Associate Cyber Security Analyst

CCL Global
London, UK
6 days ago
Apply on www.securityclearedjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Agile Methodology Amazon Web Services Microsoft Antivirus Cyber Security Kusto Query Language Security Information and Event Management Cloud Platform System SC Clearance Cybercrime Microsoft Sentinel Splunk

Job description

  • Triage and investigate cyber security alerts and incidents, including reports from users.
  • Analyse systems, files, network traffic and cloud environments to identify potential threats and determine the extent of incidents.
  • Support incident containment, eradication and recovery activities. Assist with incident coordination and contribute to post-incident reviews.
  • Use SIEM and endpoint security tools to investigate suspicious activity and support incident response.
  • Identify opportunities to improve detection, investigation and response processes.
  • Develop and maintain incident response playbooks, internal guidance and knowledge-base articles.
  • Work closely with other Cyber Defence teams to strengthen security capabilities.
  • Provide technical guidance, coaching and line management to apprentice security analysts.
  • Participate in an out-of-hours incident response rota.

Requirements

This is a hands-on role suited to analysts with experience using Splunk, Microsoft Defender, Sentinel and KQL in a security operations environment., * Active SC clearance. At least 2-3 years’ experience in a Cyber Security Analyst or similar security operations role.

  • Practical experience investigating and responding to cyber security incidents. Working experience with Splunk.
  • Working knowledge of Microsoft 365 security tools, particularly Microsoft Defender, Microsoft Sentinel and KQL.
  • Experience using SIEM and endpoint detection and response (EDR) tools.
  • Understanding of common cyber threats, attacker techniques and incident response processes.
  • Strong analytical, problem-solving and communication skills.
  • Ability to make effective decisions, work collaboratively and contribute to continuous improvement.

Desirable Experience

  • Experience working in an Agile environment.
  • Familiarity with AWS or other cloud environments.
  • Previous experience coaching or mentoring junior security analysts.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.securityclearedjobs.com
Prepare application

Good distractions

Loading talks and stories from around this role…