Senior Cyber Security Analyst

Anson McCade
London, UK
1 day ago
Apply on www.totaljobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£75,000.0
Working hours
Regular working hours

Tech stack

Java (Programming Language) Microsoft Windows Bash Shell C++ (Programming Language) Cloud Computing Cloud Computing Security Cyber Security Computer Programming Intrusion Detection and Prevention Python (Programming Language) Network Security Linux System Administration
+11 more
Network Protocols Security Information and Event Management Data Logging Scripting Data Ingestion Cyber Threat Analysis Cybercrime Pyramid Splunk Blue Team (Cyber Security) Vulnerability Analysis

Job description

The Cyber Security Operations Specialist will use advanced tools and threat intelligence to ensure effective incident detection and response across client environments. Working closely with security analysts and wider teams, the role combines detection engineering, monitoring, incident response and advisory responsibilities, with opportunities for mentoring junior staff and engaging with senior stakeholders., * Detection Engineering: Develop, maintain, and enhance security detection content for SIEM platforms (primarily Splunk) to identify threats across cloud, endpoints, and networks

  • Identify gaps in detection coverage, log ingestion, and alerting, aligned with business risks and threat landscapes
  • Review and optimise SecOps standards and capabilities, including logging requirements, detection trends, and operational improvements
  • Conduct security monitoring, triage triggered alerts, and recommend enhancements (rota basis 9:00-17:30)
  • Respond to and investigate cyber security incidents, escalating where necessary
  • Provide mentorship and support for junior analysts, acting as a technical escalation point
  • Serve as a technical SME on client engagements, including presenting findings and guidance to senior stakeholders
  • Participate in alert testing, incident response exercises, and tabletop simulations
  • Stay current with emerging threats and TTPs relevant to client environments

Additional Responsibilities (Client Dependent):

  • Proactive threat hunting and development of tradecraft
  • Incident response and playbook creation
  • Collection and interpretation of threat intelligence and emerging attacker TTPs
  • Vulnerability scanning, reporting, and management
  • Leadership opportunities in client environments, including incident and operations management

Note: The role includes approximately one week per month on-call for high-priority incident response, with additional compensation. Frequency varies by client. About the Candidate

Requirements

An opportunity exists for an experienced Cyber Security Operations Specialist to join a fast-growing Blue Team within a dynamic Cyber Practice. This senior role offers the chance to work on high-profile client engagements, delivering threat detection, monitoring, incident response, and security operations expertise. The role is ideal for a self-motivated professional with strong technical skills, inquisitive thinking, and a passion for protecting enterprise systems from evolving cyber threats., The ideal candidate will have hands-on experience in cybersecurity operations and threat detection, with knowledge spanning network, cloud, and endpoint security. Key skills include, * Working knowledge of threat intelligence concepts (Pyramid of Pain, IPCE, Threat Intelligence Lifecycle)

  • Detection engineering and alert development experience
  • Scripting or programming skills (Python, Bash, C/C++, Java)
  • Understanding of core cybersecurity concepts: network security, cryptography, cloud security, forensics
  • Knowledge of network protocols and how they may be exploited by attackers
  • Up-to-date awareness of APT groups and their TTPs
  • Experience analysing Windows and/or Linux environments

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.totaljobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:04 min

Rethinking the testing pyramid and deleting risk-free tests

Luise Freese Luise Freese · World Congress 2025

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

4:42 min

Testing interconnected microservices and navigating the test pyramid

Yousaf Nabi Yousaf Nabi · World Congress 2025

Videos

See all

Related articles

See all