Cyber Defence Analyst in Leeds

Cyber Defence Analyst in Leeds

Leeds Full-Time 36000 - 60000 £ / year (est.) Home office (partial)
Experian Ltd

At a Glance

  • Tasks: Join the Cyber Fusion Center to analyse and respond to security threats.
  • Company: Experian, a global leader in data and technology, empowering businesses and individuals.
  • Benefits: Flexible work environment, competitive salary, healthcare, and generous leave policies.
  • Other info: Dynamic team with opportunities for growth and skill development in cybersecurity.
  • Why this job: Be on the front line of cybersecurity, making a real impact in protecting data.
  • Qualifications: Experience in information security and a degree in relevant fields or certifications.

The predicted salary is between 36000 - 60000 £ per year.

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to accomplish their financial goals and help them save time and money. We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments. We invest in people and new advanced technologies to unlock the power of data.

As a Cyber Defence Analyst, you will join the Cyber Fusion Center, performing in-depth analysis, assessment, and response to security threats by following documented policies to meet Service Level Goals. The team provides global 24x7 security operations and monitoring for cybersecurity events affecting Experian. You will be a part of the first line of defence in Experian's broader incident response and incident management departments, responsible for receiving and prioritizing cybersecurity alerts, including being the dedicated contact for potential security incidents reported by users (e.g., Experian employees). Depending on the results of assessment, this team is then responsible for investigating, containing, eradicating, and recovering from events falling in its scope or escalating higher-risk events to dedicated incident response and management teams in the CFC. This role is critical in ensuring the handling of potential threats and plays a part in improving security operations.

This is a home based role reporting to the Director of Security Operations for SecOps & Threat Detection. Please note that in this role, you will have an 8x5 Monday-Friday schedule, with flexibility to respond to after-hours pages for potentially major security incidents to support incident response efforts and may include assignment to an on-call rotation for evenings, weekends, holidays.

Summary of Primary Responsibilities

  • Contribute to daily security operations by overseeing response activities for security events and alerts associated with cyber threats, intrusions, and compromises alongside a team of global security analysts following documented SLOs and processes.
  • Analyze events using security tooling and logging (e.g., SIEM, EDR) and assess potential risk/severity level of cyber threats; escalate higher-risk events to dedicated incident response and management teams in the CFC according to established processes.
  • Collaborate with external teams for incident resolution and escalations, driving incident handling.
  • Notify team Lead(s) of concerns related to operations, such as anomalous changes in metrics, notable open incidents, quality concerns, or observed risks; support with resolution if appropriate.
  • Manage and complete assigned caseload throughout the incident response lifecycle, including analysis, containment, eradication, recovery, and lessons learned.
  • Maintain all case documentation, including notes, analysis findings, containment steps, and cause for each assigned security incident.
  • Ensure incident updates or contact with end-users are performed promptly and documented.
  • Help improve relevant strategies, Standard Operating Procedures (SOPs), and training materials.
  • Support management's overall strategy for CFC by participating in execution of improvement programs together with management's plans.
  • Assist the team Leads and management on use case development by suggesting enhancement or tuning of use cases to improve the security posture of Experian.

Qualifications

  • Some information security experience working within a Security Operations Center or Cyber Security Incident Response Teams.
  • Bachelor's Degree in Computer Science, Computer Engineering, Information Systems, Information Security or professional certification related to Digital Forensics, Incident Response, or Ethical Hacking (e.g., GCIH, CEH, GCFE, GCFA, and CFCE).
  • Knowledge of main concepts related to the Incident Response Life Cycle, MITRE ATT&CK Framework, Cyber Kill Chain, and other cybersecurity frameworks.
  • High-level understanding of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs), and common industry recommendations to prevent and respond to threats such as phishing, malware, network attacks, suspicious activity, data security incidents.
  • Exposure to technical elements of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, NetFlow), Cloud Infrastructure (AWS, Azure, GCP), and Security Technologies (Anti-Virus, Intrusion Prevention, Web Application Firewalls).
  • Interest in developing knowledge across common Incident Response and Security Monitoring applications such as SIEM (e.g., Qradar, Splunk), EDR (e.g., FireEye HX, CrowdStrike Falcon, Microsoft Defender), and SOAR (Palo Alto XSOAR, Google Secops / Chronicle).
  • Desire to build technical skills and hands-on knowledge in the following areas of security operations and incident response: In-depth packet analysis skills, core forensic familiarity, incident response skills, public cloud security practices, and data fusion skills based on multiple security data sources.
  • Security analysis and architecture of Azure and AWS cloud environment using security tools including Defender for Cloud, GuardDuty, CloudTrail, or CloudWatch.
  • System administration on Unix, Linux, or Windows.
  • Network forensics, logging, and event management.
  • Defensive network infrastructure (operations or engineering).
  • Vulnerability assessment and penetration testing concepts.
  • Malware analysis concepts, techniques, and reverse engineering.
  • In-depth knowledge of network and host security technologies and products (such as firewalls, network IDS, scanners) and improve these skills.
  • Security monitoring technologies, such as SIEM, IPS/IDS, UEBA, DLP, among others.
  • Scripting and automation.

Additional Information

Benefits package includes: Flexible work environment, working hybrid or in the office if you prefer. Great compensation package and discretionary bonus plan. Core benefits include pension, Bupa healthcare, sharesave scheme and more. 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

Cyber Defence Analyst in Leeds employer: Experian Ltd

Experian is an exceptional employer, offering a flexible work environment that allows Cyber Defence Analysts to thrive both at home and in the office. With a strong commitment to employee growth, competitive compensation, and a comprehensive benefits package, including generous annual leave and healthcare options, Experian fosters a culture of innovation and inclusivity, ensuring that every team member can contribute meaningfully to the company's mission of harnessing data for positive impact.

Experian Ltd

Contact Details:

Experian Ltd Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Defence Analyst in Leeds

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Experian Ltd, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through Experian Ltd

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Experian Ltd. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Cyber Defence Analyst in Leeds

Security Operations
Incident Response
Cyber Threat Analysis
SIEM
EDR
MITRE ATT&CK Framework
Network Forensics

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Experian Ltd insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Experian Ltd that you’re committed to staying ahead in the game.

How to prepare for a job interview at Experian Ltd

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at Experian Ltd to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Experian Ltd.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.