Security Operations Specialist
Role details
Job location
Tech stack
Job description
The Security Operations Specialist will play a key role in maintaining and enhancing Quilter's security posture. This role supports the detection, triage, and response to security threats across the organisation's infrastructure, cloud, and endpoint environments. The successful candidate will form part of the existing Security Operations function with rotation of core responsibilities a key aspect of the role. Within this role you will work closely with internal teams and external MSSP's to ensure timely and effective incident handling, vulnerability management, data loss and operational readiness., Threat Detection & Incident Response
- Monitor and triage security alerts from SIEM platforms and related security tools.
- Lead containment, eradication, and recovery efforts in line with Quilter's Security Incident Response Framework and related Playbooks and Runbooks.
- Collaborate with SOC partner to ensure streamlined incident response and case management maturity objectives are met.
- Create, maintain and improve triage playbooks and runbooks for relevant incident response scenarios.
Vulnerability & Risk Management
- Support Vulnerability Management Specialist with scanning and remediation efforts using Qualys and MS Azure compliance tooling.
- Drive continuous improvement of security control gap and maturity initiatives identified within the business.
- Ensure the ongoing assessment of newly disclosed threats related to Quilter, the financial industry and related technology stacks are performed efficiently and effectively in co-operation with the Cyber Threat team.
Tooling & Platform Operations
- Operate and maintain security tooling including CrowdStrike, Proofpoint, and the Microsoft Defender Suite.
- Support Detection Engineer with ongoing tuning and refinement of SIEM platform.
Insider Risk / Data Loss Prevention
- Ensure the ongoing triage and monitoring of key data egress detection and prevention technologies deployed within the business.
- Support with the creation and tuning of data loss detection and prevention policies.
Reporting & Governance
- Contribute to governance reporting and metrics for security operations activities.
- Maintain evidence and documentation in line with internal audit and compliance requirements.
Collaboration & Continuous Improvement
- Participate in cyber exercises both technical and tabletop orientated with the aim of improving upon existing incident readiness and team capabilities.
- Engage with infrastructure, application, and internal business stakeholders to align security operations with business needs.
Requirements
Do you have experience in SIEM?, Do you have a Bachelor's degree?, * Solid exposure in a Security Operations or SOC role including prior technical IT experience.
- Proven track record leading and managing major security incidents, including senior stakeholder engagement.
- Experience with SIEM platforms (Google SecOps, Microsoft Sentinel).
- Familiarity with EDR, DLP, and email hygiene tools.
- Strong understanding of MITRE ATT&CK, threat modelling, and popular incident detection frameworks.
- Excellent knowledge of cloud security principles and underlying architecture (Azure, AWS).
- Strong analytical and troubleshooting skills.
- Excellent written and verbal communication.
- Core understanding of regulated business operational frameworks.
Desirable Qualifications
- Bachelor's degree in Cybersecurity, Intelligence Studies, Computer Science, or related field.
- Certifications: CISSP, CISM, CCSP, GIAC, CPIA or similar.
Benefits & conditions
Inclusion & Diversity We value diversity and strive to promote inclusivity in all aspects of our culture. We believe in equal opportunities for all, ensuring that no applicant encounters less favourable treatment based on anything but their skills, qualifications, experience, and potential. We celebrate the unique contributions of a diverse workforce and create a respectful, nurturing environment where every colleague can thrive. Values Do the right thing: We act with integrity and are proudly committed to going above and beyond in service of our clients and the support we provide our communities. Always curious: We continuously seek new ideas and knowledge so we're one step ahead of our clients' needs. We look for inspiration everywhere and encourage experimentation, recognising that this is how we create brilliant solutions for brighter futures. Embrace challenge: We aim high to transform our potential into meaningful outcomes. With ambition as our driving force and a steadfast commitment to growth, we succeed for the good of every generation. Stronger together: Combining our diverse talents, we accomplish more collectively than we ever could do alone. We speak openly, actively listen, and support each other, and constructively challenge and embrace new ideas. We seek empowerment and demonstrate ownership and trust, with the confidence to make impactful decisions. Core Benefits Holiday: 182 hours (26 days) Quilter Incentive Scheme: All employees are eligible to participate in incentive scheme, to incentivise business performance and their contribution. Pension Scheme: A non-contributory company pension scheme that can be boosted through personal contributions. Private Medical Insurance: Single cover as standard with options to increase cover to include your partner or children. Life Assurance: 4x your salary. Income Protection: 75% of salary, less state benefits, payable after 26 weeks of absence. Healthcare Cash Plan: Jersey employees only In addition to our core benefits, we offer a range of flexible benefits to UK employees that you can choose from and pay for conveniently via a salary deduction.