At a Glance
- Tasks: Monitor cyber security threats and conduct detailed analysis of attacks.
- Company: Join BAE Systems Digital Intelligence, a leader in cyber and intelligence solutions.
- Benefits: Enjoy hybrid working options and a flexible work-life balance.
- Why this job: Be part of a diverse team tackling real-world security challenges and making an impact.
- Qualifications: Degree in Cyber Security or related field; relevant certifications preferred.
- Other info: Opportunity to coach junior analysts and lead threat hunting initiatives.
The predicted salary is between 36000 - 60000 £ per year.
BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.
Job Description:
- Conducting Cyber Security Monitoring to detect hacking/malware intrusion attempts against customer IT.
- Full triage of detection alarms to accurately identify the cause of the alarm, be it active infection, attempted intrusion or a clear reason for false positive.
- Conduct full “Identification” of any detected attacks (successful or failed) to understand and document the source of the attack, the Techniques, Tactics and Procedures (TTPs) used in the attack from start to finish and the extent (breadth and depth) of the attack.
- Capturing/documenting full attack chain details of detected attacks (successful and failed) and feeding them back into detection capability.
- Responsible for ensuring monitoring effectiveness and efficiency via the creation and updating of SIEM/SOAR playbooks, in line with changing attacker techniques tactics and procedures (TTP’s).
- Use Intrusion Analysis skills and experience to provide input to new detection techniques and research new detection capabilities produced by Industry.
- Ad-hoc communications with government or commercial security operations centres as part of root-cause analysis.
- Creation of low-medium complexity KQL analytics and hunt queries, conducting IOC and anomaly-based threat hunts, including root cause identification of findings.
- Identification and tagging of incorrect alert logic/high false positive detection rules for the attention of senior analysts.
- Consume Threat Intelligence from internal and partner tools and transform into actionable hunting and detections.
- Coaching of junior analysts and colleagues when required.
- Lead Threat Hunting workgroups during Hunting Events for specific complex TTPs, across multiple industries and departments.
- Deliver ad-hoc training/workshops intra-org which encourage User Awareness of security risk, and uplift other team members with new knowledge.
- Provide daily SITREPs to local teams regarding attacker activity.
- Knowledge of Intrusion Analysis on Windows end user devices and servers.
- Knowledge of Intrusion Analysis on Azure, including attacker methods of ‘living off the cloud’ such as use of Microsoft Graph API, app registrations and managed identities.
- Ability to quickly research and learn about new tools and techniques.
- Good working knowledge of MITRE ATT&CK Framework.
- Good working knowledge of networking concepts & protocols (TCP/IP, UDP, DNS, DHCP, HTTP, etc.).
- Relevant SANS or similar incident response/forensics or host and analysis certifications.
- Understanding of Operating System functionality and operations.
- Develop hypothesis and perform threat hunting in Azure cloud or Windows Device data.
Desirable Qualifications:
- Degree-level education in Cyber Security or related area.
- AWS Cloud Essentials.
- SANS GCIH, GCIA or similar.
We are embracing Hybrid Working. This means you and your colleagues may be working in different locations, such as from home, another BAE Systems office or client site, some or all of the time, and work might be going on at different times of the day. By embracing technology, we can interact, collaborate and create together, even when we’re working remotely from one another. Hybrid Working allows for increased flexibility in when and where we work, helping us to balance our work and personal life more effectively, and enhance well-being.
Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds – the best and brightest minds – can work together to achieve excellence and realise individual and organisational potential.
Front Line Analyst - National Security - Leeds employer: BAE Systems - Applied Intelligence
Contact Detail:
BAE Systems - Applied Intelligence Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Front Line Analyst - National Security - Leeds
✨Tip Number 1
Familiarise yourself with the MITRE ATT&CK Framework, as it's crucial for understanding attacker tactics and techniques. Being able to discuss specific examples of how you've applied this knowledge in past roles can really set you apart during interviews.
✨Tip Number 2
Stay updated on the latest trends in cyber security, especially regarding intrusion analysis and threat hunting. Follow industry blogs, attend webinars, and participate in forums to demonstrate your passion and commitment to continuous learning.
✨Tip Number 3
Network with professionals in the cyber security field, particularly those who work in similar roles. Engaging with them on platforms like LinkedIn can provide insights into the role and may even lead to referrals or recommendations.
✨Tip Number 4
Prepare to discuss your experience with SIEM/SOAR tools and any relevant certifications you hold. Be ready to explain how you've used these tools to improve monitoring effectiveness and efficiency in previous positions.
We think you need these skills to ace Front Line Analyst - National Security - Leeds
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in cyber security, intrusion analysis, and any specific tools or techniques mentioned in the job description. Use keywords from the job listing to ensure your application stands out.
Craft a Compelling Cover Letter: Write a cover letter that explains why you are passionate about the role of Front Line Analyst. Mention specific experiences that demonstrate your skills in cyber security monitoring and threat hunting, and how they align with BAE Systems' mission.
Showcase Relevant Skills: In your application, emphasise your knowledge of the MITRE ATT&CK Framework, KQL analytics, and any relevant certifications like SANS GCIH or GCIA. Highlight your ability to work collaboratively in hybrid environments, as this is important for the role.
Proofread Your Application: Before submitting, carefully proofread your CV and cover letter for any spelling or grammatical errors. A polished application reflects attention to detail, which is crucial in the field of cyber security.
How to prepare for a job interview at BAE Systems - Applied Intelligence
✨Understand the Role
Make sure you thoroughly understand the responsibilities of a Front Line Analyst. Familiarise yourself with cyber security monitoring, intrusion analysis, and the MITRE ATT&CK Framework. This will help you answer questions confidently and demonstrate your knowledge.
✨Showcase Your Technical Skills
Be prepared to discuss your experience with KQL analytics, threat hunting, and SIEM/SOAR playbooks. Highlight any relevant certifications or training you've completed, such as SANS GCIH or GCIA, to show you're qualified for the role.
✨Prepare for Scenario-Based Questions
Expect to be asked about specific scenarios related to cyber security incidents. Practice articulating how you would handle detection alarms, root-cause analysis, and documenting attack chains. Use examples from your past experiences to illustrate your problem-solving skills.
✨Emphasise Team Collaboration
Since the role involves working with various teams and coaching junior analysts, be ready to discuss your teamwork and communication skills. Share examples of how you've collaborated in the past and contributed to team success, especially in high-pressure situations.