Associate Security Analyst - SC
Aspect Resources
London, UK
4 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.careerboard.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
£169,000.0 - £182,000.0
Working hours
Regular working hours
Job source
Tech stack
Agile Methodology
Amazon Web Services
Cyber Security
Computer Networks
Kusto Query Language
Security Information and Event Management
Cloud Platform System
Splunk
Job description
- triage and investigate cyber security alerts and reports from users
- use a variety of techniques to analyse systems, files, network traffic and cloud environments and understand the nature and extent of possible cyber incidents
- support the technical response to cyber incidents by identifying and implementing (or supporting the implementation of) containment, eradication and recovery actions
- support the coordination of cyber incidents
- contribute to post-incident reviews to identify lessons and actions
- identify opportunities for, and support the delivery of, continual improvements to the incident investigation and response capability
- work closely alongside other Cyber Defence functions, supporting the continual improvement of wider capabilities
- contribute to internal plans, playbooks and knowledge base articles
- act as an escalation point for, and provide coaching and mentoring to, apprentice security analysts
- be responsible for line management of apprentice security analysts
- Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota, which you will be expected to join.
Requirements
- At least 2-3 years experience in a position of Cyber Security Analyst
- Working experience of Splunk
- Working experience of M365 (Microsoft Defender/Sentinel/KQL), * experience investigating and responding to cyber incidents
- experience using security tools (eg, EDR, SIEM) to support the investigation and response to cyber incidents
- Experience with SIEM tools (experience of Splunk preferred but experience of Microsoft
- Sentinel or an equivalent SIEM tool is acceptable)
- an understanding of the tools, techniques and procedures commonly used by threat actors
- good analytical and problem-solving skills
- good verbal and written communication skills
- experience with Splunk
It’s desirable, but not essential, that you have:
- experience working in an Agile environment
- experience with cloud environments such as AWS
Security Clearance: SC
Disability Confident
As a member of the disability confident scheme, CLIENT guarantees to interview all candidates who have a disability and who meet all the essential criteria for the vacancy. In cases where we have a high volume of candidates who have a disability who meet all the essential criteria, we will interview the best candidates from within that group.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.careerboard.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
EM
Eli McGarvie
about 3 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
about 2 years ago
DC
Daniel Cranney
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
10 months ago
EM
Eli McGarvie
Software Engineer Salary London
about 3 years ago