Senior Cybersecurity Analyst – Incident Response & SIEM

Senior Cybersecurity Analyst – Incident Response & SIEM

Full-Time 55000 - 65000 £ / year (est.) Home office (partial)
Dormont Manufacturing Co

At a Glance

  • Tasks: Monitor and respond to security alerts, investigate incidents, and optimise security tools.
  • Company: Join Realty Income, a leading global Real Estate Investment Trust with a strong growth story.
  • Benefits: Enjoy hybrid working, competitive salary, and opportunities for professional development.
  • Other info: Be part of a diverse team committed to positive community impact.
  • Why this job: Make a real impact in cybersecurity while growing your skills in a dynamic environment.
  • Qualifications: Experience in information security and relevant certifications required.

The predicted salary is between 55000 - 65000 £ per year.

About Realty Income Realty Income (NYSE: O), an S&P 500 company, is a real estate partner to the world’s leading companies. Founded in 1969, we invest in diversified commercial real estate and have a portfolio of 15,600 properties in all 50 U.S. states, the UK and six other countries in Europe, with a gross book value of $58bn. We are known as The Monthly Dividend Company and have a mission to deliver stockholders dependable monthly dividends that grow over time.

Position Overview Reporting to the Associate Director, European IT and operating under the supervision of the global Information Security program, the Senior Information Security Analyst supports the day‑to‑day operations of the global Information Security program, with a focus on security alert triage, incident investigation, and operational effectiveness across the environment. This role is responsible for monitoring and responding to security alerts, performing assigned operational tasks, and optimizing security tooling to improve detection quality and reduce false positives.

Key Responsibilities

  • Monitor, triage, and investigate security alerts in coordination with the Security Operations Center (SOC) and internal teams.
  • Analyze and validate potential security incidents, ensuring accurate classification, documentation, and escalation.
  • Perform daily operational information security tasks, including the management and resolution of ServiceNow incidents assigned to the Information Security team.
  • Support incident response efforts through investigation, coordination, and detailed documentation of findings.
  • Participate occasionally in an on‑call rotation as required to support timely response and escalation of security incidents outside of business hours.
  • Tune and optimize security tools, including SIEM and endpoint protection platforms, to improve alert fidelity and reduce false positives.
  • Collaborate with internal technology teams to ensure appropriate logging, monitoring, and alerting capabilities are in place across systems.
  • Work closely with the IT Service Desk, Operations, and development teams to support vulnerability identification and ensure remediation is prioritised and delivered within agreed SLAs.
  • Support security awareness initiatives through participation in training, workshops, and knowledge‑sharing activities.
  • Partner with the global Information Security team to review, streamline, and develop security processes, procedures, and incident response playbooks.
  • Promote a culture of security across the organization through engagement and collaboration.

Candidate Requirements

  • Suitable experience in an Information Security role.
  • Some previous relevant experience in a technical IT role (System Administration/Network Administration/DevOps).
  • Must have Cybersecurity certification(s) (CISSP, Sec+, CCSP, CEH) or equivalent.
  • Knowledge of security frameworks and regulatory compliance standards (NIST CSF, SOX ITGC, GDPR, etc.).
  • Working technical knowledge and hands‑on experience securing enterprise IT environments within predominantly Windows‑based and cloud‑hosted ecosystems.
  • Demonstrated experience in incident response, threat detection, vulnerability management, and securing workloads operating at enterprise scale.
  • Strong ability to analyze, prioritize, and respond to security alerts and vulnerabilities within the context of business operations and risk tolerance.
  • Experience with incident response processes and best practices, including investigation, escalation, and documentation.
  • Knowledge of cloud security principles, particularly within Microsoft Azure environments.
  • Strong written and verbal communication skills include the ability to clearly document findings and risks to technical and non‑technical stakeholders.
  • Demonstrate commitment to continuous learning, staying current with emerging threats, technologies and industry trends.

Hybrid working arrangements, in the office Monday / Tuesday / Wednesday / Thursday. May require infrequent travel to remote sites. Make yourself available outside of normal working hours for security incidents.

Desirable but not essential:

  • Experience working in the financial services or investment industries.
  • Bachelor’s degree in information security or related field or equivalent combination of education and experience.

This role is subject to enhanced compliance and disclosure requirements comparable with those of a regulated financial services organization, including conflict of interest disclosures and personal trading policies.

Our Mission & Values For more than 50 years, Realty Income has been guided by our mission to invest in people and places to deliver dependable monthly dividends that increase over time.

Realty Income is committed to diversity and inclusion and welcomes all applicants regardless of age, disability, gender reassignment, marriage and civil partnership, pregnancy and maternity, race, religion or belief, sex, sexual orientation or educational background.

Senior Cybersecurity Analyst – Incident Response & SIEM employer: Dormont Manufacturing Co

Realty Income is an exceptional employer, offering a dynamic work environment that fosters professional growth and collaboration within the global Information Security team. With a strong commitment to employee development, hybrid working arrangements, and a culture that values diversity and inclusion, you will have the opportunity to contribute to meaningful projects while enjoying the benefits of working in a leading Real Estate Investment Trust at a prestigious location in St. James’s Square, London.

Dormont Manufacturing Co

Contact Details:

Dormont Manufacturing Co Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Senior Cybersecurity Analyst – Incident Response & SIEM

Tip Number 1

Network like a pro! Reach out to folks in the cybersecurity field, especially those who work at Realty Income or similar companies. A friendly chat can open doors and give you insights that might just land you an interview.

Tip Number 2

Show off your skills! Prepare for potential interviews by brushing up on your incident response and SIEM knowledge. Be ready to discuss real-world scenarios where you've tackled security challenges head-on.

Tip Number 3

Don’t forget to follow up! After any interaction, whether it’s an interview or a networking chat, send a quick thank-you note. It shows your enthusiasm and keeps you fresh in their minds.

Tip Number 4

Apply through our website! We love seeing applications come directly from candidates who are genuinely interested in joining us. Plus, it gives you a better chance of being noticed by our hiring team.

We think you need these skills to ace Senior Cybersecurity Analyst – Incident Response & SIEM

Incident Response
Security Alert Triage
SIEM
Vulnerability Management
Threat Detection
Cybersecurity Certifications (CISSP, Sec+, CCSP, CEH)
NIST Cybersecurity Framework

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Senior Cybersecurity Analyst role. Highlight your relevant experience in incident response and SIEM, and don’t forget to mention any cybersecurity certifications you hold. We want to see how your skills align with our needs!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your background makes you a great fit for Realty Income. Keep it concise but engaging – we love a good story!

Showcase Your Technical Skills:In your application, be sure to showcase your technical skills, especially those related to security frameworks and compliance standards like NIST CSF and GDPR. We’re looking for someone who can hit the ground running, so let us know what tools you’ve worked with!

Apply Through Our Website:We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we love seeing applications come directly from our site!

How to prepare for a job interview at Dormont Manufacturing Co

Know Your Cybersecurity Frameworks

Make sure you brush up on the NIST Cybersecurity Framework, GDPR, and SOX. Being able to discuss how these frameworks apply to incident response and security operations will show that you’re not just familiar with the theory but can also apply it in practice.

Demonstrate Your Incident Response Skills

Prepare to share specific examples of past incidents you've handled. Talk about your role in the investigation, how you triaged alerts, and what steps you took to resolve issues. This will highlight your hands-on experience and problem-solving abilities.

Familiarise Yourself with SIEM Tools

Since this role involves optimising security tools, make sure you know your way around SIEM platforms. Be ready to discuss any experience you have tuning alerts or reducing false positives, as this will demonstrate your technical expertise and proactive approach.

Show Your Communication Skills

You’ll need to communicate findings to both technical and non-technical stakeholders. Practice explaining complex security concepts in simple terms. This will showcase your ability to bridge the gap between tech and business, which is crucial for this role.