Cyber Analyst, Technology Directorate
Permanent
Full Time
Leeds or London
The Cyber Defence Centre (CDC) is responsible for detecting and responding to cyber-attacks against the Bank of England. Whilst the team is primarily located in the Bank's London office in Threadneedle Street, the team does also have a presence in the Leeds office. This posting is therefore open to London OR Leeds applicants.
Department overview:
Within the Cyber Security Division you will be working with people who are passionate about protecting the security and stability of our Technology estate. Whether it is identifying threats, uncovering vulnerabilities or ensuring robust and resilient infrastructure, you’ll be working at the cutting edge in a security-centric organisation.
You’ll focus on ensuring security by design, and ensuring we have safe, stable and resilient systems. Collaborating closely with colleagues across Technology and throughout the organisation you will help the division safeguard critical systems and information.
Our award-winning specialist teams are committed to developing their expertise in a constantly evolving environment. Aligned to industry best-practice, staff are encouraged to develop their skills both internally and externally, through mentoring, training and formal qualifications.
Job description
The Cyber Defence Centre (CDC) is responsible for detecting and responding to cyber-attacks against the Bank of England. The CDC is made up of four key domains: Capability, Threat, Detection Engineering and Defence Operations.
Reporting to the Cyber Defence Operations Lead Operations lead in the Cyber Defence Operations (CDO) function, The successful candidate will take part in the operations rota ensuring security alerts are thoroughly investigated, escalated appropriately and take part in subsequent Cyber Security incident response activities as part of the wider Cyber Security incident response team where required.
When not responding to security alerts or incidents, as part of the CDO function, the role holder will be expected to proactively seek opportunities to improve the team’s operational capability for both detection and response processes through a greater use of automation. The role will require close collaboration across all of the CDC’s core functions and has varied and challenging day-to-day responsibilities, as well as exposure to a range of cutting-edge technology in cyber security, data analytics and cyber threat intelligence.
Key Experience / Skills
Minimum:
- Good understanding of best practice security incident response concepts and approaches
- Practical experience in technical cyber security incident response methodologies
- Excellent written and verbal communication skills
Essential:
- Experience working in Security Operations Centre with specific experience triaging security alerts and an understanding of wider cyber security incident response practices.
- Knowledge of computer network fundamentals, including network protocols and infrastructure (packet capture analysis, firewalls, web proxies, DNS etc.)
- Ability to convey complex information in a clear and concise manner
- Ability and willingness to learn new technical cyber security skills
- Logical mind-set
Desirable:
- Experience developing and documenting incident response processes and designing IR playbooks.
- GCIH or similar qualification in Security Incident response
- The ability to acquire DV clearance (To be eligible to apply you must be a British citizen (either born here or naturalised) and one of your parents must be a British citizen or have substantial ties to the UK.
- Understanding of common cyber threats and attacker tactics, techniques and procedures and an ability to identify appropriate mitigation strategies
- Experience using automation or SOAR platforms
- Knowledge of incident response principles
- Experience using MITRE ATT&CK
- Experience using Splunk
- Experience using an intelligence platform
- Software development, scripting or programming skills
- Currently a non-contributory, career average pension giving you a guaranteed retirement benefit of 1/80th of your annual salary for every year worked. There is the option to increase your pension (to 1/65th) or decrease (to 1/105th) in exchange for salary through our flexible benefits programme each year. The Bank has the discretion to vary standard accrual rates and dial up and dial down rates at any time and to withdraw dial up and dial down options at any time.
- A discretionary performance award based on a current award pool.
- An 8% benefits allowance with the option to take as salary or purchase a wide range of flexible benefits.
- 26 days’ annual leave with option to buy up to 12 additional days through flexible benefits.
- Private medical insurance and income protection.
The Bank of England welcomes applications from all candidates, but as a UK Visas and Immigration (UKVI) approved sponsor, we have a responsibility to comply with the Immigration Rules and guidance. As such, our ability to employ individuals who require sponsorship for immigration purposes is limited. The Bank cannot guarantee that you and / or the role you are applying for will be eligible for sponsorship and that any application made to UKVI will be successful. Eligibility will therefore be considered on a case by case basis.
Cyber Analyst in CYBER DEFENCE CENTRE in London employer: Bank of England
The Bank of England is an exceptional employer, offering a dynamic work environment where innovation and user-centred design are at the forefront of its mission. With a strong commitment to employee development, the Bank fosters a collaborative culture that values diverse perspectives and encourages professional growth through training and mentorship. Located in London, employees benefit from a comprehensive benefits package, flexible working arrangements, and the opportunity to contribute to meaningful projects that shape the future of financial services.