Associate Security Analyst - SC

Aspect Resources
London, UK
4 days ago
Apply on www.careerboard.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
£169,000.0 - £182,000.0
Working hours
Regular working hours

Tech stack

Agile Methodology Amazon Web Services Cyber Security Computer Networks Kusto Query Language Security Information and Event Management Cloud Platform System Splunk

Job description

  • triage and investigate cyber security alerts and reports from users
  • use a variety of techniques to analyse systems, files, network traffic and cloud environments and understand the nature and extent of possible cyber incidents
  • support the technical response to cyber incidents by identifying and implementing (or supporting the implementation of) containment, eradication and recovery actions
  • support the coordination of cyber incidents
  • contribute to post-incident reviews to identify lessons and actions
  • identify opportunities for, and support the delivery of, continual improvements to the incident investigation and response capability
  • work closely alongside other Cyber Defence functions, supporting the continual improvement of wider capabilities
  • contribute to internal plans, playbooks and knowledge base articles
  • act as an escalation point for, and provide coaching and mentoring to, apprentice security analysts
  • be responsible for line management of apprentice security analysts
  • Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota, which you will be expected to join.

Requirements

  • At least 2-3 years experience in a position of Cyber Security Analyst
  • Working experience of Splunk
  • Working experience of M365 (Microsoft Defender/Sentinel/KQL), * experience investigating and responding to cyber incidents
  • experience using security tools (eg, EDR, SIEM) to support the investigation and response to cyber incidents
  • Experience with SIEM tools (experience of Splunk preferred but experience of Microsoft
  • Sentinel or an equivalent SIEM tool is acceptable)
  • an understanding of the tools, techniques and procedures commonly used by threat actors
  • good analytical and problem-solving skills
  • good verbal and written communication skills
  • experience with Splunk

It’s desirable, but not essential, that you have:

  • experience working in an Agile environment
  • experience with cloud environments such as AWS

Security Clearance: SC

Disability Confident

As a member of the disability confident scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerboard.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:25 min

Shifting left and creating internal security champion programs

Vandana Verma Sehgal · LIVE

2:58 min

Applying agile software methodologies to corporate operational challenges

Kyle Daigle · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

7:52 min

Q&A on agile implementation and challenging norms

Ivan Milanov Ivan Milanov · Europe 2026 Virtual

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all