Attack Surface Management Analyst in London
Attack Surface Management Analyst

Attack Surface Management Analyst in London

London Full-Time 40000 - 50000 £ / year (est.) No home office possible
S

At a Glance

  • Tasks: Help clients reduce risks to their online assets and enhance cyber resilience.
  • Company: Dynamic cybersecurity firm focused on innovative threat management solutions.
  • Benefits: 25 days holiday, hybrid working, private health insurance, and financial education.
  • Other info: Flexible working arrangements and excellent career growth opportunities.
  • Why this job: Join a team at the forefront of cybersecurity and make a real impact.
  • Qualifications: Experience in pentesting or cybersecurity analysis; client-facing skills are a plus.

The predicted salary is between 40000 - 50000 £ per year.

Main Duties and Responsibilities

Attack Surface Management (ASM) Analysts deliver our managed Polus Attack Surface Management service to our clients on a continuous basis to help them reduce risks to their internet‑facing assets. This involves validating vulnerabilities, performing manual discovery of their attack surface and helping our clients interpret prioritised findings. Our aim is to become trusted advisors to our clients. You will help our clients to build cyber resilience, enhance their understanding of the threat landscape and become better prepared to face dynamic and evolving security risks. This will involve being on the front foot of new and emerging threats, and ensuring our clients receive quick feedback as to whether they may be affected and actions they can take.

  • Technical testing; vulnerability scanning, attack surface discovery, manual exploit validation, light‑touch pentesting and Open‑Source Intelligence (OSINT) gathering
  • Client Engagement; translating client challenges into solutions that fit S‑RM’s ASM service offerings and value proposition, understanding and supporting the proposal process and ensuring delivery timelines are understood inline with project resourcing requirements
  • Reporting; delivering findings in a range of formats, including via the Polus ASM platform, via written report and also through Quarterly Service Reviews

You will also be required to keep abreast of threat intelligence developments, and work closely with S‑RM’s Threat Intelligence and Incident Response teams to integrate key data points into our service. Support to other teams will be required where ASM is used as a value‑add to assessment‑based engagements in our Risk & Resilience practice, and also where ASM is used to support incident investigation with our Incident Response practice. You will be required to work closely with the other managed service teams (Managed Detection and Response and Cyber Threat Intelligence) to ensure that managed service delivery is unified across all three offerings. Through this you will also be given the opportunity to support and shape the development of the service by working with the ASM practice lead, managed service teams and technical development teams to identify opportunities for innovation and improvement.

Who are we looking for?

We are looking for individuals keen to keep their finger on the pulse when it comes to the latest threats and vulnerabilities, with good client‑facing skills needed to provide long‑term support to the organisations we work with. We’re not looking for prior Attack Surface Management experience (although bonus points if you do), but we’re looking for individuals who may fall into the following profiles with regard to experience:

  • Pentesters with a minimum of 1 year experience (including carrying out external pentests) looking to specialise in threat‑led approaches
  • Cyber Security Analysts with experience running vulnerability scans and triaging issues, looking to move into managed service delivery with an offensive security focus
  • Threat Intelligence Analysts with good knowledge of offensive security concepts and familiarity with running security tooling, keen to develop their technical skills

Candidates must have permission to work in the UK by the start of their employment.

Benefits

We offer thoughtful, balanced rewards and support to help our people do their best work and live their lives outside it, including but not exhaustive of:

  • 25 days holiday per year in addition to bank holidays (+1 day for every year of service up to a maximum of 30 days)
  • Hybrid working and flexible working hours
  • Matching pension contribution up to 7% and financial education
  • Fertility treatment leave – 5 days of leave per cycle of treatment per year
  • Maternity leave – 26 weeks of full pay followed by 13 weeks of half pay
  • Paternity leave – 6 weeks of full pay
  • Private dental and medical insurance (taxable benefit) for you and your family
  • Virtual GP for you and your family members that live in the same household
  • Various gym discounts for you and your partner

The role will be based in our London office. However, we have flexible working arrangements available.

Attack Surface Management Analyst in London employer: S-RM

At S-RM, we pride ourselves on being an exceptional employer, offering a dynamic work culture that fosters innovation and collaboration. Our London office provides a supportive environment where Attack Surface Management Analysts can thrive, with access to comprehensive benefits such as generous holiday allowances, flexible working arrangements, and robust professional development opportunities. Join us to be part of a team dedicated to enhancing cyber resilience for our clients while enjoying a balanced work-life experience.
S

Contact Detail:

S-RM Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Attack Surface Management Analyst in London

✨Tip Number 1

Network like a pro! Get out there and connect with folks in the cyber security field. Attend meetups, webinars, or even just chat with people on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your skills! Create a portfolio that highlights your experience with vulnerability scanning, pentesting, or any relevant projects. This gives potential employers a taste of what you can do and sets you apart from the crowd.

✨Tip Number 3

Be proactive! Don’t just wait for job postings to pop up. Reach out directly to companies you admire, like us at StudySmarter, and express your interest. A little initiative can go a long way in landing that dream role.

✨Tip Number 4

Stay updated on the latest threats and trends in cyber security. Follow industry news, join forums, and engage in discussions. This not only boosts your knowledge but also shows potential employers that you're passionate and committed to the field.

We think you need these skills to ace Attack Surface Management Analyst in London

Vulnerability Scanning
Attack Surface Discovery
Manual Exploit Validation
Pentesting
Open-Source Intelligence (OSINT) Gathering
Client Engagement
Threat Intelligence
Incident Response
Reporting Skills
Cyber Security Knowledge
Technical Aptitude
Problem-Solving Skills
Communication Skills
Adaptability

Some tips for your application 🫡

Tailor Your CV: Make sure your CV reflects the skills and experiences that align with the Attack Surface Management role. Highlight any relevant experience in pentesting, vulnerability scanning, or client engagement to show us you’re a great fit!

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background makes you the ideal candidate for this position. Don’t forget to mention your eagerness to learn and grow with us!

Showcase Your Technical Skills: We want to see your technical prowess! Include specific examples of tools you've used or projects you've worked on that demonstrate your understanding of attack surface management and threat intelligence. This will help us see your potential!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates. Plus, we love seeing candidates who take that extra step!

How to prepare for a job interview at S-RM

✨Know Your Stuff

Make sure you brush up on the latest trends in attack surface management and cyber threats. Familiarise yourself with vulnerability scanning tools and techniques, as well as the basics of pentesting. This will not only help you answer technical questions but also show your passion for the field.

✨Client Engagement Skills

Since this role involves client interaction, practice how to communicate complex security concepts in a way that’s easy to understand. Think about examples from your past experiences where you successfully translated technical jargon into actionable insights for clients.

✨Show Your Team Spirit

This position requires collaboration with various teams. Be prepared to discuss how you've worked effectively in a team setting before. Highlight any experience you have in cross-functional projects, especially those involving incident response or threat intelligence.

✨Prepare Questions

Have a few thoughtful questions ready to ask at the end of your interview. This could be about the company’s approach to emerging threats or how they measure the success of their ASM services. It shows you're genuinely interested and engaged in the role.

Attack Surface Management Analyst in London
S-RM
Location: London

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>