Security Analyst, Incident Response (GSOC London)

Security Analyst, Incident Response (GSOC London)

Full-Time 50000 - 70000 £ / year (est.) No working from home possible
Royal Bank of Canada

At a Glance

  • Tasks: Respond to critical security incidents and provide expert support in a dynamic environment.
  • Company: Join RBC's Global Security Incident Response team in London.
  • Benefits: Permanent role with growth opportunities, coaching, and a collaborative team culture.
  • Other info: Exciting chance to shape a new team and enhance your skills.
  • Why this job: Make a real impact in cybersecurity while working with top professionals.
  • Qualifications: Bachelor's degree in IT or related field and relevant security certifications required.

The predicted salary is between 50000 - 70000 £ per year.

Job Description

You will be a key member of the RBC Global Security Incident Response team as an experienced Security Analyst.

This role is a core position within the Global Security Operations Centre (GSOC), providing technical expertise and leadership support for proactive and reactive responses to cyber threats targeting RBC's global environment.

What is the opportunity?

You will report to the Senior Manager, Incident Response and work with a team of 4-6 technical specialists.

You will act as the focal point of contact for GSOC management regarding security incidents, and you will provide support to local and extended team members with critical incidents impacting RBC users, systems, infrastructure, and resources.

This is a permanent, full‑time position requiring four days per week in our London Fenchurch office.

Responsibilities

  • Global accountability to respond to critical security incidents/events, providing accurate and timely reporting to Global Cyber Security Leadership.
  • Provide 24/7/365 support for security incidents impacting mission‑critical business and IT infrastructure, including incident management, response, remediation, and reporting.
  • Support and maintain communication with the CSIRT extended team, ensuring timely communication to all stakeholders regarding incident response activities.
  • Provide post‑mortem reporting to leadership detailing security vulnerabilities, technology gaps, shortcomings, or other security issues.
  • Work with threat intelligence, SOC, and extended teams to ensure global compliance with RBC standards concerning security incidents and related findings.
  • Drive resolution of security incidents in a timely and effective manner.
  • Collaborate with Cybersecurity Command Centre analysts, specialists, and management to detail and report on the status and resolution of critical incidents.
  • Execute incident response actions and engage with business/technical stakeholders.

Qualifications

  • Must‑have
  • Bachelor's degree in computer science, IT, or related disciplines and information security certifications (e. g., CISSP, GCIA, GCIH, GREM, CEH).
  • Demonstrated experience performing investigation activities for security-related events in a complex Incident Management or SOC environment.
  • Thorough understanding of Security Information and Incident Management methodologies.
  • Proven experience in a SOC environment.
  • Exposure to malware and sandbox analysis.
  • Robust knowledge of computer networking and operating systems.
  • Nice‑to‑have
  • Experience with SOAR platforms.
  • Familiarity with threat hunting techniques and scenarios.
  • Knowledge in detection engineering.
  • Understanding of current threat landscape and threat actor TTPs.
  • Experience with scripting languages (Power Shell, Python, regex, Bash, etc.).
  • Industry-recognized certifications from ISC2, SANS, ISACA, etc.

What is in it for you?

  • Opportunity to help develop the ethos and environment of a new team.
  • Leadership who will support your development through coaching and growth opportunities.
  • Chance to work with top professionals in the field.
  • Ability to make a lasting impact.
  • Dynamic, collaborative, progressive, high-performing team environment.
  • #J-18808-Ljbffr

Security Analyst, Incident Response (GSOC London) employer: Royal Bank of Canada

At RBC Wealth Management Europe, we pride ourselves on being an exceptional employer, offering a dynamic and collaborative work environment in London and the South East. Our commitment to employee growth is evident through our comprehensive Total Rewards Program, which includes competitive compensation, bonuses, and flexible benefits, alongside opportunities for professional development and coaching from experienced leaders. Join us to make a meaningful impact while working with a talented team dedicated to delivering tailored financial solutions to our clients.

Royal Bank of Canada

Contact Details:

Royal Bank of Canada Recruitment Team

We think you need these skills to ace Security Analyst, Incident Response (GSOC London)

Incident Management
Cybersecurity
Security Information and Incident Management
Malware Analysis
Sandbox Analysis
Computer Networking
Operating Systems