global delivery model.
Our dedicated recruitment team will review your online application and match it to all our open jobs. We update our open jobs on a daily basis and encourage you to check back often.
Our team of recruiters will review your application, relevant job experience, and skills to appropriately align it to our open jobs. From there, the recruitment team will contact the qualified candidate to start the interview process.
Want to explore the ways you can engineer your career in technology? Our thought leaders share key career insights for candidates from entry-level job seekers to senior technologists.
Check your downloads folder for files and implementation instructions.
Assets are now available in your profile for future editing and use.