IT Security Analyst - Incident Response & Vulnerability Management in Cardiff

IT Security Analyst - Incident Response & Vulnerability Management in Cardiff

Cardiff Full-Time 50000 - 65000 € / year (est.) Home office (partial)
Adzuna

At a Glance

  • Tasks: Lead investigations into security incidents and manage vulnerabilities across diverse platforms.
  • Company: Dynamic tech firm focused on security solutions with a collaborative environment.
  • Benefits: Hybrid work model, competitive salary, health benefits, and opportunities for professional growth.
  • Other info: Exciting career path with continuous learning and development opportunities.
  • Why this job: Join a team tackling real-world security challenges and make a significant impact.
  • Qualifications: Experience in security analysis and incident response, with strong communication skills.

The predicted salary is between 50000 - 65000 € per year.

The Level 3 Security Analyst is responsible for the technical investigation, containment, remediation, and resolution of IT security incidents and vulnerabilities across a complex, multi-site customer estate supported by "the MSP". The role acts as a senior technical authority for security incidents, working alongside Incident Management, Infrastructure, Network, and Application teams to ensure security issues are resolved end-to-end, correctly documented, and do not reoccur.

Key Accountabilities - Security Incident Investigation & Response

  • Act as the technical lead for the investigation of security incidents across supported platforms.
  • Investigate malware, ransomware, account compromise, unauthorised access, suspicious activity, and security misconfiguration.
  • Perform detailed root cause analysis across endpoint, identity, network, and application layers.
  • Advise the Incident Manager on incident scope, impact, containment, eradication strategy, and recovery validation.
  • Drive incidents through to full technical resolution, not temporary mitigation.

Key Accountabilities - Vulnerability Management

  • Investigate vulnerabilities identified via scanning platforms, endpoint and cloud tooling, supplier disclosures, and audit activity.
  • Assess risk based on exploitability, exposure, and operational impact.
  • Own remediation actions end-to-end, coordinating with Infrastructure, Network, and third-party suppliers.
  • Validate remediation and ensure appropriate evidence is captured for assurance and audit.

Platforms & Technology Scope

  • End-user devices including Windows, macOS, tablets, and peripherals.
  • Microsoft 365 including Entra ID, Exchange, SharePoint, Defender, and endpoint protection.
  • Identity and Access Management including privileged and service accounts.
  • On-premises and cloud-hosted servers.
  • Network infrastructure including firewalls, switches, wireless, and WAN connectivity.
  • Cloud-hosted and supplier-managed applications.

Documentation, Audit & Continuous Improvement

  • Produce clear, technically accurate documentation covering incidents, root cause analysis, and corrective actions.
  • Support governance, customer assurance, and audit requirements.
  • Contribute to post-incident reviews and lessons learned.
  • Identify recurring issues and recommend long-term improvements.
  • Ensure incidents and vulnerabilities are correctly logged and tracked within ITSM systems.

Collaboration & Escalation

  • Work closely with Incident Managers, Security specialists, and Level 3 Infrastructure and Network teams.
  • Act as a senior escalation point for Level 1 and Level 2 teams.
  • Engage third-party suppliers to progress investigation and remediation.
  • Participate in out-of-hours response as required.

Knowledge, Skills & Experience - Essential

  • Proven experience in a Level 3 or Senior Security Analyst or Incident Response role.
  • Hands-on experience investigating and resolving incidents across endpoints, identity platforms, networks, and cloud services.
  • Strong understanding of malware and ransomware response, identity compromise, and vulnerability remediation.
  • Experience working within formal Security Incident and Major Incident processes.
  • Strong written documentation and stakeholder communication skills.

Knowledge, Skills & Experience - Desirable

  • Experience supporting multi-site or operationally sensitive environments.
  • Familiarity with Defender, SIEM, EDR, and vulnerability management tools.
  • Understanding of regulated or PCI-adjacent environments.
  • Relevant security certifications or equivalent experience.

Behavioural Competencies

  • Takes ownership from detection through to resolution.
  • Investigates thoroughly and challenges incomplete fixes.
  • Calm, methodical, and decisive during live incidents.
  • Understands operational and business impact.
  • Professional and confident when engaging customers and suppliers.

Decision Making & Authority

  • Makes technical decisions relating to investigation, containment, and remediation of security incidents.
  • Escalates risk and decision points appropriately to Incident Management and Service Delivery leadership.

Key Interfaces

  • Incident Management
  • Security Operations
  • Infrastructure and Network Services
  • Third-party suppliers
  • Customer stakeholders via structured incident communications

IT Security Analyst - Incident Response & Vulnerability Management in Cardiff employer: Adzuna

As an IT Security Analyst at our Cardiff office, you will join a dynamic team dedicated to safeguarding complex multi-site environments. We pride ourselves on fostering a collaborative work culture that encourages professional growth through continuous learning and hands-on experience with cutting-edge security technologies. With a hybrid working model and opportunities for client site engagement, we offer a unique blend of flexibility and exposure to diverse challenges in the field of cybersecurity.

Adzuna

Contact Detail:

Adzuna Recruiting Team

StudySmarter Expert Advice🤫

We think this is how you could land IT Security Analyst - Incident Response & Vulnerability Management in Cardiff

Tip Number 1

Network, network, network! Get out there and connect with people in the industry. Attend meetups, webinars, or even local tech events. You never know who might have a lead on your dream job!

Tip Number 2

Don’t just apply for jobs; reach out directly to hiring managers or team leads. A quick message on LinkedIn can go a long way. Show them you’re genuinely interested in their team and what they do.

Tip Number 3

Prepare for interviews by brushing up on common incident response scenarios and vulnerability management questions. Practise explaining your thought process clearly and confidently – it’s all about showcasing your expertise!

Tip Number 4

Make sure to apply through our website! We love seeing applications come directly from candidates who are excited about joining us. Plus, it gives you a better chance of standing out in the crowd.

We think you need these skills to ace IT Security Analyst - Incident Response & Vulnerability Management in Cardiff

Incident Response
Vulnerability Management
Malware Investigation
Ransomware Response
Root Cause Analysis
Technical Documentation
Stakeholder Communication

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the IT Security Analyst role. Highlight your experience with incident response and vulnerability management, and don’t forget to mention any relevant tools you’ve used. We want to see how your skills match what we’re looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you’re passionate about security and how your background makes you a great fit for our team. Keep it concise but impactful – we love a good story!

Show Off Your Documentation Skills:Since strong written documentation is key for this role, make sure to showcase your ability to produce clear and accurate reports. Include examples of past incidents you’ve documented or processes you’ve improved. We appreciate attention to detail!

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team at StudySmarter!

How to prepare for a job interview at Adzuna

Know Your Stuff

Make sure you brush up on your technical knowledge related to incident response and vulnerability management. Be ready to discuss specific incidents you've handled, the tools you used, and the outcomes. This role requires a solid understanding of malware, ransomware, and security misconfigurations, so be prepared to dive deep into these topics.

Showcase Your Problem-Solving Skills

During the interview, highlight your ability to investigate and resolve complex security incidents. Use examples from your past experience where you took ownership of an issue from detection through to resolution. This will demonstrate your calm and methodical approach during live incidents, which is crucial for this role.

Communicate Clearly

Strong written documentation and stakeholder communication skills are essential for this position. Practice explaining technical concepts in a way that non-technical stakeholders can understand. You might even want to prepare a brief presentation on a past incident you've managed to showcase your communication skills.

Be Ready for Scenario Questions

Expect scenario-based questions that test your decision-making abilities during security incidents. Think about how you would handle various situations, such as a malware outbreak or a suspected data breach. Being able to articulate your thought process and the steps you would take will show that you're ready for the challenges of the role.