> Markdown version of [/jobs/ext/612248-senior-security-operations-analyst](https://www.wearedevelopers.com/jobs/ext/612248-senior-security-operations-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Operations Analyst - **Company:** Haleon Plc. - **Location:** Warren, NJ, United States - **Experience:** Expert - **Salary:** $149,994.0 - $224,991.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Computer Networks, Intrusion Detection Systems, Network Protocols, Security Information and Event Management, In-Plane Switching (IPS), Firewalls (Computer Science), Information Technology, Drilldown - **Published:** June 18, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=c2fbbc0cc721e33f ## About the Role Do you have experience in Security threat response protocols?, Do you have a Master's degree in cybersecurity?, * Five years of experience in cybersecurity, working in a Cyber Security Operations Center. * Experience responding to significant cyber incidents which may involve Organised Crime and Nations State threat actors. Preferred Skills and Experience: * Bachelor's or Master's Degree in Computer Science, Cyber Security or related field (or equivalent experience). * Three years working in a Cyber Security Operations Centre. * Experience working across international manufacturing. * Understanding of security controls and how they are used to detect and respond * Knowledge of common network protocols, edge routing technologies, firewall/IDS/IPS, SIEM, EDR/XDR. * Ability to communicate complex problems succinctly. * Ability to work within a team environment, sharing workload and responsibility. * CISSP, GCIA, GCDA, GSOC, GCIH. Location: This position is located in Warren, NJ and will require 5 days in office and an on-call weekend rotation. ## Description The Senior Security Operations Analyst is critical to protecting Haleon's corporate assets and managing its day-to-day operational cyber security defences. It involves detailed analysis to identify threats, quantify vulnerabilities and reduce risk to the company. It requires the timely review of cyber security alerts generated by security devices, assessment of the situation and management of incidents to successful resolution. In all cases, the incumbent will be required to respond to events using appropriate tools and procedures. Senior Analysts are expected to have the technical dexterity to choose the right tool for the job and to understand how to use it effectively across a range of security scenarios. The post holder will: * Operate as part of a 24 /7 Cyber Security Operations (SecOps) team that continuously monitors the security of the company. * Undertake the timely triage of security alerts to allow for rapid incident detection and response. * Perform deep-dive analysis of security events, logs, network traffic and forensic data to determine root cause, identifying suspicious and / or anomalous activities and taking appropriate action based on documented processes and procedures. * Recommended modifications to internal defences and processes for more effective and efficient security operations. * Manage security incidents through all phases of the incident response lifecycle from identification through to closure. * Ensures that delegated response and remediation actions are completed in line with SLAs. * Provides expert analytic investigative support of complex security incidents. * Supports the tuning of all security tooling and the development of bespoke correlation rules / use cases aligned to business operations, internal risk profiles and current threat intelligence. * Ensure that the automation and orchestration of day-to-day operations is maximised, and that analysis / response activities are performed as efficiently as possible. * Execute L2/L3 event or incident response and investigations into suspicious activity. * Shape the operations to successfully manage cases, lead the response process, and delegate tasks to junior incident responders and MSSP analysts. * Generate post-incident reviews to ensure gaps are closed to prevent future events. * Collaborate with Threat Intelligence to groom threat feeds and help translate findings. * Help prioritize content, develop, and implement playbooks and runbooks. * Be a key member of the Cyber Incident Response Team (CIRT) during major cyber incidents. * Establish and maintain relationships with other investigation and remediation teams within the company, working closely with them to address the full spectrum of security issues. * Lead efforts in developing security awareness training for the broader organisation., Haleon are committed to mobilising our purpose in a way that represents the diverse consumers and communities who rely on our brands every day. It guides us in creating an inclusive culture, where different backgrounds and views are valued and respected - all in support of understanding and best serving the needs of our consumers and unleashing the full potential of our people. It's important to us that Haleon is a place where all our employees feel they truly belong. During the application process, we may ask you to share some personal information, which is entirely voluntary. This information ensures we meet certain regulatory and reporting obligations and supports the development, refinement, and execution of our inclusion and belonging programmes that are open to all Haleon employees., Please note that if you are a US Licensed Healthcare Professional or Healthcare Professional as defined by the laws of the state issuing your license, Haleon may be required to capture and report expenses Haleon incurs, on your behalf, in the event you are afforded an interview for employment. This capture of applicable transfers of value is necessary to ensure Haleon's compliance to all federal and state US Transparency requirements. ## Related Videos - [Distributed search under the hood](https://www.wearedevelopers.com/videos/256-distributed-search-under-the-hood) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Data Analyst Salary in the UK](https://www.wearedevelopers.com/magazine/278-data-analyst-salary-in-the-uk) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023)