Cyber Security Analyst
Role details
Job location
Tech stack
Job description
ASH are looking for a Cyber Security Analyst to join the consulting team and support increasing demand from our clients. You'll be working as part of a project or service team, owning specific security outcomes and processes, and supporting client meetings and engagements.
You'll be involved in our technical security consulting engagements. The exact nature of these varies across clients but focusses on using security technologies to solve security, and wider organisational, challenges and would typically include:
- Developing deep SME in key security technologies, e.g. cyber asset management platforms, to deliver insight and value to clients.
- Supporting discreet cyber hygiene assessments through operating agent-based, and agent-less, techniques.
- Working alongside ASH and/or client architects to develop security technology roadmaps based on business requirements.
- Working alongside ASH and/or client engineers to optimise the effectiveness of security tools and platforms.
- Consuming and operationalising modern security technologies, including XDR and SIEM solutions, to enhance visibility, threat detection, and response effectiveness for clients.
- Performing research and investigations to solve client's technical security problems.
- Preparing impactful reports on security posture with pragmatic recommendations for improvement.
- Supporting the productisation of ASH Cyber security processes and services.
Requirements
Do you have experience in Network protocols?, * Broad cyber security knowledge across technical and organisational domains and common industry frameworks such as NIST CSF and ISO27001.
- Demonstrable experience of operating a key security process, such as vulnerability management, threat detection and response, or cyber security attack surface management,
- Hands-on expertise across a range of modern security technologies such as XDR, SIEM, vulnerability scanning.
- Highly proactive and well organised to take the initiative, and manage, their own workload.
- Demonstrable critical thinking skills to understand technical security challenges and develop potential solutions to them.
- Experience developing and automating internal security tools or workflows to enhance efficiency and re-use across client engagements.
- Excellent written and verbal communication skills to convey security-related information effectively.
- Experience of consulting and working with clients through project and service delivery.
- Educated to degree, or equivalent, level.
Benefits & conditions
What we offer:
- Ongoing professional development directed by industry leaders including informal and informal training, relevant certifications, conferences, and events.
- A supportive, ambitious, and entrepreneurial environment that enables and rewards high performance.
- £45,000-55,000 base salary with profit-share bonus scheme.
- 25 days annual leave (+ UK bank holidays).
- Private healthcare insurance.
- Quarterly company charity and social events.
- Home-based with travel to client and company locations as required., * Company events
- Company pension
- Employee mentoring programme
- Private medical insurance
- Profit sharing
- Sick pay
- Work from home
Application question(s):
- What's the most interesting cyber security challenge or project that you've worked on in last 2 years?
- If you could change one cyber security industry norm what would it be, and why, and what you would do differently?