Operations Advisor, Cyber Defense Operations

Cyderes
UK
19 days ago
Apply on www.adzuna.co.uk
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
£50,302.0
Working hours
Regular working hours

Tech stack

Cyber Security Query Languages Intrusion Detection and Prevention Kusto Query Language Security Information and Event Management Cybercrime Microsoft Sentinel Cyber Warfare Splunk

Job description

The Operations Advisor is the primary technical owner of detection outcomes for assigned clients. You improve detection quality, identify gaps in coverage, and advance client security maturity through expert-level advisory and hands-on detection engineering. You lead the technical account relationship, and you deliver measurable outcomes that clients can see and trust. This role reports to Manager, Cyber Defense Operations Responsibilities

  • Own and maintain detection coverage aligned to the Cyderes Rule Set
  • Lead tuning and optimization of detection rules across SIEM platforms
  • Identify, prioritize, and remediate detection gaps
  • Be a trusted advisor on detection strategy and operational effectiveness
  • Identify detection improvements based on real-world incident insights
  • Partner with SOC and DFIR teams during escalations
  • Oversee the technical account relationship for assigned clients
  • Lead technical cadence calls focused on detection performance, gaps, and outcomes
  • Translate technical findings into risk-based, business-relevant insights
  • Guide clients on prioritization of improvements based on detection impact
  • Be a trusted advisor on detection strategy and operational effectiveness

Requirements

  • 3-5 years of experience in detection engineering, security operations, or a related discipline
  • Hands-on proficiency with one or more enterprise SIEM platforms (Splunk, Microsoft Sentinel, Chronicle, or equivalent)
  • Demonstrated experience writing and tuning detection rules in production environments
  • Experience in a managed security services or MSSP environment serving multiple clients
  • Proficiency in multiple SIEM query languages (SPL, KQL, YARA-L, or similar)
  • Familiarity with SOAR platforms and automation-assisted detection workflows
  • Experience with threat hunting methodologies and retrohunt program execution
  • Relevant certifications: GCIA, GCIH, GCDA, or SIEM vendor certifications

Benefits & conditions

Today’s threatscape is relentless. So are we. At Cyderes, we build practical Identity & Access Management (IAM), Exposure Management, and risk programs, helping organizations stop active threats fast with Managed Detection & Response (MDR) that integrates with existing tools. Powering it all is Meridian, our entity fabric that connects identities, assets, and access into one trusted reality. Augmented by AI and driven by seasoned operators, our tireless global team arms organizations with the people, platforms, and perspectives they need to conquer whatever tomorrow throws their way. Great Place to Work® Certified | United States | Canada | United Kingdom | India

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.co.uk
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

Videos

See all

Related articles

See all