Associate Cyber Security Analyst
CCL Global
London, UK
6 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.securityclearedjobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source
Tech stack
Microsoft Windows
Agile Methodology
Amazon Web Services
Microsoft Antivirus
Cyber Security
Kusto Query Language
Security Information and Event Management
Cloud Platform System
SC Clearance
Cybercrime
Microsoft Sentinel
Splunk
Job description
- Triage and investigate cyber security alerts and incidents, including reports from users.
- Analyse systems, files, network traffic and cloud environments to identify potential threats and determine the extent of incidents.
- Support incident containment, eradication and recovery activities. Assist with incident coordination and contribute to post-incident reviews.
- Use SIEM and endpoint security tools to investigate suspicious activity and support incident response.
- Identify opportunities to improve detection, investigation and response processes.
- Develop and maintain incident response playbooks, internal guidance and knowledge-base articles.
- Work closely with other Cyber Defence teams to strengthen security capabilities.
- Provide technical guidance, coaching and line management to apprentice security analysts.
- Participate in an out-of-hours incident response rota.
Requirements
This is a hands-on role suited to analysts with experience using Splunk, Microsoft Defender, Sentinel and KQL in a security operations environment., * Active SC clearance. At least 2-3 years’ experience in a Cyber Security Analyst or similar security operations role.
- Practical experience investigating and responding to cyber security incidents. Working experience with Splunk.
- Working knowledge of Microsoft 365 security tools, particularly Microsoft Defender, Microsoft Sentinel and KQL.
- Experience using SIEM and endpoint detection and response (EDR) tools.
- Understanding of common cyber threats, attacker techniques and incident response processes.
- Strong analytical, problem-solving and communication skills.
- Ability to make effective decisions, work collaboratively and contribute to continuous improvement.
Desirable Experience
- Experience working in an Agile environment.
- Familiarity with AWS or other cloud environments.
- Previous experience coaching or mentoring junior security analysts.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.securityclearedjobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…