At a Glance
- Tasks: Investigate cyber security alerts and support incident response in a dynamic environment.
- Company: Join a leading cyber security team in London with a hybrid work model.
- Benefits: Competitive salary, professional development, and opportunities for career growth.
- Other info: Join a supportive team and contribute to improving cyber defence capabilities.
- Why this job: Make a real impact in cyber security while working with cutting-edge tools and technologies.
- Qualifications: 2-3 years of experience in cyber security and active SC clearance required.
The predicted salary is between 63000 - 77000 Β£ per year.
Contract Length: to 31/03/2027
Location: London, hybrid 60% in the office
Security Clearance: SC (Security Clearance) active
KEY criteria:
- active SC clearance
- at least 2-3 years experience in a position of Cyber Security Analyst
- working experience of Splunk
- working experience of M365 (Microsoft Defender / Sentinel / KQL)
As an associate security analyst you will:
- triage and investigate cyber security alerts and reports from users
- use a variety of techniques to analyse systems, files, network traffic and cloud environments and understand the nature and extent of possible cyber incidents
- support the technical response to cyber incidents by identifying and implementing (or supporting the implementation of) containment, eradication and recovery actions
- support the coordination of cyber incidents
- contribute to post-incident reviews to identify lessons and actions
- identify opportunities for, and support the delivery of, continual improvements to the incident investigation and response capability
- work closely alongside other Cyber Defence functions, supporting the continual improvement of wider capabilities
- contribute to internal plans, playbooks and knowledge base articles
- act as an escalation point for, and provide coaching and mentoring to, apprentice security analysts
- be responsible for line management of apprentice security analysts
Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota, which you will be expected to join.
Who you are
Weβre interested in people who have:
- experience investigating and responding to cyber incidents
- experience using security tools (e.g., EDR, SIEM) to support the investigation and response to cyber incidents
- Experience with SIEM tools (experience of Splunk preferred but experience of Microsoft Sentinel or an equivalent SIEM tool is acceptable)
- an understanding of the tools, techniques and procedures commonly used by threat actors
- good analytical and problem-solving skills
- good verbal and written communication skills
Itβs desirable, but not essential, that you have:
- experience with Splunk
- experience working in an Agile environment
- experience with cloud environments such as AWS
Associate Security Analyst (SC Cleared) employer: Lancesoft
As a Senior DevOps Engineer with us, you'll thrive in a dynamic hybrid work environment across vibrant cities like Birmingham, Blackpool, Leeds, Manchester, and Sheffield. We pride ourselves on fostering a collaborative culture that prioritises employee growth through mentorship and continuous learning, while offering competitive benefits and the opportunity to work on cutting-edge AWS technologies. Join us to be part of a forward-thinking team dedicated to innovation and excellence in service delivery.