At a Glance
- Tasks: Join our detection engineering team to create custom security detections for global customers.
- Company: Dynamic global tech company focused on innovative security solutions.
- Benefits: Flexible hours, remote work, competitive salary, and generous vacation days.
- Other info: Opportunities for professional growth through training and collaborative projects.
- Why this job: Make a real impact in cybersecurity while developing your skills in a supportive environment.
- Qualifications: Experience in detection engineering or SOC; strong communication skills are a plus.
The predicted salary is between 51750 - 63250 £ per year.
Our Global Detection Engineering Team provides detection capabilities for various security products used in our 24/7 managed monitoring service with customers all over the world. This role will be to join our detection engineering team, where you will focus on providing a tailored experience of custom detections to all our customers. All customers have the benefit of access to NCC’s wide library of detections but there are many cases for exceptions and requirements for custom detections. This role sits at the pivotal point between our customers and the detection engineers. Together with customers, you will focus on assessing the gap and need for custom detections to provide the appropriate level of detection each customer desires.
Key Responsibilities
- Schedule and host threat workshops utilizing industry-approved methodologies such as DREAD or STRIDE.
- Correlate log events in SIEM solutions with activities which have taken place in the business application or technology.
- Query data ingested into customer SIEM environments to assess the practical feasibility of newly proposed detections.
- Prepare pseudo-logic and work packages for detection engineers who write detections-as-code within the NCC detection repository.
- Derive new generic detection opportunities from Threat Intelligence reports to further expand NCC’s detection library.
- Identify potential abuse patterns in customer applications.
- Query large datasets of data in SIEMs (Sentinel & Splunk).
- Explain potential attack paths to customers.
- Write pseudo-logic for the development of new detections.
- Track the status of detections under development and share status updates with the customer.
- Obtain feedback from customers on exceptions and allowed behaviour during the testing phase of the development of new analytics.
- Ensure work is up-to-date and tracked in internal ticketing system(s).
Skills, Knowledge & Expertise
- Experience in detection engineering on a range of technologies (SIEM and EDR) OR Experience in SOC or Managed Detection Services OR Experience in Analytically-minded IT Systems administration/Network Administration and looking for a change in career/focus on Security.
- Excellent oral and written communication skills.
- Ability to work with client engagement teams and NCC colleagues to continuously improve the service we deliver.
- Good understanding of IT Systems and platforms from a security context.
Desired Requirements
- A security mindset and demonstrable experience or knowledge of contemporary attack tactics and techniques.
- Forensics or Incident Response competency would be considered valuable.
- Strong knowledge of the latest threats in security.
- The skills to translate technical attacks to effects in the business and vice versa.
- Experience in simulating attacks is considered an advantageous skill to enhance other skills.
- Experience with SIEM tools, preferably Splunk and Microsoft Sentinel.
- Knowledge of one or more of the following: Azure or other cloud technologies, Windows Active Directory, Windows Operating System fundamentals, Networking fundamentals, System management technologies, Identity and access management procedures and technologies.
Job Benefits
- A good salary that matches the things you have already done and will do.
- Flexible working hours and flexibility in working from home or at the office, allowing you to optimally combine your private life with your work.
- A favourable pension scheme, 26 vacation days (+4 mandatory days off), and 8% holiday pay with a full-time contract.
- Plenty of development opportunities: you can gain and share knowledge through training, TechTalks, events, and our own Fox Academy.
- A laptop and business phone. If you use your own phone, you will receive a reimbursement of up to €25 per month.
- A remote work allowance (for hybrid working).
- A performance bonus and profit sharing because we value your effort.
- When we work in the office, we gather every day for a delicious lunch.
Detection Consultant in Manchester employer: NCC Group
NCC is an exceptional employer, offering a dynamic work culture that prioritises flexibility and employee well-being in the heart of Cheltenham. With generous holiday allowances, comprehensive financial benefits, and a strong commitment to community engagement, employees are empowered to grow both personally and professionally while contributing to cutting-edge cyber threat intelligence initiatives.
StudySmarter Expert Advice🤫
We think this is how you could land Detection Consultant in Manchester
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including NCC Group, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through NCC Group
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at NCC Group. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace Detection Consultant in Manchester
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at NCC Group insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to NCC Group that you’re committed to staying ahead in the game.
How to prepare for a job interview at NCC Group
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at NCC Group to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at NCC Group.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.