At a Glance
- Tasks: Monitor security devices and lead SOC team in critical incidents.
- Company: Join Airbus Protect, a leader in cybersecurity innovation.
- Benefits: Enjoy flexible hours, competitive salary, and a great pension scheme.
- Why this job: Be part of exciting Europe-wide projects and develop your skills with top experts.
- Qualifications: Must have relevant cybersecurity certifications and strong teamwork skills.
- Other info: Work in a dynamic environment with opportunities for career growth.
The predicted salary is between 36000 - 60000 £ per year.
Job Description:
An exciting opportunity has arisen for a 3rd Line Analyst within Airbus Protect in Newport.
The role of the 3rd Line Analyst is to be an escalation point for all SOC operational activity. The successful candidate will be responsible for the day to day monitoring of multiple security devices, including SIEM, SOAR, IDS/IPS, EDR etc, ensuring that all customer SLAs are met.
You will be required to work as part of the SOC team ensuring all SOC operational tasks are completed on time and work tickets updated/closed with satisfactory technical details included.
The 3rd Line Analyst will be proficient at a technical level, often being required to attend technical workshops and customer briefings/service reviews.
All Analysts are expected to be able to present and write professional reports to key stakeholders and exercise good time management.
This position can offer you:
Are you looking for challenging tasks in a company with some of the most creative cyber security technology and services? Integration into an international network of cyber security experts across and outside of Europe? Would you like to participate in Europe-wide projects as a prime supplier?
We can offer you all of this and more
- Exciting development opportunities and perspectives within Airbus as a global player
- An attractive company pension scheme
- Airbus Group success share scheme
- An extensive range of additional benefits
- Flexible working hours
Tasks and Accountabilities
- When required, takes over and leads the SOC Team in charge of the Critical Incidents
- Complete analysis/correlation of Events of Interest to identify incidents ensuring that all events, events of interest, exceptions & incidents are responded to in accordance with established SOC work instructions, including remedial action/recommendations.
- Complete post incident reporting. Responsible for SOC work instructions, ensuring they are reviewed & amended.
- Use Case Factory development
- Playbook design and development
- Use Case & Playbook validation before going live
- Maintain currency in security concepts, tools and best practices.
- Present & review reports to internal & external key stakeholders.
- Continuous improvement process definition in coordination with SDM
- Propose improvement regarding internal processes, support documentation and associated management tools
We are looking for applicants with the following experience:
Required
- Palo Alto Networks Certified Detection and Remediation Analyst (PCDRA)
- Microsoft SC200: Microsoft Security Analyst
- Blue Team Level 1 & 2: Junior / Advanced Security Operations
- Knowledge of Microsoft Defender & Sentinel
- Knowledge of SOAR
- Knowledge of Splunk
- Understanding of threat actor Tactics, Techniques and Procedures (TTPs)
- SANS SEC401: Security Essentials (or equivalent)
- SANS SEC503: Network Monitoring and Threat Detection In-Depth (or equivalent)
- SANS SEC504: Hacker Tools, Techniques, Exploits and Incident Handling (or equivalent)
Desirable
- Knowledge of Reverse Engineering Malware
- Practical Junior Malware Researcher (PJMR)
- SANS SEC488: Cloud Security Essentials (or equivalent)
- CREST Certified Network Intrusion Analyst (CCNIA) (or equivalent)
- SANS FOR508: Advanced Incident Response, Threat Hunting and Digital Forensics (GCFA)
Soft Skills/Qualifications
- The 3rd Line Analyst is expected to be able to present and write professional reports to key stakeholders
- All staff are expected to exercise good time management and work as part of a team
You will work from Airbus Protect offices, Newport, South Wales, with occasional requirements for business travel within the UK and abroad.
Because of the nature of work undertaken, these positions are required to meet special nationality rules and therefore these vacancies are only open to sole British Citizens. If you meet this criteria you will also undergo security clearance vetting, if not already security cleared to a minimum DV level.
We are committed to equal employment opportunities regardless of race, colour, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, or veteran status. We are proud to be an equal opportunity workplace.
AIRBUS PROTECT
Airbus PROTECT brings together experts in risk analysis and management in the fields of safety, cybersecurity and sustainability. We deliver expertise to our own group, Airbus, for whom we act as a privileged partner, but also to external clients.
With over 1,800 experienced professionals based in France, UK and Germany, we service large-scale contracts with companies such as critical infrastructures (CNI), other industries and public institutions.
Our positioning and strategy enable us to meet the highest standards of the market and to meet the challenges of tomorrow as a team
Join the AIRBUS PROTECT journey
This job requires an awareness of any potential compliance risks and a commitment to act with integrity, as the foundation for the Company s success, reputation and sustainable growth.
Company:
Airbus Protect Limited
Contract Type:
Permanent
Experience Level:
Professional
Job Family:
Cyber Security
By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.
Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background, age, gender, disability, sexual orientation or religious belief.
Airbus is, and always has been, committed to equal opportunities for all. As such, we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to .
At Airbus, we support you to work, connect and collaborate more easily and flexibly. Wherever possible, we foster flexible working arrangements to stimulate innovative thinking.
Locations
Cyber Defence Analyst L3 employer: Airbus Protect Limited
Contact Detail:
Airbus Protect Limited Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Defence Analyst L3
✨Tip Number 1
Network like a pro! Get out there and connect with people in the cyber security field. Attend meetups, webinars, or even local events. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or a personal website where you can showcase your projects, certifications, and any relevant experience. This is a great way to stand out and give potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews like it’s game day! Research common interview questions for Cyber Defence Analysts and practice your responses. Don’t forget to have a few questions ready for them too – it shows you’re genuinely interested in the role.
✨Tip Number 4
Apply through our website! We’ve got loads of exciting opportunities at Airbus Protect, and applying directly can sometimes give you an edge. Plus, it’s super easy to keep track of your applications that way!
We think you need these skills to ace Cyber Defence Analyst L3
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Defence Analyst role. Highlight relevant experience and skills that match the job description, like your knowledge of SIEM, SOAR, and EDR tools. We want to see how you fit into our team!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background makes you a great fit for Airbus Protect. Keep it professional but let your personality show through.
Showcase Your Technical Skills: Since this role requires technical proficiency, be sure to include any certifications or training you've completed, like PCDRA or SANS courses. We love seeing candidates who are proactive about their learning and development!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets to the right people. Plus, it shows us you’re serious about joining the Airbus Protect team!
How to prepare for a job interview at Airbus Protect Limited
✨Know Your Tech Inside Out
As a Cyber Defence Analyst, you'll need to be well-versed in tools like SIEM, SOAR, and EDR. Brush up on your technical knowledge and be ready to discuss how you've used these tools in past roles. Prepare examples of incidents you've handled and the outcomes.
✨Master the Art of Reporting
Since presenting and writing professional reports is key for this role, practice summarising complex technical information into clear, concise reports. Think about how you can demonstrate your ability to communicate effectively with both technical and non-technical stakeholders during the interview.
✨Showcase Your Team Spirit
This position requires collaboration within the SOC team, so be prepared to discuss your experience working in teams. Share examples of how you've contributed to team success and how you handle conflicts or challenges within a group setting.
✨Stay Current with Cyber Trends
Cybersecurity is always evolving, so show your passion for the field by discussing recent trends or threats you've been following. Mention any relevant certifications or courses you've completed, and be ready to talk about how you apply this knowledge to your work.