Security Analyst

Security Analyst

Full-Time 36000 - 60000 £ / year (est.) No working from home possible
RSK Group

At a Glance

  • Tasks: Join our team to manage cybersecurity operations and protect our global business.
  • Company: RSK Group, a leader in innovative security solutions.
  • Benefits: Competitive salary, flexible benefits, training, and career development.
  • Other info: Remote work with occasional office visits and excellent growth opportunities.
  • Why this job: Make a real impact in a fast-paced, risk-diverse environment.
  • Qualifications: 2-5 years in security operations and strong Microsoft 365 knowledge.

The predicted salary is between 36000 - 60000 £ per year.

We have an exciting opportunity at the RSK Group for a Security Analyst to join our existing Business Systems Team. The team is responsible for the company's enterprise-wide applications and information security, servicing requirements from over 15,000 staff members. This is a full time (40 hours pw) remote position, with occasional office visits required. The role is to support group-level cybersecurity operations across a highly decentralised organisation of 250 independently operated businesses globally. You will work closely with the Group Information Security Manager and serve as a bridge between Group Security, Group IT, external SOC providers, and security contacts across the businesses. This position offers a unique opportunity to have visibility and impact across a broad business landscape while working in a fast-moving, risk-diverse environment.

Key Responsibilities

  • Security Incident Management: Triage and investigate escalated incidents from the third-party SOC. Coordinate remediation efforts with business IT teams and/or third-party providers.
  • M365 Tenant Risk Monitoring: Monitor Microsoft 365 tenants across the Group. Identify and communicate risks or anomalies to tenant owners or managed service providers.
  • Threat Intelligence & Communication: Monitor emerging cyber threats and vulnerabilities relevant to the group. Disseminate actionable threat intelligence and guidance to the relevant businesses.
  • Security Metrics & Reporting: Track and report on key operational metrics (e.g., MTTD, MTTR, escalations, resolutions). Use data to identify bottlenecks, trends, and opportunities for improvement.
  • Attack Surface Management: Monitor and assess findings from the Group's Attack Surface Management (ASM) tool. Work with IT and business stakeholders to validate and remediate exposure.
  • Support RSK Group and its subsidiaries during Audits: Engage in screensharing sessions. Provide redacted evidence where required.
  • Cybersecurity Roadmap Execution: Support the Group Information Security Manager in the delivery of the cybersecurity roadmap. Assist with planning and executing initiatives across awareness, tooling, and resilience.

Person Specification

Essential:

  • 2-5 years of experience in a Security Operations, Incident Response, or SOC analyst role.
  • Strong familiarity with Microsoft 365 security configurations and Microsoft Defender suite, including Sentinel.
  • Security tooling such as Netskope, Sentinel, CyberArk.
  • Security incident handling and investigation processes.
  • Attack surface management or external exposure tools (e.g., ASM, EASM, Shodan, etc.).
  • Understanding of security frameworks (e.g., NIST CSF, ISO 27001, MITRE ATT&CK).
  • Excellent communication skills with the ability to translate technical findings into business actions.
  • Strong organisational and coordination skills; comfortable managing multi-threaded work across a large enterprise environment.

Desirable:

  • Experience working in a federated or decentralised organisation.
  • Exposure to SOC tooling (e.g., SIEM, SOAR platforms) and KQL.
  • Familiarity with metrics and reporting in a security context.
  • Cybersecurity certifications (e.g., CompTIA Security+, GSEC, SSCP, AZ-500, Microsoft SC-200).

Salary and benefits

£45,000 - £60,000 dependent on experience. Contributory Pension Scheme. Life Assurance. A flexible benefits programme including the option to buy additional. Regular training and career development. Your professional institution fees and training will be covered.

RSK Group is an Equal Opportunities Employer. RSK will not accept unsolicited CVs from agencies other than RSK PSL or Secondary agencies.

Benefits:

  • Life Assurance
  • Annual Leave
  • Purchase Cycle to Work Scheme
  • Discounted Gym Membership
  • Mental Health Support
  • Electric Vehicle Salary Sacrifice Scheme

Security Analyst employer: RSK Group

At RSK Group, we pride ourselves on being an exceptional employer, offering a dynamic work environment that fosters professional growth and collaboration. As a Security Analyst, you will enjoy the flexibility of a remote position while contributing to vital cybersecurity operations across a diverse global organisation, supported by comprehensive training and development opportunities. Our commitment to employee well-being is reflected in our extensive benefits package, including life assurance, mental health support, and a flexible benefits programme, making RSK Group a rewarding place to advance your career.

RSK Group

Contact Details:

RSK Group Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Analyst

Tip Number 1

Network like a pro! Reach out to current employees at RSK Group on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing the Security Analyst role. Personal connections can make a huge difference!

Tip Number 2

Prepare for the interview by brushing up on your knowledge of Microsoft 365 security configurations and incident response processes. We want you to showcase your skills confidently, so practice explaining technical concepts in simple terms.

Tip Number 3

Stay updated on the latest cyber threats and vulnerabilities. Being able to discuss recent incidents or trends during your interview will show that you're proactive and passionate about cybersecurity, which is exactly what RSK Group is looking for!

Tip Number 4

Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining the RSK Group team.

We think you need these skills to ace Security Analyst

Security Incident Management
Microsoft 365 Security Configurations
Microsoft Defender Suite
Netskope
Sentinel
CyberArk
Attack Surface Management

Some tips for your application 🫡

Tailor Your CV:Make sure your CV is tailored to the Security Analyst role. Highlight your experience with Microsoft 365 security configurations and any relevant tools you've used. We want to see how your skills match what we're looking for!

Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your background makes you a great fit for our team. Keep it engaging and relevant to the job description.

Showcase Your Communication Skills:Since you'll be translating technical findings into business actions, it's crucial to demonstrate your communication skills in your application. Use clear language and examples that show how you've effectively communicated complex information in the past.

Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you're keen on joining our team!

How to prepare for a job interview at RSK Group

Know Your Cybersecurity Basics

Make sure you brush up on your knowledge of security frameworks like NIST CSF and ISO 27001. Being able to discuss these frameworks confidently will show that you understand the foundational principles of cybersecurity, which is crucial for a Security Analyst role.

Familiarise Yourself with Microsoft 365 Security

Since the job involves monitoring Microsoft 365 tenants, it’s essential to be well-versed in its security configurations and tools like Microsoft Defender. Prepare to discuss how you've used these tools in past roles or how you would approach risk monitoring.

Prepare for Incident Management Scenarios

Think about specific incidents you've managed in the past. Be ready to explain your process for triaging and investigating security incidents, as well as how you coordinated remediation efforts with IT teams or third-party providers.

Showcase Your Communication Skills

As a bridge between various teams, strong communication is key. Prepare examples of how you've translated technical findings into actionable business insights. This will demonstrate your ability to work effectively across different departments.