> Markdown version of [/jobs/ext/2208082-information-security-analyst-secops-response](https://www.wearedevelopers.com/jobs/ext/2208082-information-security-analyst-secops-response). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Analyst - SecOps Response - **Company:** Starling - **Location:** Southampton, UK - **Experience:** Experienced - **Salary:** £54,977.0 - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Microsoft Windows, Amazon Web Services, Apple Mac Systems, Bash Shell, Cloud Computing, Cyber Security, Computer Programming, Linux, Digital Forensics, Intrusion Detection and Prevention, Python (Programming Language), Network Forensics, Scripting, Malware, Operating System Security, Golang - **Published:** August 24, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5854373570 ## About the Role We have a Hybrid approach to working here at Starling - our preference is that you're located within a commutable distance of one of our offices so that we're able to interact and collaborate in person. In Technology, we're asking that you attend the office a minimum of 1 day per week., * 3+ years experience in a cyber incident response and digital forensics function * Experience in handling incidents * Experience in cloud forensics (GCP, AWS) * Experience in endpoint and server forensics (Windows, MacOS, Linux) * Experience in network forensics * Experience with forensics data acquisition, disk forensics and memory forensics * Experience in supporting and planning Tabletop Exercises * Understanding of network, cloud and operating system security controls * Excellent communication skills (both verbal and written), ability to communicate technical concepts to both technical and non-technical audiences * Demonstrated teamwork and collaboration skills as part of a multi-functional team * Time management, problem-solving and interpersonal skills * Eagerness to learn and apply knowledge to new security challenges * Willingness to share knowledge with the team and mentor colleagues Preferred * Experience with at least one programming or scripting languages (e.g. Python, Go, Bash) * Experience with container security * Experience conducting proactive threat huntings, defining hypotheses, and developing hunting methodologies * Understanding of malware analysis techniques * It would be great if you have one or more of the following qualifications, but it's not essential: * GIAC Certified Forensic Analyst (GCFA) * GIAC Cloud Forensics Responder (GCFR) * GIAC iOS and macOS Examiner (GIME) * 13cubed training in Windows, MacOS or Linux DFIR * Similar training and certifications to the ones mentioned above ## Description We're seeking a passionate and skilled Incident Responder to join our growing Security Operations team, and proactively defend Starling's customers, assets, and systems against emerging threats. This role will be supporting our 24/7 operational capabilities (On-call rota). Reporting to the Information Security Lead - SecOps Response, the analyst's main responsibilities include: * Conducting incident response activities to investigate and contain cyber security incidents * Developing and maintaining incident response and readiness processes * Analyse logs from a variety of sources (e.g. cloud, endpoint, network) to identify root cause and determine next steps for containment, eradication and recovery * Plan and participate in Tabletop Exercises * Document notes, analysis findings, containment steps, and cause for each security incident * Work together with other teams in the organisation to analyse, contain, eradicate and recover from cyber security incidents * Present investigation findings to technical and non-technical audiences * Support the wider SecOps team with detection engineering and threat hunting, Our interviews are conversational and we want to get the best from you, so come with questions and be curious. In general you can expect the below video interviews, following a chat with one of our Talent Team: * First Interview: 45 minutes * Technical Interview: 90 minutes * Final Interview: 30 minutes ## Related Videos - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Go with the Flow: Stop the Leaks Before Your Memory's a Waterfall!](https://www.wearedevelopers.com/videos/100073-go-with-the-flow-stop-the-leaks-before-your-memory-s-a-waterfall) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) - [Scoring 2000 Products per Request: Performance Pitfalls in Golang](https://www.wearedevelopers.com/videos/2073-scoring-2000-products-per-request-performance-pitfalls-in-golang) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Software Engineer Salary London](https://www.wearedevelopers.com/magazine/252-software-engineer-salary-london)