Senior Cyber Operations Analyst

Accenture
Manchester, United Kingdom
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior

Job location

Manchester, United Kingdom

Tech stack

Java
Microsoft Windows
Bash
C++
Cloud Computing Security
Computer Security
Computer Programming
Linux
Intrusion Detection and Prevention
Python
Network Security
Network Protocols
Security Information and Event Management
Data Logging
Data Ingestion
Cyber Threat Analysis
Cybercrime
Cyber Warfare
Splunk
Blue Team (Cyber Security)
Vulnerability Analysis

Job description

  • Detection engineering - Develop, maintain, and enhance security detection content primarily for the Splunk SIEM, to enable the detection of threats across diverse platforms (e.g. cloud, endpoints, and networks)
  • Collaborate with the extended security team to identify gaps in detection coverage, log ingestion and alerting based on business risks and threats
  • Review and improve existing SecOps standards and capabilities e.g. by highlighting requirements for additional logging, identifying incident or threat trends and detection and business-as-usual optimisation opportunities
  • Perform security monitoring, reviewing and triaging triggered alerts, and suggesting improvements (on a rota basis 9AM to 5:30PM)
  • Respond to and investigate identified cyber security incidents
  • Act as a point of escalation for junior analysts, supporting them through mentorship and shadowing
  • Operate as a technical subject matter expert on client engagements and be prepared to interact with, and present to, senior stakeholders in a consulting capacity
  • Participate in alert testing and incident response tabletop exercises as required
  • Remain up to date with latest threat intelligence which may be of interest to our clients

Additional responsibilities may include (client dependent):

  • Proactive threat hunting and tradecraft development
  • Incident response and playbook development
  • Change approvals (where applicable)
  • Collection and interpretation of different sources of threat intelligence and researching emerging threats and TTPs.
  • Vulnerability scanning, management and reporting
  • This role includes an opportunity to operate in a management (within Accenture) and leadership capacity (within client) if this aligns with your personal career goals

Note: This role requires an approximately 1-week month on-call availability for high priority incident response. Please note there is additional compensation for this, and the frequency is client dependent.

Requirements

If you are looking to make your mark on a rapidly growing SecOps team with some very exciting clients, look no further. We are searching for an experienced technical Cyber Security Operations Specialist to join our Blue Team. This is a senior role, and the ideal candidate will be a self-starter with an inquisitive nature, keen attention to detail, and a strong background in cybersecurity topics such as threat hunting, attacker tactics and techniques, monitoring and alerting, threat intelligence, and incident readiness and response., The successful candidate should have experience and skills in some of the following areas:

  • Working knowledge of key threat intelligence concepts such as the Pyramid of Pain, Intelligence Preparation for the Cyber Environment (IPCE), and the Threat Intelligence Lifecycle
  • Detection Engineering and Alert Development
  • Experience with Scripting and Programming - e.g. Python/Bash/c/c++/Java
  • Core cybersecurity concepts such as network security, cryptography, cloud security, forensics
  • Understanding of network protocols and how they can be abused by attackers
  • Up to date knowledge of the most prevalent APTs and their TTPs.
  • Knowledge of common analysis techniques associated with Windows and/or Linux

Benefits & conditions

At Accenture in addition to a competitive basic salary, you will also have an extensive benefits package which includes up to 25 days of vacation per year, private medical insurance and three days leave per year for charitable work of your choice!

Flexibility and mobility are required to deliver this role to deliver the first-class services we are known for.

About the company

Our Cyber Practice is a fast-growing community of industry leading experts. The practice covers Assurance, Compliance, Security Operations (SecOps), Offensive Security and Security Research. It is critical that the relevance and quality of the services that we provide is maintained and augmented and that the team members have every opportunity to grow and learn with the organisation., Accenture is committed to providing veteran employment opportunities to our service men and women. Please read Accenture's Recruiting and Hiring Statement for more information on how we process your data during the Recruiting and Hiring process. About Accenture We work with one shared purpose: to deliver on the promise of technology and human ingenuity. Every day, more than 775,000 of us help our stakeholders continuously reinvent. Together, we drive positive change and deliver value to our clients, partners, shareholders, communities, and each other. We believe that delivering value requires innovation, and innovation thrives in an inclusive and diverse environment. We actively foster a workplace free from bias, where everyone feels a sense of belonging and is respected and empowered to do their best work. At Accenture, we see well-being holistically, supporting our people's physical, mental, and financial health. We also provide opportunities to keep skills relevant through certifications, learning, and diverse work experiences. We're proud to be consistently recognized as one of the World's Best Workplaces .

Apply for this position