Technical Operations Analyst

BAE Systems
Preston, United Kingdom
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Preston, United Kingdom

Tech stack

API
Big Data
Computer Security
Python
Powershell
Security Information and Event Management
Cyber Warfare
Programming Languages

Job description

  • Assist in the creation, maintenance and troubleshooting of SOAR playbooks, automations and enrichments
  • Using large datasets to construct actionable information to enhance the detection of suspicious activity within the business
  • Onboarding new data sources to increase the visibility of security event information across multiple technologies
  • Using detailed knowledge of the current threat landscape, the TTPs frequently employed in those attacks and how we can investigate and mitigate these
  • Identify where automation can assist the Incident Response team when investigating suspicious activity
  • Creation of analytic content to enable quantifiable metrics on SOCs performance

Requirements

  • Understanding of cyber security
  • Experience working with large datasets
  • Experience with using SIEM platforms and working with event data

Desirable:

  • Experience in programming languages (Python 3, PowerShell)
  • Knowledge of SOAR tooling and its application
  • Knowledge of API interaction

Benefits & conditions

As well as a competitive pension scheme, BAE Systems also offers employee share plans, an extensive range of flexible discounted health, wellbeing and lifestyle benefits, including a green car scheme, private health plans and shopping discounts - you may also be eligible for an annual incentive.

About the company

Cyber Operations is responsible for protecting BAE Systems from Cyber Attack by various threat actors. Not only do we protect BAE Systems and its employees, indirectly we protect those who protect us - who serve in our military and rely on the products and services we create. As part of the Technical Operations team we support SOC functions like Threat Intelligence, Detection, Incident Response and Active Defence work to evolve cyber operations as a world class capability. Why BAE Systems? This is a place where you'll be able to make a real difference. You'll be part of an inclusive culture that values diversity of thought, rewards integrity, and merit, and where you'll be empowered to fulfil your potential. We welcome people from all backgrounds and want to make sure that our recruitment processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments. Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These restrictions mean that factors such as your nationality, any nationalities you may have previously held, and your place of birth can restrict the roles you are eligible to perform within the organisation. All applicants must as a minimum achieve Baseline Personnel Security Standard. Many roles also require higher levels of National Security Vetting where applicants must typically have 5 to 10 years of continuous residency in the UK depending on the vetting level required for the role, to allow for meaningful security vetting checks.

Apply for this position