Senior Security Monitoring and Response Analyst

MasterCard
UK
25 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours

Tech stack

Microsoft Windows Amazon Web Services Microsoft Azure Unix Cloud Computing Security Cyber Security Digital Forensics Network Forensics Security Information and Event Management Google Cloud Mitre Att&ck Malware
+3 more
Cyber Threat Analysis Cybercrime Vulnerability Analysis

Job description

Mastercard Vocalink is looking for a driven and motivated Senior Security Operations Analyst with Incident Response capabilities, to contribute to securing critical payments infrastructure in the UK.

In this role you’ll be responsible for triaging alerts and responding to security incidents. When not actively engaged in ongoing incidents, the team works on the improvement and streamlining of the detection and response function.

Role Responsibilities

Providing monitoring coverage, triage and investigation of escalated alerts (T3) from various sources. Responding to cybersecurity incidents through critical thinking, defining, and applying playbook responses

Applying root cause analysis and lessons learned to improve security posture and processes

Working closely with security engineering, threat intelligence, insider threat and a managed SOC service, providing critical feedback to improve and automate monitoring and response

Strong collaboration with the team to develop knowledge base, playbook and use cases.

Proactive initiatives and project-related support by providing subject matter expertise

Ability to work independently as well as collaborate with different teams to assess impact, mitigate risk, and resolve security incidents., All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:

  • Abide by Mastercard’s security policies and practices;
  • Ensure the confidentiality and integrity of the information being accessed;
  • Report any suspected information security violation or breach, and
  • Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.

Requirements

Direct experience in a Security Operations Center (SOC). Experience working in an incident response or digital forensics role. Demonstrated experience with cybersecurity related disciplines, not limited to: e.g. vulnerability research, network traffic analysis, static and dynamic malware analysis, digital forensics, memory analysis, web-security and threat hunting.

Preferred Experience:

Experience in creating queries and alerts in a SIEM, preferably in SPL. Experience with Windows/Unix OS forensics. Experience with Cloud Security (Azure, AWS, GCP). Experience working with NDR/EDR solutions Familiarity with Indicators of Compromise (IoCs), Indicators of Attack (IoAs), ATT&CK Tools, Techniques and Procedures (TTPs). Strong interpersonal skills, including good communication with the ability to articulate ideas in a precise and concise manner. CISSP, GIAC certifications or equivalent.

The Ideal candidate is a technically inclined and experienced security specialist who enjoys working in a fast-paced collaborative team environment.

About the company

Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 ¡ LIVE

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 ¡ LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa ¡ LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin ¡ World Congress 2022

1:27 min

Differences between autonomous AI agents and traditional malware

Michele Zuccala Michele Zuccala +4 ¡ World Congress 2026 Europe

2:04 min

Defining timestamps and the international standard format

Denny Biasiolli Denny Biasiolli ¡ Europe 2026 Virtual

Videos

See all

Related articles

See all