Junior SOC Analyst
1 week ago
BAE Systems Digital Intelligence is home to 4,500 digital, cyber and intelligence experts. We work collaboratively across 10 countries to collect, connect and understand complex data, so that governments, nation states, armed forces and commercial businesses can unlock digital advantage in the most demanding environments.
BAE Systems have been contracted to undertake the day to day operation of (and incremental improvement of) a dedicated Security Operations Centre (SOC) to support the defence of a major UK CNI organisation. The networks protected are predominantly hosted in Azure and AWS cloud platforms, with many hundred systems within these environments that must be protected. The customer is committed to development of this improved SOC to be a benchmark of best practice and excellence in reflection of the significant threat that the protected systems are subject to.
The SOC will be staffed by a blend of customer and BAE Systems staff, based in multiple locations, but with the day to day operations based from our Leeds office (due to the need for customer network access available at this location).
The SOC Analyst roles are 'hands-on' shift based roles, working as part of a 24/7 operation with four shift teams working in a standard rotation. They are responsible for utilising the SOC's SIEM and SOAR toolsets to detect and investigate potential Security and Service Incidents occurring within the monitored networks.
These roles require a minimum of SC clearance and be prepared to undergo DV clearance. Due to timelines for the start of operations, it will not be possible to sponsor new clearances so candidates must have existing clearances.
Responsibilities
- Monitor, triage, analyse and investigate alerts, log data and network traffic using the Protective Monitoring platform and Internet resources to identify cyber-attacks / security incidents.
- Categorise all suspected incidents in line with the Security Incident policy
- Recognise potential, successful and unsuccessful intrusion attempts and compromises through reviews and further analysis of relevant event detail and incident summary information.
- Write up high quality security incident tickets using a combination of existing knowledge resources and independent research.
- Assist with remediation activities (or support customer stakeholders) to inhibit cyber-attacks, clean up IT systems and secure networks against repeat attacks.
- Produce security incident review reports to present information about the security incident and provide security improvement recommendations based on the security incident review.
- Understand Threat Intelligence and its use in an operational environment
- Support incident response to national scale incidents in a coaching capacity
- Work with other teams within BAE to improve services on the basis of customer needs.
Technical
- Basic Python and/or scripting skills, Windows, OS X, and Linux
- Experience using Splunk and Sentinal
- Working with a range of security tooling/technology
- Strong understanding of security architecture, in particular networking
- Detailed understanding of threat intelligence and threat actors, TTPs and operationalising threat intelligence.
- Experience in investigating complex network intrusions (by state-sponsored groups or targeted ransomware attacks).
- Understand TCP/IP component layers to identify normal and abnormal traffic
- Understanding of AWS &/or Azure cloud services
- Experience of Splunk (with ES) &/or Sentinel, content development experience desirable
- Client side consulting, including stakeholder engagement and the ability to communicate insights and concepts to others (including briefing skills and report writing)
- Security process development
- Able to understand and adapt to different cultures and hierarchical structures.
- Self-starter and capable of independent working
- Software engineering experience
- Penetration testing skills
Diversity and inclusion are integral to the success of BAE Systems Digital Intelligence. We are proud to have an organisational culture where employees with varying perspectives, skills, life experiences and backgrounds - the best and brightest minds - can work together to achieve excellence and realise individual and organisational potential.
-
Technical Operations Shift Manager
5 days ago
Hyde, United Kingdom Smart DCC Full timeJob Summary: We are seeking an experienced Network Operations Lead to oversee the monitoring of our total system and lead a team of Technical Operations Centre Analysts. This permanent role is based in Manchester with hybrid working options, offering a competitive salary plus benefits.As a key member of our Operations team, you will work closely with...
-
It Support Analyst
2 weeks ago
Queens Park, United Kingdom CV-Library Full timeIT Support Analyst We have a fantastic opportunity for a junior IT Support Analyst (Recent UK University graduate with a degree in Computer Science / Computing / similar) with at least 6 months + 1st line IT Support experience and previous administration of Microsoft Active Directory, Azure, M365 & Office 365 as well as experience in supporting Windows 10 &...
-
Manchester Shift Lead Position
2 days ago
Hyde, United Kingdom Smart DCC Full timeJob DescriptionWe are looking for an experienced Shift Lead Technical Operations Analyst to join our team.Your primary responsibility will be to ensure the smooth operation of our systems by:Monitoring system performance and identifying potential issuesCoordinating maintenance activities and resolving technical problemsProviding guidance and support to...
-
Technical Operations Lead
2 days ago
Hyde, United Kingdom Smart DCC Full timeJob Description:We are seeking a highly skilled and motivated individual to join our team as a Technical Operations Lead - Smart DCC. This is a permanent role based in Manchester with a hybrid working arrangement.About the Company:Smart DCC is a leading provider of smart metering solutions and we are looking for a talented individual to join our Operations...
-
DCC Technical Operations Team Lead
3 hours ago
Hyde, United Kingdom Smart DCC Full timeJob Title: DCC Technical Operations Team LeadSalary: £60,000 - £70,000 per annumWe are seeking a highly skilled and motivated individual to join our team as a DCC Technical Operations Team Lead. This is a permanent role based in Manchester with a hybrid working arrangement.About the Role:The successful candidate will provide continuous monitoring of the...
-
Financial Analyst for a Growing Organisation
1 month ago
Cheltenham Trade Park, United Kingdom Hays Accountancy and Finance Full timeYour new companyHays Accountancy & Finance is recruiting an ambitious Junior Management Accountant to join a leading group in Cheltenham, Gloucestershire. Reporting directly to the Financial Controller, you will be involved in month-end and year-end processes, financial analysis and reporting.Key duties will include month-end reconciliations, processing...