Security Analyst

10 hours ago


Tees Valley, United Kingdom Cubic Corporation Full time

Business Unit Cubic Transportation Systems Company Details Cubic Transportation Systems (CTS) is a global leader in intelligent transportation solutions, specializing in technologies that make public transit more efficient, accessible, and user‑friendly. A significant feature is providing Fare and Payment card services to government and municipal customers across the globe. Job Details As a member of the Cubic Information Security Team, you will support efforts to monitor security for Cubic systems and assist in the analysis and response to incidents. The successful candidate must be proficient at security monitoring using Tenable, Crowd Strike, Splunk, Imperva and other security tools. Work will be on Windows and Linux assets in cloud or data centers. Analysts will manage IT security tools and processes to monitor and report operational security risks to operations teams for remediation. The analyst must have an intimate awareness of PCI security compliance expectations and partner to support external audits for PCI‑DSS, ISO 27001 and SOC compliance/audit efforts. Scanning operations will involve routine daily or weekly operations as well as support for pen testing or audit efforts. Findings must be risk‑rated and effectively escalated for remediation. The analyst will be recognised internally as a subject‑matter expert, working autonomously and able to assess and drive work priorities with limited support or guidance. Essential Job Duties and Responsibilities Security Monitoring Configuration Design and implement security monitoring solutions using SIEM, EDR, NDR, CSPM, and cloud‑native tools (e.g. Azure Cloud Defender, AWS Security Hub, Guard Duty, Inspector, Cloud Watch). Integrate log sources from on‑prem systems (firewalls, servers, endpoints, network devices) and cloud platforms (IaaS, PaaS, SaaS) into centralized monitoring systems. Develop and tune detection rules and correlation logic to identify suspicious behaviour, policy violations, and potential threats. Tune detection rules to reduce false positives and improve signal‑to‑noise ratio. Maintain visibility across hybrid environments by ensuring telemetry coverage and log integrity. Threat Detection and Analysis Monitor alerts and logs for indicators of compromise (IOCs) and suspicious activity. Correlate events across multiple sources to identify potential threats. Perform triage and initial investigation of alerts to determine severity, scope, and potential impact. Use threat intelligence feeds to enrich alerts and prioritise response. Incident Escalation and Coordination Document and eskalate validated security incidents to the appropriate operations or incident response teams. Provide detailed context, including affected systems, users, and potential impact. Collaborate with operations staff to ensure timely containment, eradication, and recovery. Track and report on escalated incidents, including root‑cause analysis and remediation status. Continuous Improvement Review and refine detection logic based on incident post‑mortems, false positives, emerging threats, and operational feedback. Participate in threat hunting and proactive analysis to identify gaps in monitoring coverage. Recommend and implement automation for alert triage and response workflows. Contribute to playbooks and standard operating procedures for alert handling and escalation. Stay current with emerging threats, vulnerabilities, and security technologies. Compliance and Reporting Ensure monitoring configurations support regulatory and policy requirements (e.g., PCI, ISO 27001, GDPR, CIS, etc). Generate reports on security posture, alert trends, and incident metrics for leadership and governance teams. Assist with audits and provide evidence of monitoring controls and incident handling. General Duties and Responsibilities Reliably demonstrate accountability for work assignments and proactive communications about issues and status. A strong history of proactively identifying effective solutions for challenges. Able to work effectively and uphold professional standards, with the customer and system stakeholders. Self‑motivated and able to work unsupervised. Methodical and attentive to detail. Proactive in seeking advice from security subject‑matter experts when required. Comfortable working with staff at all levels and in other geographical locations within the organization. Comply with Cubic's Quality Management System. Comply with Cubic's quality, health, safety, and security policies. Support the company's strategic objectives and collaborate across departments. Comply with Cubic Human Resources Procedures. SKILLS / EXPERIENCE / KNOWLEDGE Essential Familiarity with PCI DSS 4, ISO 27001‑2022, and/or SOC I/II requirements and audits. Experience installing, configuring and supporting Tenable, Crowd Strike, Splunk, and Imperva in Windows and Linux environments. Experience performing monitoring in Azure and AWS cloud environments, as well as in data centres. In‑depth understanding and experience in network security. Strong preference for someone who has had experience working as a network security admin and/or cloud or systems security admin. Expert level experience collaborating with stakeholders and solution providers in a cross‑functional and matrixed IT organization. Able to adapt style efforts to persuade in delivering messages that relate to the wider business. Is frequently called on to advise others on complex matters and may be accountable through team for delivery of business targets. Exhibits advanced wide‑ranging experience, using in‑depth professional knowledge, acumen, concepts and company objectives to develop, resolve complex models and procedures. Provides solutions to issues in creative and effective ways. Understands the interrelationships of different disciplines. Directs the application of existing principles and guides development of new policies and ideas. Understands and works on complex issues where analysis of situations or data requires an in‑depth evaluation of variable factors. Determines methods and procedures on new assignments. Exercises judgment in selecting methods, evaluating, adapting complex techniques and evaluation criteria for obtaining results. This position typically works under limited supervision and direction. Candidates for this position will regularly exercise discretionary and substantial decision‑making authority. Desirable Deep understanding of security risks and threats as they relate to the company's operating environments. QUALIFICATIONS Essential Minimum 8 years' experience in services or IT systems in a mission critical setting. University degree in Computer Science, Engineering, or other technical fields, or Business Administration with relevant IT work experience. At least 5 years' experience working in IT security and/or Payment Card processing systems. Strong understanding of technical concepts, as well as demonstrated ability to understand complex internally developed systems. Desirable Certification as an Information Security professional (e.g. ISACA CISA/CISM/CRISC, ISC(2) CISSP, BCS CISMP/IISP). Payment Card Industry Security Standards Council certification (ISA/ QSA). Condition of Employment Successful outcome of a UK DBS check. Worker Type Employee #J-18808-Ljbffr



  • Tees Valley, United Kingdom Railpen Limited Full time

    Cyber Security Analyst page is loaded## Cyber Security Analystlocations: Home Based: London: Darlingtontime type: Full timeposted on: Posted Todayjob requisition id: JR2282# Cyber Security Analyst### ## IntroWe have an incredible opportunity for a Cyber Security Analyst to join our IT Security and Governance team on a permanent basis (home...


  • Tees Valley, United Kingdom Railpen Full time

    Cyber Security Analyst Intro We have an incredible opportunity for a Cyber Security Analyst to join our IT Security and Governance team on a permanent basis (home based). Who we are Railpen is responsible for the safekeeping and investment of around £34 billion in assets and the administration of several pension schemes, including the Railways Pension...

  • Security Analyst

    6 days ago


    Tees Valley, United Kingdom Cubic Full time

    Job titleSecurity AnalystCompanyCubicJob descriptionBusiness Unit: Cubic Transportation SystemsThis role will manage security tools as a service provider to our customers. The Security Analyst will be required to manage and report operational information security risk, using IT security tools and processes. Assist customer service and IT teams to manage the...


  • Tees Valley, United Kingdom Cubic Corporation Full time

    A global technology company is seeking a Security Analyst to enhance security measures for its systems. The successful candidate will monitor security operations, manage IT security tools, and ensure compliance with PCI DSS and ISO standards. This role requires at least 8 years of experience in IT security, cloud environments, and a strong background in...


  • Tees Valley, United Kingdom Railpen Full time

    A leading pension fund administrator is seeking a Cyber Security Analyst to enhance their IT Security and Governance team. This role entails securing systems, monitoring security logs, and collaborating with stakeholders to improve security measures. The ideal candidate should have experience with Microsoft E5 technologies, a solid grasp of security...


  • Tees Valley, United Kingdom Railpen Limited Full time

    A pension management organization in the UK is seeking a Cyber Security Analyst to enhance IT security. The role involves securing network systems, responding to incidents, and collaborating effectively with stakeholders. Required qualifications include a solid technical understanding of security controls and experience with Microsoft E5 technologies. The...

  • Data Analyst

    1 week ago


    Tees Valley, United Kingdom Calyptus Full time

    Key Responsibilities Consolidate and cleanse customer and product-level data from all business units, enriching each account with key details such as employee numbers, geographic location, number of offices, and financial size. Develop and maintain a unified data cube that supports multidimensional analysis, including customer-product mapping and white space...

  • Business Analyst

    1 week ago


    Tees Valley, United Kingdom Northgate Vehicle Hire Limited Full time

    Position not right for you?Share it with someone you know. Business Analyst Reference: NOV20257837 Expiry date: 13:57, Wed, 24th Dec 2025 Location: Darlington Head Office Benefits: Pension, Life Assurance and Retail & Company discounts Location: Darlington with hybrid working (up to 3 days working in the office) We’re looking for a Business Analyst to join...


  • Tees Valley, United Kingdom NECSWS Full time

    A technology solutions provider in Tees Valley is seeking a Change Configuration and Release Analyst to join their IT Service Delivery Department. The successful candidate will manage the lifecycle of changes to IT systems, ensuring smooth implementation and coordination with various departments. Key qualifications include strong stakeholder engagement...


  • Tees Valley, United Kingdom NEC Software Solutions Full time

    A leading software solutions provider in the United Kingdom is seeking a Change Configuration and Release Analyst to join their IT Service Delivery Department. The role involves managing change requests and ensuring smooth implementation of IT services. Candidates should have experience in stakeholder engagement, proficiency in Microsoft Excel, and...