At a Glance
- Tasks: Monitor and respond to security incidents, ensuring the safety of critical infrastructure.
- Company: Join Drax, a leader in renewable energy, committed to a sustainable future.
- Benefits: Enjoy competitive salary, bonus, 25 days leave, private medical insurance, and pension scheme.
- Why this job: Make a real impact on climate change while developing your cybersecurity skills in a supportive team.
- Qualifications: Background in Cyber Security or Operational Technology; entry-level certifications preferred.
- Other info: Flexible hybrid working options available across multiple locations.
The predicted salary is between 36000 - 60000 £ per year.
Flexible location - Glasgow, Ipswich, London, Northampton or Selby
Hybrid working
Permanent, full time
Closing date: Friday 2nd May 2025
Who we are
We’re not just talking about making a difference, we’re making it happen. We generate dispatchable, renewable power and create stable energy in an uncertain world. Building on our proud heritage, we have ambition to become the global leader in sustainable biomass and carbon removals. You’ll be joining our teams of practical doers, future thinkers and business champions. We’re enabling a zero carbon, lower cost energy future for all, and working hard to decarbonise the planet for generations to come.
About the role
As a CDC Analyst, you’ll enhance security and protect organisational assets and users by monitoring, detecting and responding to security incidents within the Cyber Defence Centre (CDC). You’ll play a critical role in incident response, swiftly investigating and mitigating security breaches to minimize their impact. The role will involve monitoring and detecting emerging threats and communicate findings to stakeholders. Additionally, you’ll contribute to continuous improvement by actively participating in the development of security policies and procedures. This is a key role in ensuring the reliability and safety of UK critical national infrastructure.
- Cybersecurity Monitoring: Continuously monitoring the efficacy and maintain OT security monitoring solutions deployed within the OT environment.
- Incident Response: Developing and implementing incident response plans for handling cyber incidents in OT environments, including containment, eradication, and recovery procedures.
- Vulnerability Management: Acknowledging and assessing vulnerabilities in OT systems and coordinate with relevant teams to remediate them.
- Collaboration: Collaborating with IT and Generation Engineering/Operation teams to ensure timely resolution of security incidents.
- Documentation: Maintaining detailed records of security incidents, assessments, and remediation efforts.
Additional responsibilities include:
- Analysing and interpreting situations, applying knowledge and experience to determine the appropriate solution.
- Applying professional reasoning when interacting with others to gain understanding, support or to influence others.
- Engaging with contractors and colleagues from other areas of the business.
- Proposing changes to existing processes to help drive efficiency and effectiveness.
- Ensuring own work, and/or that of the team, is compliant with the appropriate regulations, policies and procedures.
- Analysing and responding to security events.
- Incident detection and response.
Who we’re looking for
You’ll have a background in Cyber Security and/or Operational Technology, with a sound understanding of network security. Ideally, you’ll also hold an entry level certification such as SEC+, Net+, SANS or GIAC. You’ll need an understanding of security frameworks including but not limited to NIS/NIST/IEC/SoGP Cyber Kill Chain, coupled with an understanding of relevant legislation (Criminal Law, Health and Safety, Data Protection, Human Rights, Employment and Equal Opportunities regulations). This role requires strong analytical and problem-solving skills including root-cause analysis with the ability to manage multiple activities at pace. You’ll have strong communication and stakeholder management skills, both verbal and written, with the ability to lead small projects, work with complexity and think outside the box.
Rewards and benefits
As you help us to shape the future, we’ve shaped our rewards and benefits to help you thrive and support your lifestyle:
- Competitive salary
- Discretionary group performance-based bonus
- 25 days annual leave (plus Bank Holidays)
- Single cover private medical insurance
- Pension scheme
We’re committed to making a tangible impact on the climate challenge we all face. Drax is where your individual purpose can work alongside your career drive. We work as part of a team that shares a passion for doing what’s right for the future. With Drax you can shape your career and a future for generations to come. Together, we make it happen.
At Drax, we’re committed to fostering an environment where everyone feels valued and respected, regardless of their role. To make this a reality, we actively work to better represent the communities we operate in, foster inclusion, and establish fair processes. Through these actions, we build the trust needed for all colleagues at Drax to contribute their perspectives and talents, no matter their background.
How to apply
Think this role’s for you? Click the ‘Apply now’ button to begin your Drax journey. If you want to find out more about Drax, check out our LinkedIn page to see our latest news.
Cyber Defence Centre Analyst (OT Detect & Respond) employer: Drax
Contact Detail:
Drax Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Defence Centre Analyst (OT Detect & Respond)
✨Tip Number 1
Familiarise yourself with the specific security frameworks mentioned in the job description, such as NIS, NIST, and IEC. Understanding these frameworks will not only help you during the interview but also demonstrate your commitment to the role.
✨Tip Number 2
Engage with online communities or forums related to Cyber Security and Operational Technology. Networking with professionals in the field can provide insights into current trends and challenges, which you can discuss during your interview.
✨Tip Number 3
Prepare to showcase your analytical and problem-solving skills by reviewing case studies or scenarios related to incident response in OT environments. Being able to articulate your thought process in handling real-world situations will set you apart.
✨Tip Number 4
Research Drax’s recent initiatives and projects in sustainability and cybersecurity. Showing that you understand their mission and how your role contributes to it can make a strong impression during your discussions with them.
We think you need these skills to ace Cyber Defence Centre Analyst (OT Detect & Respond)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in Cyber Security and Operational Technology. Emphasise any certifications like SEC+, Net+, SANS, or GIAC, and showcase your understanding of security frameworks such as NIS/NIST.
Craft a Strong Cover Letter: Write a compelling cover letter that explains why you are passionate about the role and how your skills align with the responsibilities outlined in the job description. Mention your analytical and problem-solving skills, and provide examples of past experiences.
Highlight Relevant Skills: In your application, clearly outline your skills in incident response, vulnerability management, and stakeholder communication. Use specific examples to demonstrate your ability to manage multiple activities and work under pressure.
Proofread Your Application: Before submitting, carefully proofread your application for any spelling or grammatical errors. A well-presented application reflects your attention to detail and professionalism, which is crucial in the Cyber Defence field.
How to prepare for a job interview at Drax
✨Understand the Role
Make sure you have a solid grasp of what a Cyber Defence Centre Analyst does. Familiarise yourself with incident response, vulnerability management, and the specific technologies used in operational technology environments.
✨Showcase Your Certifications
If you hold any relevant certifications like SEC+, Net+, SANS, or GIAC, be sure to mention them. These qualifications can set you apart and demonstrate your commitment to the field of cybersecurity.
✨Prepare for Technical Questions
Expect questions that test your knowledge of security frameworks such as NIS, NIST, and the Cyber Kill Chain. Brush up on these topics and be ready to discuss how they apply to real-world scenarios.
✨Demonstrate Communication Skills
Since the role involves collaboration with various teams, practice articulating your thoughts clearly. Be prepared to discuss how you've effectively communicated complex information to stakeholders in the past.