At a Glance
- Tasks: Identify and respond to cyber threats while enhancing security across technology environments.
- Company: Dynamic organisation focused on strengthening cybersecurity and fostering a collaborative culture.
- Benefits: Hybrid work model, competitive salary, and opportunities for professional growth.
- Other info: Inclusive workplace that values diversity and supports personal growth.
- Why this job: Make a real impact in cybersecurity and protect critical systems from emerging threats.
- Qualifications: Experience in cybersecurity roles and familiarity with vulnerability management tools.
The predicted salary is between 40000 - 50000 £ per year.
Are you a Cyber Security Analyst who thrives on identifying and responding to evolving cyber threats across complex technology environments? Could you play a key role in strengthening our organisation’s security posture by supporting day-to-day cyber operations, vulnerability management, and incident response? Can you help drive continuous improvement in our cybersecurity capabilities as a Cyber Security Analyst, working closely with teams to enhance resilience and protect critical systems?
As a Cyber Security Analyst, you will support the day-to-day delivery of cybersecurity operations, helping to identify, assess, and respond to risks, vulnerabilities, and incidents across our technology estate. This is a hands-on role where you’ll work closely with resolver teams across infrastructure, cloud, end user, and applications to strengthen security controls and improve overall resilience.
Collaborating with the Cyber Security Manager, you’ll ensure alignment with Governance, Risk, and Compliance (GRC) strategy while contributing to the ongoing development of policies, processes, and controls that protect the organisation from emerging threats.
Your role
- You’ll support operational security activities including monitoring, alert triage, and incident response, working alongside internal teams and third-party providers to investigate and resolve security events.
- You’ll play a key role in vulnerability management by reviewing findings, assessing risk, tracking remediation, and reporting on patching performance.
- You will also help maintain and optimise security tooling across endpoints, identity, cloud, and email systems, identifying opportunities to strengthen baseline controls and improve configurations.
- Supporting cloud security across AWS and Microsoft 365, you’ll work with technical teams to enforce secure standards and maintain visibility of all cloud services.
- Your role will also involve contributing to privileged access management, supporting access reviews, and promoting least privilege principles.
- Acting as an escalation point for the outsourced SOC, you’ll analyse security telemetry, tune detection rules, and contribute to continuous improvement of monitoring and response capabilities.
- In addition, you’ll assist with incident response activities, support forensic investigations, and help maintain playbooks aligned with Cyber Essentials Plus, ISO 27001, and NCSC CAF guidance.
- You’ll collaborate across teams to embed security into everyday operations, contribute to audits and compliance activities, and support awareness initiatives to build a strong security culture across the organisation.
Experience
- Hands-on experience working in a cybersecurity or IT security role, supporting operational security, vulnerability management, or incident response is essential.
- You’ll also bring experience using vulnerability scanning tools such as Defender, Qualys, Tenable, or similar, along with a solid understanding of SOC operations and threat detection methodologies such as MITRE ATT&CK.
- You’ll have working knowledge of securing cloud platforms including AWS, Azure, and Microsoft 365 using native security tools.
- In addition, familiarity with Cyber Essentials Plus requirements, patching processes, and broader security frameworks will be key to succeeding in this role.
Skills and Abilities:
- An analytical and investigative mindset is essential, with the ability to identify and assess security threats effectively.
- You’ll be comfortable working in time-sensitive situations such as incident response and remediation deadlines, while maintaining a high level of integrity, accountability, and a collaborative approach aligned to organisational values.
- You’ll also bring the ability to collaborate across technical teams and influence the adoption of secure practices.
- Clear documentation and reporting skills are key, enabling you to communicate findings to stakeholders, alongside an adaptable and proactive attitude with a focus on continuous improvement in cybersecurity practices.
Equality, Diversity & Inclusion
Belonging is central to who we are. We’re committed to building a workforce that reflects the clients we support, and to creating a culture where everyone feels valued and able to be themselves. We welcome applications from people of all backgrounds and life experiences. If you need a reasonable adjustment during the recruitment process so you can perform at your best, just let us know. We’re here to support you.
Cyber Security Analyst - Leeds/Hybrid in Kirk Sandall employer: StepChange
Contact Detail:
StepChange Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Analyst - Leeds/Hybrid in Kirk Sandall
✨Tip Number 1
Network like a pro! Reach out to folks in the industry on LinkedIn or at local meetups. You never know who might have the inside scoop on job openings or can put in a good word for you.
✨Tip Number 2
Show off your skills! Create a personal project or contribute to open-source initiatives related to cybersecurity. This not only boosts your portfolio but also demonstrates your passion and hands-on experience.
✨Tip Number 3
Prepare for interviews by brushing up on common cybersecurity scenarios and incident response strategies. Practise articulating your thought process clearly, as this will show your analytical mindset and problem-solving abilities.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!
We think you need these skills to ace Cyber Security Analyst - Leeds/Hybrid in Kirk Sandall
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Analyst role. Highlight your hands-on experience in cybersecurity, especially in operational security and incident response. We want to see how your skills align with our needs!
Showcase Your Skills: Don’t forget to showcase your experience with vulnerability scanning tools and cloud security. Mention specific tools like Defender or Qualys, and how you've used them to strengthen security. This will help us see your technical expertise!
Be Clear and Concise: When writing your application, keep it clear and concise. Use bullet points where possible to make it easy for us to read. We appreciate straightforward communication, especially when it comes to your achievements and experiences.
Apply Through Our Website: Finally, make sure to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, we love seeing candidates who follow our process!
How to prepare for a job interview at StepChange
✨Know Your Cybersecurity Basics
Make sure you brush up on the fundamentals of cybersecurity, especially around incident response and vulnerability management. Be ready to discuss your hands-on experience with tools like Defender or Qualys, as well as your understanding of frameworks like Cyber Essentials Plus.
✨Showcase Your Analytical Skills
Prepare to demonstrate your analytical mindset by discussing past experiences where you identified and assessed security threats. Use specific examples to illustrate how you approached time-sensitive situations and what outcomes resulted from your actions.
✨Familiarise Yourself with Cloud Security
Since cloud security is a big part of this role, make sure you know the ins and outs of securing platforms like AWS and Microsoft 365. Be ready to talk about any relevant projects you've worked on and how you enforced secure standards in those environments.
✨Communicate Clearly and Collaboratively
Practice articulating your thoughts clearly, especially when it comes to documenting findings and reporting to stakeholders. Highlight your ability to collaborate with technical teams and influence secure practices, as this will be crucial in the role.