Cyber Defence Analyst
1 week ago
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to accomplish their financial goals and help them save time and money.
We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at
Internal Grade E
Job DescriptionAs a Cyber Defence Analyst, you will join the Cyber Fusion Center, performing in-depth analysis, assessment, and response to security threats by following documented policies to meet Service Level Goals. The team provides global 24x7 security operations and monitoring for cybersecurity events affecting Experian.
You will be a part of the first line of defence in Experian's broader incident response and incident management departments, responsible for receiving and prioritizing cybersecurity alerts, including being the dedicated contact for potential security incidents reported by users (e.g., Experian employees). Depending on the results of assessment, this team is then responsible for investigating, containing, eradicating, and recovering from events falling in its scope or escalating higher-risk events to dedicated incident response and management teams in the CFC.
This role is critical in ensuring the handling of potential threats and plays a part in improving security operations.
This is a home based role reporting to the Director of Security Operations for SecOps & Threat Detection.
Please note that in this role, you will have an 8x5 Monday-Friday schedule, with flexibility to respond to after-hours pages for potentially major security incidents to support incident response efforts and may include assignment to an on-call rotation for evenings, weekends, holidays.
Summary of Primary Responsibilities
As the Cyber Defence Analyst, you will:
- Contribute to daily security operations by overseeing response activities for security events and alerts associated with cyber threats, intrusions, and compromises alongside a team of global security analysts following documented SLOs and processes.
- Analyze events using security tooling and logging (e.g., SIEM, EDR) and assess potential risk / severity level of cyber threats; escalate higher-risk events to dedicated incident response and management teams in the CFC according to established processes.
- Collaborate with external teams for incident resolution and escalations, driving incident handling
- Notify team Lead(s) of concerns related to operations, such as anomalous changes in metrics, notable open incidents, quality concerns, or observed risks; support with resolution if appropriate
- Manage and complete assigned caseload throughout the incident response lifecycle, including analysis, containment, eradication, recovery, and lessons learned.
- Maintain all case documentation, including notes, analysis findings, containment steps, and cause for each assigned security incident. Ensure incident updates or contact with end-users are performed promptly and documented.
- Help improve relevant strategies, Standard Operating Procedures (SOPs), and training materials
- Support management's overall strategy for CFC by participating in execution of improvement programs together with management's plans
- Assist the team Leads and management on use case development by suggesting enhancement or tuning of use cases to improve the security posture of Experian
- Some information security experience working within a Security Operations Center or Cyber Security Incident Response Teams
- Bachelor's Degree in Computer Science, Computer Engineering, Information Systems, Information Security or professional certification related to Digital Forensics, Incident Response, or Ethical Hacking (e.g., GCIH, CEH, GCFE, GCFA, and CFCE).
- Knowledge of main concepts related to the Incident Response Life Cycle, MITRE ATT&CK Framework, Cyber Kill Chain, and other cybersecurity frameworks.
- High-level understanding of common intrusion methods and cyber-attack tactics, techniques, and procedures (TTPs), and common industry recommendations to prevent and respond to threats such as phishing, malware, network attacks, suspicious activity, data security incidents.
- Exposure to technical elements of common Operating Systems (Windows, Linux, Mac OS), Networking (Firewalls, Proxies, NetFlow), Cloud Infrastructure (AWS, Azure, GCP), and Security Technologies (Anti-Virus, Intrusion Prevention, Web Application Firewalls)
- Interest in developing knowledge across common Incident Response and Security Monitoring applications such as SIEM (e.g., Qradar, Splunk), EDR (e.g., FireEye HX, CrowdStrike Falcon, Microsoft Defender), and SOAR (Palo Alto XSOAR, Google Secops / Chronicle)
- Desire to build technical skills and hands-on knowledge in the following areas of security operations and incident response
- In-depth packet analysis skills, core forensic familiarity, incident response skills, public could security practices, and data fusion skills based on multiple security data sources
- Security analysis and architecture of Azure and AWS cloud environment using security tools including Defender for Cloud, GuardDuty, CloudTrail, or CloudWatch.
- System administration on Unix, Linux, or Windows
- Network forensics, logging, and event management
- Defensive network infrastructure (operations or engineering)
- Vulnerability assessment and penetration testing concepts
- Malware analysis concepts, techniques, and reverse engineering
- In-depth knowledge of network and host security technologies and products (such as firewalls, network IDS, scanners) and improve these skills
- Security monitoring technologies, such as SIEM, IPS/IDS, UEBA, DLP, among others
- Scripting and automation
Benefits package includes:
- Flexible work environment, working hybrid or in the office if you prefer.
- Great compensation package and discretionary bonus plan
- Core benefits include pension, bupa healthcare, sharesave scheme and more
- 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
Experian Careers - Creating a better tomorrow together
Find out what its like to work for Experian by clicking here
-
Cyber Defence Analyst
7 days ago
Nottingham, Nottingham, United Kingdom Experian Full time £40,000 - £80,000 per yearCompany DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Lead Cyber Security Vulnerability Manager
7 days ago
Nottingham, Nottingham, United Kingdom CHAPMAN TATE ASSOCIATES LIMITED Full time £60,000 - £80,000 per yearJob Description Chapman Tate have partnered with a financial solutions company who provide global platforms and are seeking a Lead Vulnerability Manager to join their team in East Midlands. You will get involved in analysing and identifying vulnerabilities, threats and corrective actions with recommendations and reporting on results.As a Lead Cyber Security...
-
Graduate Digital Analyst
1 day ago
Nottingham, Nottingham, United Kingdom Grayce Full time £20,000 - £60,000 per yearJob Position: Graduate Digital Analyst – via the Graduate Development ProgrammeLocations: LeicesterStarting Salary: £25,000Application Requirements:Minimum 2:1 or above in a STEM (Science, Technology, Engineering, and Math) subjectRight to work in the UK unsponsored for the duration of the programme.Ability to work on site 5 days a
-
Resilience Centre of Excellence Analyst
5 days ago
Nottingham, Nottingham, United Kingdom Experian Full time £40,000 - £80,000 per yearCompany Description Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Resilience Centre of Excellence Analyst
5 days ago
Nottingham, Nottingham, United Kingdom Experian Full time £40,000 - £70,000 per yearWhy this role is important to usAt Experian, resilience is at the heart of how we protect our people, data, and services. The Global Resilience Centre of Excellence (CoE) is a second line of defence (2LOD) team that ensures our resilience practices are world-class, future-ready, and aligned with global standards. You'll help build innovation, automation, and...
-
Technical Security Consultant
6 days ago
Nottingham, Nottingham, United Kingdom Littlefish Full time £54,000 - £55,000 per yearCome and join the Littlefish teamWork location: Nottingham or Sheffield: Hybrid, 1-2 office days per week.Salary: Up to: £55,000Must be eligible for SC Clearance (UK resident for the last 5 years) and NPPV2 clearanceHere at Littlefish, we look for people who can make a real difference and become a giant slayer. As the world around us continues to change, we...
-
Senior Data Product Manager
2 weeks ago
Nottingham, Nottingham, United Kingdom Capital One Full time £60,000 - £120,000 per yearNottingham Trent House , United Kingdom, Nottingham, NottinghamshireSenior Data Product ManagerAbout this roleYear after year we've been recognised as a great place to work. In 2025, Capital One was ranked 15th in the UK's Best Workplaces list.At Capital One, we believe great products begin with a deep understanding of our customers. From our earliest days,...
-
Cyber Defence Analyst
3 days ago
Nottingham, United Kingdom Experian Full timeExperian Nottingham, England, United Kingdom Cyber Defence Analyst Experian is a global data and technology company serving the financial services and healthcare sectors. We help customers manage risk, prevent fraud, and gain insights from data. Job Description As a Cyber Defence Analyst you will join the Cyber Fusion Center, performing in-depth analysis,...
-
Cyber Defence Analyst
2 weeks ago
Nottingham, United Kingdom Experian Full timeCompany DescriptionExperian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Cyber Defence Analyst
5 days ago
Nottingham, United Kingdom Experian Full timeAs a Cyber Defence Analyst you will join the Cyber Fusion Center performing in-depth analysis assessment and response to security threats by following documented policies to meet Service Level Goals. The team provides global 24x7 security operations and monitoring for cybersecurity events affecting Experian.You will be a part of the first line of defence in...
-
Cyber Defence Analyst
1 week ago
Nottingham, United Kingdom Experian Group Full timeAs a Cyber Defence Analyst, you will join the Cyber Fusion Center, performing in‑depth analysis, assessment, and response to security threats by following documented policies to meet Service Level Goals. The team provides global 24x7 security operations and monitoring for cybersecurity events affecting Experian. You will be a part of the first line of...
-
Nottingham, United Kingdom Back on Track! Solutions Full timeA global data and technology company is seeking a Cyber Defence Analyst to join their Cyber Fusion Center. This role involves analyzing security threats and responding to incidents while maintaining case documentation. The position offers flexibility to work from home or the office. The ideal candidate will have a strong background in information security...
-
Cyber Defence Analyst
5 days ago
Nottingham, United Kingdom Back on Track! Solutions Full timeCompany Description Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and...
-
Cyber Security Analyst
7 days ago
Nottingham, United Kingdom Modis Full time**Cyber Security Analyst - SIEM, SOC, Linux, Windows, TCP/IP** **Basic + Bonus + Benefits + hybrid working / Nottingham or London** **Are you looking for an exciting new opportunity working with a leading entertainment provider who have a talented SOC team?** **Look no further as the company are looking for a SOC Analyst to join them and boost their...
-
Business Development Manager Senior Sales Cyber
2 weeks ago
Nottingham, United Kingdom Applause IT Full timeBusiness Development Manager Senior Sales Executive Cyber Security £70,000 - £100,000+ - Uncapped Commission (£140,000 after Year 1) + Benefits A well-established business that has been successful in the High Assurance cyber security market whose secure information exchange solutions have been deployed in more than 25 different nations around the globe,...
-
Python Software Developer
3 days ago
Nottingham, United Kingdom Applause IT Full time**Python Software Developer - Cyber Security Leader** **Nottingham / remote - £30,000 - £40,000 +** Applause IT are recruiting a Python Developer for well-established cyber security experts, successful in the Defence and Security market with their solutions deployed to over 25 nations. They are working towards the future of security through expansion...
-
Senior Python Software Developer
3 days ago
Nottingham, United Kingdom Applause IT Full time**Senior Python Software Developer - Cyber Security Leader** **Nottingham / remote - £55,000 - £65,000 +** Applause IT are recruiting an experienced Python Developer for well-established cyber security company that deliver high assurance solutions to Defence, Security, CNI and Finance organisations around the globe. They are working towards the future of...