At a Glance
- Tasks: Strengthen operational security through detection engineering, incident response, and vulnerability management.
- Company: Join Cognita, a leader in educational security solutions with a commitment to safeguarding.
- Benefits: Enjoy competitive salary, private medical insurance, 25 days leave, and professional development opportunities.
- Other info: Dynamic work environment with a focus on collaboration and continuous improvement.
- Why this job: Make a real impact in cyber security while working with cutting-edge technologies and global teams.
- Qualifications: Experience in IT security, Microsoft Sentinel, and incident response required.
The predicted salary is between 60000 - 80000 £ per year.
This role is part of Cognita's Cyber Defence function and reports to the Group Senior Manager, Cyber Security Operations. The Senior Cyber Security Analyst will strengthen the organisation's operational security capabilities across key areas such as detection engineering, incident response, vulnerability management, and secure configuration. As a technical subject matter expert, the Senior Cyber Security Analyst will drive the optimisation and integration of Microsoft Sentinel, Microsoft Defender, and associated security technologies across the global estate. The role will also support the coordination and operational integration of vulnerability and threat management activities, including Microsoft Defender Vulnerability Management and external vulnerability scanning platforms. The Senior Cyber Security Analyst will lead continuous enhancement of monitoring, detection, response and remediation processes, ensuring that security telemetry, vulnerability intelligence and threat insights are effectively integrated into operational security workflows. Working closely with Group, Regional and school-based IT teams, the role will help ensure security tooling, controls and processes operate consistently across diverse and geographically dispersed environments. The position is also responsible for producing clear, actionable reporting that supports informed operational decision‑making and strategic risk reduction across the organisation.
Key Responsibilities
- Detection Engineering & Automation
- Configure and optimise Microsoft Sentinel; integrate Microsoft and Google security tools.
- Develop and tune detection logic across Microsoft Defender and Google technologies.
- Build and maintain SOAR workflows (Logic Apps) for triage and response.
- Integrate security tools and improve monitoring coverage across environments.
- Maintain clear documentation for detections and workflows.
- Incident Response & Management
- Lead end‑to‑end incident response (detection to recovery).
- Coordinate with cross‑functional teams and provide stakeholder updates.
- Maintain and improve IR policies, procedures, and playbooks.
- Conduct post‑incident reviews and drive continuous improvement.
- Secure Configuration & Cloud Security
- Support secure configuration of Azure and cloud services.
- Maintain secure baselines across endpoints, servers, and Google Workspace.
- Configure Microsoft Defender policies and ensure alignment with standards.
- Promote secure‑by‑design practices with IT teams.
- Threat & Vulnerability Management
- Support and improve vulnerability management processes.
- Assess vulnerabilities and drive remediation with stakeholders.
- Use threat intelligence to prioritise risks and improve defences.
- Track, report, and enhance cyber threat intelligence capabilities.
- Collaboration & Security Culture
- Partner with global IT teams to support security operations.
- Act as a subject matter expert across key security domains.
- Ensure consistent control implementation and strong stakeholder engagement.
- Promote security awareness and shared responsibility.
- Reporting, Governance & Improvement
- Produce reports on incidents, threats, and remediation.
- Maintain KPIs/KRIs aligned with governance frameworks.
- Provide updates to leadership on security posture and risks.
- Drive improvements in tools, processes, and documentation.
Who We Are Looking For
Experience in a senior IT security role, overseeing and supporting security operations across infrastructure, cloud (including Microsoft, AWS or Google Cloud), and on‑prem environments, managing complex security solutions in a multi‑region setting. Proven experience in configuring and optimising Microsoft Sentinel and the Defender suite, as well as integrating with third‑party tools to enhance detection and response capabilities across both cloud and on‑premises environments. Extensive experience in leading incident response efforts, coordinating across global teams and multiple regions, ensuring effective remediation and resolution of security incidents in both cloud and on‑prem settings. Experience managing vulnerability management programmes, overseeing the identification, assessment, and remediation of vulnerabilities across hybrid infrastructures, and translating findings into actionable security improvements. Experience working with threat intelligence sources, integrating insights into detection frameworks and security operations for both cloud environments and on‑prem infrastructures.
Benefits at Cognita
- Competitive salary based on experience
- Private Medical Insurance & Healthcare Cash Plan
- GPP Pension
- Life Assurance
- 25 days annual leave allowance (plus Bank Holidays)
- Employee Assistance Programme
- Employee Discounts
- Site Professional Subscriptions reimbursement
Corporate Policies
Cognita Schools is committed to safeguarding and promoting the welfare of children and young people. We expect all staff and volunteers to share this commitment. All appointments are subject to safer recruitment checks, including an enhanced DBS check. Our Safeguarding and Child Protection Policy is available on the school website. Details on Recruitment of Ex‑Offenders is included within the Application Guidance. We are an equal opportunities employer committed to diversity and treating all employees with dignity and respect regardless of background. Early applications are encouraged; we reserve the right to interview and appoint prior to closing date for the right applicant.
Senior Cyber Security Analyst employer: Cognita Schools
Contact Detail:
Cognita Schools Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Cyber Security Analyst
✨Tip Number 1
Network like a pro! Reach out to your connections in the cyber security field, attend industry events, and join relevant online forums. The more people you know, the better your chances of hearing about job openings before they even hit the market.
✨Tip Number 2
Show off your skills! Create a portfolio or a personal website showcasing your projects, certifications, and any relevant experience. This gives potential employers a tangible way to see what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on common cyber security scenarios and challenges. Practice articulating how you've handled incidents in the past and how you would approach new ones. Confidence is key!
✨Tip Number 4
Don't forget to apply through our website! We love seeing candidates who take the initiative. Plus, it helps us keep track of your application and makes the process smoother for everyone involved.
We think you need these skills to ace Senior Cyber Security Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Senior Cyber Security Analyst role. Highlight your experience with Microsoft Sentinel, incident response, and vulnerability management. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background makes you a perfect fit for our team. Keep it concise but impactful – we love a good story!
Showcase Your Technical Skills: Don’t forget to showcase your technical expertise in your application. Mention specific tools and technologies you've worked with, especially those related to Microsoft Defender and cloud security. We’re keen on seeing your hands-on experience!
Apply Through Our Website: We encourage you to apply through our website for a smoother process. It helps us keep track of your application and ensures you don’t miss out on any important updates. Plus, it’s super easy!
How to prepare for a job interview at Cognita Schools
✨Know Your Tools Inside Out
Make sure you’re well-versed in Microsoft Sentinel, Microsoft Defender, and any other security tools mentioned in the job description. Be ready to discuss your experience with these technologies, including specific examples of how you've configured or optimised them in past roles.
✨Showcase Your Incident Response Skills
Prepare to talk about your experience leading incident response efforts. Have a couple of solid examples ready that highlight your ability to coordinate with teams, manage incidents from detection to recovery, and implement improvements based on post-incident reviews.
✨Demonstrate Your Vulnerability Management Expertise
Be prepared to discuss your approach to vulnerability management. Highlight any programmes you've managed, how you assess and remediate vulnerabilities, and how you use threat intelligence to prioritise risks. This will show your understanding of the role's key responsibilities.
✨Engage with Security Culture
Cognita values collaboration and security awareness. Think of ways you've promoted a security culture in previous roles. Be ready to share how you've engaged with IT teams and stakeholders to ensure consistent security practices across diverse environments.