At a Glance
- Tasks: Join our Cyber Threat Analysis Centre as a Tier 2 Cyber Security Analyst, tackling real cyber threats daily.
- Company: Be part of a dynamic team dedicated to safeguarding digital environments and enhancing security measures.
- Benefits: Enjoy competitive pay, potential for remote work, and opportunities for professional growth and training.
- Why this job: Make a real impact in cyber security while collaborating with experts and mentoring junior analysts.
- Qualifications: A degree in Cyber Security or equivalent experience; familiarity with SIEM tools and KQL is essential.
- Other info: This is a 6-month contract role based in Erskine, offering £500/day inside IR35.
The predicted salary is between 100000 - 140000 £ per year.
We are looking for a Cyber Security Analyst to work out of Erskine.
The Tier 2 Cyber Security Analyst is a mid-Tier position within the Cyber Threat Analysis Centre (CTAC), responsible for advancing the initial work conducted by Tier 1 Analysts and providing more in-depth analysis of potential threats to the organization. This role is crucial in the escalated investigation, triage, and response to cyber incidents while supporting the development and training of Tier 1 Analysts. The Tier 2 Analyst works closely with senior and junior analysts to ensure a seamless SOC operation and acts as a bridge between foundational and advanced threat detection and response functions.
- Conduct escalated triage and analysis on security events identified by Tier 1 Analysts, determining threat severity and advising on initial response actions.
- Apply expertise in SIEM solutions utilizing Kusto Query Language (KQL), to perform log analysis, event correlation, and thorough documentation of security incidents.
- Identify and escalate critical threats to Tier 3 Analysts with detailed analysis for further action, ensuring rapid response and adherence to service Tier objectives (SLOs).
- Investigate potential security incidents by conducting deeper analysis on correlated events and identifying patterns or anomalies that may indicate suspicious or malicious activity.
- Use OSINT (Open-Source Intelligence) to enrich contextual data and enhance detection capabilities, contributing to a proactive stance on emerging threats.
- Monitor the threat landscape and document findings on evolving threat vectors, sharing relevant insights with CTAC teams to enhance overall situational awareness.
- Follow established incident response playbooks, providing feedback for enhancements and suggesting updates to streamline CTAC processes and improve threat response times.
- Coordinate with Tier 3 Analysts and management to refine detection and response workflows, contributing to continuous SOC maturity.
- Collaborate with Tier 3 Analysts on tuning SIEM and detection tools to reduce false positives and improve alert fidelity, submitting tuning requests and testing configurations when necessary.
- Identify gaps in current detection content and work with Senior Analysts to develop and validate new detection rules and use cases tailored to the organization’s threat profile.
- Act as a mentor to Tier 1 Analysts, offering guidance on triage and analysis techniques and facilitating on-the-job training to elevate their technical skills and operational efficiency.
- Assist in training sessions and knowledge-sharing activities, providing feedback on areas for growth and contributing to a supportive learning environment within the SOC.
Experience required:
- Understands advanced networking concepts, including IP addressing, basic network protocols, and how traffic flows within a network.
- Advanced knowledge of Windows and Linux operating environments, including standard commands, file systems, and user authentication mechanisms.
- Competence in using SIEM solutions (e.g., ArcSight, Azure Sentinel) for monitoring and log analysis; some exposure to additional analysis tools such as basic XDR platforms.
- Able to demonstrate proficient knowledge using Kusto Query Language (KQL) to search and filter logs effectively.
- Familiar with open-source intelligence (OSINT) techniques to aid in identifying potential threats and gathering information.
- Able to communicate clearly and efficiently with team members and stakeholders, both internally and externally, under direction from senior analysts.
- Can communicate simple technical issues to non-technical individuals in a clear and understandable way.
- Able to create concise, structured reports that outline findings from preliminary investigations and daily monitoring activities.
- Able to manage personal workload effectively to ensure timely completion of assigned tasks within the SOC.
- Willing to collaborate with team members, accepting guidance and learning from more experienced analysts.
- Shows initiative in learning new technologies and techniques, leveraging internal resources and training to grow professionally.
- Able to function efficiently during high-pressure situations, following procedures to ensure consistent performance in incident management.
Education and Professional Experience:
- University Degree/Diploma in Cyber Security or Equivalent experience.
- Other IT certifications or experience such as CISSP, COMPTIA CySA+, GCIA, GCIH.
Desirable:
- IT certifications such as CASP or ITIL.
- Experience in a SOC or SOC equivalent.
- SC / DV clearance or be willing to undertake SC and / or DV clearance with multiple agencies which means you must be British born with a sole British passport.
- Full Driving Licence.
- Fluent in written and spoken English.
Onsite at either Erskine, 6 month contract Circa £500/day inside IR35.
Cyber Security Analyst (Erskine) employer: Synergize Consulting
Contact Detail:
Synergize Consulting Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Analyst (Erskine)
✨Tip Number 1
Familiarise yourself with Kusto Query Language (KQL) as it's essential for the role. Practising your skills in log analysis and event correlation using SIEM solutions will give you a significant edge during interviews.
✨Tip Number 2
Stay updated on the latest trends in cyber threats and vulnerabilities. Being able to discuss recent incidents or emerging threats can demonstrate your proactive approach and genuine interest in the field.
✨Tip Number 3
Network with professionals in the cyber security community, especially those working in SOC environments. Engaging in discussions or attending relevant events can provide insights and potentially lead to referrals.
✨Tip Number 4
Prepare to showcase your problem-solving skills during the interview. Be ready to discuss specific scenarios where you've successfully triaged incidents or improved detection processes, highlighting your analytical capabilities.
We think you need these skills to ace Cyber Security Analyst (Erskine)
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the Cyber Security Analyst role. Emphasise your knowledge of SIEM solutions, Kusto Query Language (KQL), and any experience in a SOC environment.
Craft a Strong Cover Letter: Write a cover letter that showcases your passion for cyber security and your understanding of the role. Mention specific experiences where you've conducted threat analysis or incident response, and how you can contribute to the team.
Highlight Relevant Certifications: List any relevant certifications such as CISSP, COMPTIA CySA+, or others that demonstrate your qualifications for the position. This will help you stand out as a candidate who is serious about their professional development.
Showcase Communication Skills: In your application, provide examples of how you've effectively communicated technical information to non-technical stakeholders. This is crucial for the role, so make sure to highlight your ability to convey complex ideas clearly.
How to prepare for a job interview at Synergize Consulting
✨Showcase Your Technical Skills
Be prepared to discuss your experience with SIEM solutions and Kusto Query Language (KQL). Highlight specific instances where you've successfully conducted log analysis or triaged security events, as this will demonstrate your technical proficiency.
✨Understand the Threat Landscape
Familiarise yourself with current cyber threats and trends. Be ready to discuss how you would use OSINT to enhance detection capabilities and provide examples of how you've monitored evolving threat vectors in previous roles.
✨Communicate Clearly
Since the role involves collaboration with both technical and non-technical stakeholders, practice explaining complex concepts in simple terms. This will show your ability to bridge the gap between different team members effectively.
✨Demonstrate Leadership Potential
As a Tier 2 Analyst, you'll be mentoring Tier 1 Analysts. Prepare to discuss your approach to training and guiding others, and share any relevant experiences where you've taken on a leadership role or contributed to team development.