Senior CSIRT Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+1 more
Job description
environments. You will use cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure, AWS, to strengthen detection and response capabilities. You will also participate in purple team and red team exercises, continuously validating and improving the team’s effectiveness against advanced adversaries. As a senior member of the team, you will also mentor junior analysts, contribute to automation initiatives and support the on-call escalation rota for out-of-hours response.Key responsibilities of the role include:Investigating and responding to complex security incidents across cloud, hybrid, and on-premise environmentsProactively hunting for threats and developing detection logic across SIEM and cloud security systemsParticipating in red and purple team exercises to test, validate and enhance detection and response capabilitiesDeveloping and maintaining automation workflows using tools such as Tines and PythonCollaborating with engineering teams to improve log ingestion
Requirements
detection rules and platform reliabilityMentoring and supporting junior analysts through knowledge sharing and technical guidanceParticipating in the on-call escalation rota for out-of-hours incidentsImproving CSIRT processes, playbooks and threat modelsWho are we looking for?The ideal candidate will have the following skills and experience:Significant experience in cyber incident response, detection engineering or SOC and CSIRT operationsStrong cloud security expertise across AWS and Azure, including hands-on incident investigationProficiency with SIEM platforms and log analysisExperience with red and purple team exercises and adversary simulationKnowledge of containerised environments and cloud-native infrastructure securityProgramming or scripting experience, preferably in Python, and exposure to automation platformsStrong understanding of modern attack techniques, threat actors and the MITRE ATT&CK frameworkExperience mentoring or leading within a security operations environmentStrong
Benefits & conditions
analytical skills with the ability to investigate complex threats, identify root causes and operate effectively under pressureCollaborative approach with the ability to work across teams while supporting and developing othersProactive mindset with an interest in automation and continuously improving detection and responseWhy should you apply?Highly competitive compensation plus annual discretionary bonusLunch provided (via Just Eat for Business) and dedicated barista bar35 days’ annual leave9% company pension contributionsInformal dress code and excellent work/life balanceComprehensive healthcare and life assuranceCycle-to-work schemeMonthly company eventsG-Research is committed to cultivating and preserving an inclusive work environment. We are an ideas-driven business and we place great value on diversity of experience and opinions. We want to ensure that applicants receive a recruitment experience that enables them to perform at their best. If you have a disability or special need that requires accommodation please let us know in the relevant section At G-Research, we are passionate about the intersection of finance, technology, and the future. We offer a dynamic, flexible and highly stimulating culture where world-beating ideas are cultivated and rewarded. We are proud to employ some of the best people in their field and to nurture our talent in our collaborative working environment. #J-18808-Ljbffr
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…