Attack Monitoring Analyst (GSOC)

Attack Monitoring Analyst (GSOC)

Full-Time 63000 - 77000 £ / year (est.) No working from home possible
London Stock Exchange Group

At a Glance

  • Tasks: Monitor and respond to cyber security incidents in a dynamic environment.
  • Company: Join the London Stock Exchange Group, a leader in financial markets.
  • Benefits: Enjoy healthcare, retirement planning, paid volunteering days, and wellbeing initiatives.
  • Other info: Collaborative culture that values innovation and individual contributions.
  • Why this job: Make a real impact in cyber security while developing your skills.
  • Qualifications: Experience with SIEM tools and a solid understanding of cyber security.

The predicted salary is between 63000 - 77000 £ per year.

The London Stock Exchange Group seeks an experienced, dedicated and driven Attack Monitoring Analyst to join the Global Security Operations team!

ROLE SUMMARY: LSEG Security Operations is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. This role is for an Attack Monitoring Analyst for the Global Security Operations Centre (GSOC). The role is responsible for identifying and responding to cyber security incidents and improving the defensive capabilities of the GSOC. The ideal candidate will have a solid technical background, with a firm understanding of modern attack techniques coupled with knowledge of the typical lifecycle of an attack.

SHIFT: Role operates on a "follow-the-sun" shift rotation. Shifts are 1200hrs - 0000hrs (midday to midnight) London Time using a 4 days on, 4 days off rotation.

RESPONSIBILITIES:

  • Triage security events and employ a methodical and coherent response to security incidents adopting playbooks where necessary.
  • Competently operate a chosen SIEM (e.g. Splunk/QRadar/LogRhythm) for incident investigations, or for the development of monitoring dashboards.
  • Utilise playbooks, existing knowledge and accurate online resources for guidance when responding to incidents.
  • Utilise online resources for researching and collecting threat intelligence to improve the SOC’s abilities to detect cyber-attacks.
  • Develop new, or improve existing run books and use cases based on investigations and knowledge of modern attacks.
  • Stay up to date with current vulnerabilities, attacks, and countermeasures.
  • Identify, respond and remediate cyber events generated through monitoring technologies.

EXPERIENCE:

  • Preferred experience with operating or administrating a SIEM (e.g. Splunk/QRadar/LogRhythm).
  • Solid understanding of networks including the TCP/IP stack, typical organisation architectures, and common protocols abused by malware.
  • Experience in security event analysis & triage, incident handling and root-cause identification.
  • Understanding of tools, techniques and procedures that attackers use to compromise organisations, ideally from direct experience.
  • Knowledge of cyber security either academically or within corporate environments.
  • Ability to work in a fast-paced and demanding environment while remaining calm.
  • Strong verbal and written communication and collaboration skills.
  • Security industry specific and core technical accreditations such as OSCP, GIAC, CCNA.
  • Certification demonstrating SIEM operational competences.
  • Proficient with one or more programming languages (e.g. Python, PowerShell, Java, C#).

Career Stage: Associate

Join us and be part of a team that values innovation, quality, and continuous improvement. If you're ready to take your career to the next level and make a significant impact, we'd love to hear from you.

LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.

Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.

Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce.

We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law.

You will be part of a collaborative and creative culture where we encourage new ideas. We are committed to sustainability across our global business and we are proud to partner with our customers to help them meet their sustainability objectives.

LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.

Attack Monitoring Analyst (GSOC) employer: London Stock Exchange Group

At London Stock Exchange Group, we pride ourselves on being an exceptional employer that champions innovation and sustainability. Our collaborative work culture fosters professional growth, offering employees ample opportunities to develop their skills in a dynamic environment focused on sustainable investment. Located in the heart of London, we provide a vibrant workplace with access to industry-leading resources and a commitment to making a positive impact in the financial sector.

London Stock Exchange Group

Contact Details:

London Stock Exchange Group Recruitment Team

We think you need these skills to ace Attack Monitoring Analyst (GSOC)

SIEM operation (e.g. Splunk, QRadar, LogRhythm)
Cyber security incident response
Security event analysis and triage
Root-cause identification
Understanding of TCP/IP stack and network architectures
Threat intelligence research
Development of run books and use cases