Opnet Incident & Vulnerability Security Engineer

QinetiQ Group plc
Corsham, United Kingdom
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English

Job location

Corsham, United Kingdom

Tech stack

Microsoft Windows
Bash
Computer Security
Linux
Digital Forensics
Perl
Intrusion Detection Systems
Python
Powershell
Security Information and Event Management
Systems Integration
Mitre Att&ck
Malware
Cyber Threat Analysis
Security Orchestration, Automation & Response

Job description

As a Opnet Incident & Vulnerability Security Engineer you will be responsible for the day-to-day maintenance, optimisation and automation of SOC tooling across the Protect, Detect and Respond functions within the NIST Cybersecurity Framework.

Day-to-day, you'll contribute to the development and configuration of new or revised SOC tooling, support of forensic investigations, monitoring adversary tactics, techniques and procedures whilst maintaining compliance.

Your responsibilities will include:

  • Supporting the development, implementation and configuration of new or enhanced SOC tooling ensuring alignment with the business needs
  • Driving optimisation and automation across SOC tooling to enhance detection and response, reduce analyst workload, deliver full support to the Protect, Detect and Respond functions
  • Delivering full tooling visibility and independent assurance of all assets
  • Managing, administering and maintaining security devices dailys (e.g , firewalls, IDS/IPS, SIEM, SOAR, EDR)
  • Developing and tuning detection signatures, automation scripts and correlation rules to improve SOC detection capabilities
  • Integrating standard and non-standard log sources into SIEM platforms, This role is 37 hours per week based at Corsham. Hybrid working patterns available. Travel to customer sites will be expected.

Requirements

  • Proven hands-on experience in the implementation, maintenance and configurations of a wide range of SIEM and SOAR platforms
  • Previous experience of applying ISO 27001:2013 security and risk controls
  • The ability to script and automate using Python, Perl, PowerShell, BASH or equivalent languages to support SOC operations
  • Demonstrable experience of applying the MITRE ATT&CK adversarial framework to map attacker TTPs and IoCs into actionable detection use cases
  • Previous experience of digital forensics, malware analysis and threat intelligence
  • The ability to work with Windows and Linux operating systems with a strong background in the analysis of TTPs, We value difference and we don't have a fixed idea when it comes to background or education, provided you can show the required level of experience and willingness to learn then we would like to hear from you.

Benefits & conditions

  • Matched contribution pension scheme, with life assurance
  • Generous holiday allowance, with the option to purchase additional days
  • Options to join Health Cash Plan, Private Medical Insurance and Dental Insurance
  • Employee discount portal: Personal Accident Insurance, Travel Insurance, Restaurants, Cinema Tickets and much more
  • We are proud to support the Armed Forces community by honouring the Armed Forces Covenant and maintaining our Gold Award standard in the Defence Employer Recognition Scheme
  • Volunteering Opportunities - helping charities and local community

Our Recruitment Process:

We want to make sure that our recruitment process is as inclusive as possible and we aspire to bring out the best in our candidates by creating an environment where everyone feels value, heard and supported. If you have a disability or health condition that may affect your performance in certain assessment types, please speak to your Recruiter about potential reasonable adjustments.

Many roles in QinetiQ are subject to national security vetting being completed, applicants who already hold the appropriate level of vetting may be able to transfer it upon appointment. A number of roles are also subject to additional restrictions, which mean factors such as nationality or previous nationalities may affect the roles that you can be employed in.

About the company

As we continue to grow into new markets around the world, there's never been a more exciting time to join QinetiQ. The formula for success is our appetite for innovation and having the courage to take on a wide variety of complex challenges. As a QinetiQ employee, you'll experience a unique working environment where teams from different backgrounds, disciplines and experiences enjoy collaborating widely and openly as we undertake this exciting and rewarding journey. Through effective teamwork, and pulling together, you'll get to experience what happens when we all share different perspectives, blend disciplines, and link technologies; constantly discovering new ways of solving complex problems in a diverse and inclusive environment where you can be authentic, feel valued and realise your full potential. Visit our website to read more about our diverse and inclusive workplace culture. www.qinetiq.com/en/careers/life-at-qinetiq, About QinetiQ We are a company of over 6,000 employees worldwide committed to listening, understanding and responding to our customers' needs. This enables us to use our depth of experience and our unique science and engineering expertise to equip them with powerful solutions to their most pressing challenges. We offer our customers world-class expertise in advice, services (particularly test and evaluation) and innovative technology-based products. We deploy our scientific and technological knowledge, proven research capabilities and unique, purpose-built facilities to provide both services and products that meet the needs of a wide range of global customers. We operate primarily in the defence, security and aerospace markets and our customers are predominantly government organisations, including defence departments, as well as international customers in other targeted sectors., Our people are pragmatic and hugely experienced, looking always for enterprising, agile ways to create real benefit and added value. They are also natural collaborators, adept at making vital connections through forging industry partnerships and harnessing the best talents within the supply chain. We strongly encourage our people to widen the depth and breadth of their experience, in a working culture that's supportive, dynamic and challenging. The only limits will be the ones you set yourself. If you're looking for a unique opportunity to work with some of the brightest scientific and technical minds, to solve some of the world's most challenging problems, check out our Cyber, Information and Training roles on the links above., As we continue to grow into new markets around the world, there's never been a more exciting time to join QinetiQ. The formula for success for QinetiQ is the appetite for innovation, courage to take on a wide variety of complex challenges and motivated people who work to deliver the best possible solutions to partners. Joining QinetiQ offers an opportunity to work on highly technical cutting edge projects, enabling customers to protect, improve and advance their vital interests. Our domains With expertise in land, sea, air, space and even cyber, one of the great things about working for QinetiQ is the opportunity to work in many different domains. We have a broad range of customers which need your help. Whether it's engineering aircrafts, developing robotics or testing submarine acoustics, your role will be integral to your chosen domain and provide you with unique insight and experience. Our Engineers provide world-class independent technical advice and guidance on all aspects of engineering, operating at all levels and disciplines across QinetiQ - Software, Systems, Design, Structural, Mechanical, Safety, Electrical, Communications and Electronics. What's in it for you? Together our people deliver for our customers, enabling us to grow our company, so it's important that we share in our success. Through our Rewarding for Performance programme, which includes an All Employee Incentive Scheme, we ensure there is a clear link between the contribution you make and the reward you receive. Our success depends on our people, so looking after their health and wellbeing is really important. We offer advice and support including access to our Employee Assistance Programme, which is open 24/7. In addition, at many of our locations we have on-site gym and sports facilities. After you have completed three months continuous service, you will be entitled to receive payment for periods of absence. We encourage our people to have fun together too through our community for new starters.

Apply for this position