Security Operations Center Analyst

2 days ago


Leeds UK, West Yorkshire, United Kingdom TWX Full time

TWX have partnered with a Cyber Security technology and service provider headquartered in Gloucestershire. They are looking to add a SOC Analyst to their current team of 11, with the primary aim being to undertake and support the response to a cybersecurity event or incident as well as support other cyber services within the business.


The goal of the SOC is to minimise and control the damage resulting from cybersecurity incidents, provide practical guidance for the response, coordinate recovery activities, and work to prevent future incidents from reoccurring. Additionally, you will be helping with the monitoring of information security controls within the business by analysing alerts received in line with our information security policies and practices and dealing with any/all security incidents.


WHY?


  • Working within a comprehensive team with decades of experience in Cyber and Incident Response
  • £40K - £60K DOE
  • Additional Training Budget
  • 23 days Annual Leave + Bank Holidays + 3 extra days at Christmas (Can rise to 25 days with length of service)
  • Private Healthcare + Other Benefits
  • Flexible working- The team work remotely out of the North West of England and occasionally get together to meetup.
  • 37.5 hours per week within a UK based rapid growth Cyber Business with a diverse client base + Early finish 1 day per week.
  • Vendor training and internal skills and knowledge transferring



WHAT IS A TYPICAL DAY


  • Reviewing & Triage initial alerts
  • First point of escalation
  • Initial investigation
  • Clarify incident severity
  • Knowledge of security methodologies for investigation
  • Comfortable with RAW output
  • Threat Intel Info - against alerts
  • Threat Hunting



Internal Security and Log Management


On top of the SOC Management you can be working on other services:-


  • Dark Web monitoring service
  • Guiding and Shaping Ideas for Crisis Simulations (often around Threat hunting and what happens following one of the well known cyber threats all the way from insider threat and supply chain compromise to Ransomware.
  • Client Risk Compromise and Supply Chain Risk
  • CIS Based Gap analysis with our customers reviewing key parts of their cyber stack.



ACCOUNTABLITIES AND ACTIVITIES


Analytics


  • Use raw log sources and other security and operational tools to monitor and analyse the security posture of the IT estate and identify anomalous activity and behaviours.
  • Investigates defines and resolves complex issues.
  • Produce incident reports to present activity and outcome of operational security services and activity.
  • Select appropriately from applicable standards, methods, tools and applications.



Incident management


  • Aid with the investigation of security breaches following established procedures and make sure any recommended follow up actions are taken to ensure a reduction in the likelihood of reoccurrence.
  • Co-ordinate and manage all Incident Responses.
  • Make sure that all security incidents have been correctly prioritised and diagnose in according to agreed procedures.
  • Investigate the causes of incidents, document findings and seek resolution.
  • Ensure the escalation of any unresolved incidents has been completed according to agreed procedures.
  • Oversee the facilitation of recovery, following the resolution of incidents.
  • Make sure security incidents have been documented and closed according to agreed procedures.
  • Serve as a backup for security operations emergency response.
  • Facilitate collaboration between stakeholders who share common objectives.



Information security


  • Review, update and, when needed, create IR polices, playbooks and standard operating procedures documentation.
  • Use security tools and, where appropriate, develop scripts of your own tools to assist with the ongoing analysis of a security event or incident.
  • Provide advice and guidance to other teams within the business on good practice and maintain relevant and current industry knowledge.
  • In relation to active incidents, implement effective security controls to protect core business processes and data.
  • Oversee, in relation to active Incidents, the operation and optimisation of security tooling/products, including network security (IDS/IPS/Firewalls), logging and auditing, event and incident management, and privileged access management controls.
  • Act on security incidents, requests and events to ensure that threats, vulnerabilities and breaches are managed to minimise impact to confidentiality, integrity and availability of systems and data.
  • Understand the requirement for and be able to assist in the creation of security risk, vulnerability assessments, and business impact analysis as required.



Security administration


  • Oversee the operation or support the operation of tools that contribute to effective security.
  • Take responsibility to make sure that the onboarding of any enhancements to the security tools, including deployment and on-going management and maintenance is completed.
  • Undertake periodic reviews of relevant information security policies and baseline control standards, by influencing required additional and updated controls based on the content of internal and external audit reports, trends derived from security operations, information from project-based activities and incident resolutions.



QUALIFICATIONS, TRAINING AND EXPERIENCE (E= Essential. D= Desirable, P= Preferred)


  • 3+ years of experience within an enterprise-level SOC or CSIRT function. (E)
  • 1+ year experience with Malware tools and ability to analyse Malware. (E)


You will (ideally) hold, at least, one or more of the following security certificates:-


  • CISM, (D)
  • GIAC, (P)
  • GCFE, (P)
  • GISP, (D)
  • GSEC, (P)
  • CEH. (D)


  • You will have a track record of technical delivery working within a fast-paced environment.


In-depth experience in at least one technology tower out of


  • End-User Computing,
  • Hosting,
  • Networks,
  • Cloud,
  • Development.
  • You will be confident in your technical expertise and can present yourself as a technical authority.
  • Capable of breaching. (E)
  • Can take a pragmatic view of the application of technologies; understanding the business application of them and able to identify a balance between the management of risk and the capability for the business to continue to operate.
  • Communicates fluently, orally and in writing, and can present complex information to both technical and non-technical audiences.
  • Experience of Security Monitoring tools.
  • Experience of Vulnerability Management and Threat Intelligence.
  • Knowledge of perimeter and host security intrusion techniques.
  • Knowledge of commonly accepted information security principles and practices, as well as techniques attackers, use to identify vulnerabilities, gain unauthorised access, escalate privileges and access restricted information.
  • You will be able to rapidly absorbs new information and apply it effectively.


If you like the sound of the above and/or are interested in finding out more, apply today



  • Leeds, UK, West Yorkshire, United Kingdom Fruition IT Full time

    Role: Lead Security Operations AnalystLocation: Based out of London, Leeds or BirminghamHybrid: One day per week on sitePackage: £65,000 + Bonus + On-call allowanceAn international leader in business services are looking for a Lead Security Operations Analyst to join their Cyber Security Team. The Lead Security Operations Analyst will be responsible for...


  • Leeds, UK, West Yorkshire, United Kingdom Fruition IT Full time

    Role: Lead Security Operations AnalystLocation: Based out of London, Leeds or BirminghamHybrid: One day per week on sitePackage: £65,000 + Bonus + On-call allowanceAn international leader in business services are looking for a Lead Security Operations Analyst to join their Cyber Security Team. The Lead Security Operations Analyst will be responsible for...


  • Lancashire, UK, North West England, United Kingdom Peel Cyber Full time

    The Senior Security Operations Threat Analyst will, assist in the control and monitoring of the Digital Services security services and underlying technologies.They will proactively hunt for threats within our environments. Ensure the monitoring and analysis of incidents to protect People, Technology, Data and Process, addressing all security incidents and...


  • Leeds, UK, West Yorkshire, United Kingdom BlueVoyant Full time

    UK SOC Security Analyst IThis position is located in Leeds, UKThe schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams, and two 12-hour shifts to provide 24/7 coverage. The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off)SummaryBlueVoyant is looking for a UK...


  • Leeds, UK, West Yorkshire, United Kingdom SPG Resourcing Full time

    Exciting opportunity to join this IT Solutions and transformation organisation. Looking to hire an experienced Lead Cyber Security Engineer. You will be responsible for handing security incidents received/escalated from the junior analysts in the team. You will aid in triaging threat intelligence from multiple sources and add contextual information to the...


  • Leeds, UK, West Yorkshire, United Kingdom First Bus Full time

    Job Title: Operational Support AnalystReports to: Operations DirectorLocation: Hunslet Park, Leeds Position SummaryIn a fast-paced, ever-changing environment, understanding our performance and opportunities for improvement is key to our success in delivering a high-quality bus network. The Operational Support Analyst is key to helping us unlock our potential...

  • Data Center Engineer

    2 weeks ago


    Wakefield, UK, West Yorkshire, United Kingdom PURVIEW Full time

    Data Center Engineer 6 months initial contractInside IR35 Onsite - Wakefield We are seeking a skilled and detail-oriented Data Center Engineer to join our IT Infrastructure team. The successful candidate will be responsible for managing the physical aspects of our data center, including the decommissioning and removal of unused equipment ("demising kit") to...

  • Business Analyst

    3 weeks ago


    Leeds, UK, West Yorkshire, United Kingdom MBA Full time

    We’re helping our client appoint a Business Analyst to join the IT Change team, a hybrid role based in Leeds on a 6 month FTC. The ideal candidate will be a vital link between their technology capacity and business objectives, by supporting and ensuring the successful completion of analytical, build, testing and deployment tasks of their busy change...


  • Leeds, UK, West Yorkshire, United Kingdom BlueVoyant Full time

    Analyst, Vendor Risk ManagementLocation: Hybrid In Leeds, UKThe PositionThe Analyst, Vendor Risk Management will work with clients to identify client supply chain risk and cybersecurity challenges, advise on best practices in vendor risk management, and ensure successful delivery of BlueVoyant solutions to solve customer problems. The incumbent will consult...

  • Data Insight Analyst

    3 weeks ago


    Leeds, UK, West Yorkshire, United Kingdom Fruition IT Full time

    Data Insight AnalystLeeds, West YorkshireHybrid - 2 days in the office per week An exciting opportunity for a highly motivated Data Insight Analyst with a passion for using data to drive business decisions to work on an exciting customer-driven data transformation programme. As a member of the data insight and analytics team, you will work closely with...


  • Leeds, UK, West Yorkshire, United Kingdom JV Recruitment Ltd Full time

    Senior CRM AnalystLeeds, West Yorkshire (2 days a week in the office)£40k-£45k + Excellent BenefitsOur client is looking to recruit a Senior CRM Analyst to come on board and join their growing analytics department. This online retailer is an industry leader within fashion, with a string of exciting brands in their roster whilst operating worldwide. As a...


  • Wakefield, UK, West Yorkshire, United Kingdom Harnham Full time

    Logistics Data AnalystWakefield – Hybrid (3 days a week in office)Up to £42,000 A leading retail company is seeking a Logistics Data Analyst to join their team!THE ROLEThis company is looking to add to their Logistics team, where you will be responsible for looking at the data that is moving in and out of 5 different service centers and 9 warehouses,...

  • IT Technical Analyst

    3 weeks ago


    Huddersfield, UK, West Yorkshire, United Kingdom Amoria Bond Full time

    IT Technical Analyst - 12 Month Contract - On-site in Huddersfield - Inside IR35 - Expected start date of 09/09/2024 My client are looking for an experienced IT Technical Analyst to assist in projects within the company.Initial assignment duration is 12 months, there's a possibility of extension or transition into a permanent contract after the initial...


  • Kingston Upon Thames, UK, South West London, United Kingdom E-Resourcing Ltd - Specialist I.T. Recruitment Full time

    Information Security Analyst - SEIM - InfoSec - ISMSKingston Upon Thames - 3 days a week in the office£65-68k pa + benefitsA successful Services company are looking for an Information Security Analyst to join them on a permanent basis.Working in a small Information Security team this responsible role involves supporting the operation, maintenance and...


  • Solihull, UK, West Midlands, United Kingdom Ultima Full time

    Technical Security Analyst - 4 month FTCLocation - Solihull (Hybrid)Role Purpose:The role of the Technical Security Analyst is to assist the Information Security Manager to ensure the confidentiality, integrity and availability of information assets and systems. They will be a technical resource that will assess security policies and controls for...


  • Kingston Upon Thames, UK, South West London, United Kingdom JNC Recruitment Limited Full time

    Information Security AnalystKingston upon Thames or Eastleigh - HybridUp to £68,000 Per Annum + Car AllowanceWe are working with an established international services company as they search for an enthusiastic Information Security Analyst to help maintain a secure enterprise IT estate.This position is available as hybrid working in the office roughly once a...


  • Birmingham, UK, West Midlands, United Kingdom HAYS Full time

    Location: Birmingham City Centre Salary: Up to £65,000 + benefits Working Arrangement: Hybrid (2 days on-site, 3 days from home)Role Overview:Manage technology risks and develop security strategies.Work with executives to drive cyber security initiatives.Analyse and respond to security alerts.Maintain security standards and conduct reviews.Implement core...

  • Senior Analyst

    2 weeks ago


    Castleford, UK, West Yorkshire, United Kingdom HARIBO UK Full time

    Role: Senior Analyst- Operations Location: HARIBO Castleford (hybrid working)- occasional travel may also be requiredWorking hours: 38Salary: Competitive Position type: Permanent We are on the hunt for an experienced ‘Senior Analyst- Operations’ to come and join our Finance team… this could be your opportunity to join the sweet life of HARIBO!Within...


  • Leeds, UK, West Yorkshire, United Kingdom EMIS Full time

    Here at EMIS we have a 9-month day rate contract opportunity for an experienced Technical Cyber Security Project Manager to join our highly capable and talented Cyber Security team. As we go through a period of growth and change, you will be pivotal in the overall planning, co-ordination and implementation of Security projects, tools and technology. You will...

  • Security Professional

    4 weeks ago


    Bristol, UK, South West England, United Kingdom Momentum Security Recruitment Full time

    Security Officer (Front of House)Location: Bristol City CentreRate: £19.50 per hourShift pattern: Monday to Friday (9am - 5pm) & Saturday 9am - 1pm. Do you hold a SIA Door Supervisor or CP license?Applicants should hold a SIA Door Supervisor or Close Protection license, have excellent customer service and communication skills. Prior security experience is...