At a Glance
- Tasks: Identify and respond to cyber threats while enhancing security across technology environments.
- Company: Dynamic organisation focused on strengthening cybersecurity and fostering a collaborative culture.
- Benefits: Hybrid working, competitive salary, and opportunities for professional growth.
- Other info: Inclusive workplace that values diversity and supports personal development.
- Why this job: Make a real impact in cybersecurity and protect critical systems from emerging threats.
- Qualifications: Experience in cybersecurity roles and familiarity with vulnerability management tools.
The predicted salary is between 40000 - 50000 £ per year.
Are you a Cyber Security Analyst who thrives on identifying and responding to evolving cyber threats across complex technology environments? Could you play a key role in strengthening our organisation’s security posture by supporting day-to-day cyber operations, vulnerability management, and incident response? Can you help drive continuous improvement in our cybersecurity capabilities as a Cyber Security Analyst, working closely with teams to enhance resilience and protect critical systems?
As a Cyber Security Analyst, you will support the day-to-day delivery of cybersecurity operations, helping to identify, assess, and respond to risks, vulnerabilities, and incidents across our technology estate. This is a hands-on role where you’ll work closely with resolver teams across infrastructure, cloud, end user, and applications to strengthen security controls and improve overall resilience.
Collaborating with the Cyber Security Manager, you’ll ensure alignment with Governance, Risk, and Compliance (GRC) strategy while contributing to the ongoing development of policies, processes, and controls that protect the organisation from emerging threats.
Your role
- You’ll support operational security activities including monitoring, alert triage, and incident response, working alongside internal teams and third-party providers to investigate and resolve security events.
- You’ll play a key role in vulnerability management by reviewing findings, assessing risk, tracking remediation, and reporting on patching performance.
- You will also help maintain and optimise security tooling across endpoints, identity, cloud, and email systems, identifying opportunities to strengthen baseline controls and improve configurations.
- Supporting cloud security across AWS and Microsoft 365, you’ll work with technical teams to enforce secure standards and maintain visibility of all cloud services.
- Your role will also involve contributing to privileged access management, supporting access reviews, and promoting least privilege principles.
- Acting as an escalation point for the outsourced SOC, you’ll analyse security telemetry, tune detection rules, and contribute to continuous improvement of monitoring and response capabilities.
- In addition, you’ll assist with incident response activities, support forensic investigations, and help maintain playbooks aligned with Cyber Essentials Plus, ISO 27001, and NCSC CAF guidance.
- You’ll collaborate across teams to embed security into everyday operations, contribute to audits and compliance activities, and support awareness initiatives to build a strong security culture across the organisation.
Experience
- Hands-on experience working in a cybersecurity or IT security role, supporting operational security, vulnerability management, or incident response is essential.
- You’ll also bring experience using vulnerability scanning tools such as Defender, Qualys, Tenable, or similar, along with a solid understanding of SOC operations and threat detection methodologies such as MITRE ATT&CK.
- You’ll have working knowledge of securing cloud platforms including AWS, Azure, and Microsoft 365 using native security tools.
- In addition, familiarity with Cyber Essentials Plus requirements, patching processes, and broader security frameworks will be key to succeeding in this role.
Skills and Abilities:
- An analytical and investigative mindset is essential, with the ability to identify and assess security threats effectively.
- You’ll be comfortable working in time-sensitive situations such as incident response and remediation deadlines, while maintaining a high level of integrity, accountability, and a collaborative approach aligned to organisational values.
- You’ll also bring the ability to collaborate across technical teams and influence the adoption of secure practices.
- Clear documentation and reporting skills are key, enabling you to communicate findings to stakeholders, alongside an adaptable and proactive attitude with a focus on continuous improvement in cybersecurity practices.
Equality, Diversity & Inclusion
Belonging is central to who we are. We’re committed to building a workforce that reflects the clients we support, and to creating a culture where everyone feels valued and able to be themselves. We welcome applications from people of all backgrounds and life experiences. If you need a reasonable adjustment during the recruitment process so you can perform at your best, just let us know. We’re here to support you.
Cyber Security Analyst - Leeds/Hybrid in Heathfield employer: StepChange
Contact Detail:
StepChange Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Analyst - Leeds/Hybrid in Heathfield
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your projects and any hands-on experience with tools like Defender or Qualys. This gives potential employers a taste of what you can do.
✨Tip Number 3
Prepare for interviews by brushing up on common cybersecurity scenarios. Think about how you'd handle incidents or vulnerabilities, and be ready to discuss your thought process. Practice makes perfect!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Cyber Security Analyst - Leeds/Hybrid in Heathfield
Some tips for your application 🫡
Tailor Your CV: Make sure your CV speaks directly to the Cyber Security Analyst role. Highlight your hands-on experience in cybersecurity, especially in operational security and incident response. We want to see how your skills align with our needs!
Showcase Your Tools Knowledge: Mention any vulnerability scanning tools you've used, like Defender or Qualys. We love seeing familiarity with cloud platforms too, so if you've worked with AWS or Azure, shout about it in your application!
Be Clear and Concise: When writing your cover letter, keep it straightforward. Clearly outline your relevant experience and how you can contribute to our cybersecurity capabilities. We appreciate a well-structured application that gets to the point!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re keen on joining our team!
How to prepare for a job interview at StepChange
✨Know Your Cybersecurity Basics
Make sure you brush up on the fundamentals of cybersecurity, especially around vulnerability management and incident response. Familiarise yourself with tools like Defender, Qualys, and Tenable, as well as frameworks like Cyber Essentials Plus and ISO 27001. This knowledge will help you answer technical questions confidently.
✨Showcase Your Analytical Skills
Prepare to discuss specific examples where you've identified and responded to security threats. Use the STAR method (Situation, Task, Action, Result) to structure your answers. Highlight your analytical mindset and how it has helped you in past roles, especially in time-sensitive situations.
✨Understand the Company’s Security Posture
Research the organisation's current cybersecurity initiatives and any recent incidents they've faced. This will not only show your interest but also allow you to tailor your responses to demonstrate how you can contribute to their specific needs and enhance their security posture.
✨Prepare for Collaboration Questions
Since this role involves working closely with various teams, be ready to discuss your experience in collaboration. Think of examples where you've influenced secure practices or worked with technical teams to improve security controls. Emphasise your ability to communicate effectively and build relationships across departments.