Manchester, England, United Kingdom Hybrid / WFH Options
First Central
such as major incident management, service management and change. Automation & AI Integration Expertise Platform Ownership & Product Engineering Data-Driven Decision-Making using telemetry Security & Compliance by Design Problem Decomposition & RootCauseAnalysis Technical Communication & Documentation Qualifications Maintain certifications and expertise in Azure technologies (Desirable), including but not limited to: AZ-104 – Azure Administrator MS-102 – Microsoft More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Smart DCC
documented in accordance with the relevant policies and procedures. Act as the primary point of contact for the Security Operations Manager for potential incidents, supporting more junior analysts’ subsequent analysis and investigation to determine their severity and the response required. Provide a Technical Escalation Point during security incidents, working collaboratively to establish the extent of an attack, the business … dashboard reporting. Work collaboratively with internal and external teams to identify opportunities for security improvements and review products that can advance our security capabilities, such as tools that support analysis/detection and other emerging technologies. Gather forensic data and physical equipment, to perform in-depth rootcause analysis. Support use case tuning through auditing and approval More ❯
systems to detect data anomalies, system failures, and performance issues and leverage advanced scripting and orchestration tools (e.g., Python, Bash, Apache Airflow) to automate workflows and reduce operational overhead. RootCauseAnalysis & Incident Management: Lead post-incident reviews, perform rootcauseanalysis for data disruptions, and implement corrective actions, while creating detailed reports and More ❯
systems to detect data anomalies, system failures, and performance issues and leverage advanced scripting and orchestration tools (e.g., Python, Bash, Apache Airflow) to automate workflows and reduce operational overhead. RootCauseAnalysis & Incident Management: Lead post-incident reviews, perform rootcauseanalysis for data disruptions, and implement corrective actions, while creating detailed reports and More ❯
the relevant policies and procedures. The Senior SOC Analyst will be the primary point of contact for the Security Operations Manager for potential incidents, support more junior analysts’ subsequent analysis and investigation to determine their severity and the response required. Additionally the Senior SOC Analyst will serve as a technical escalation point during security incidents, working collaboratively to establish … as well as collaboratively with internal and external teams to identify opportunities for security improvements and review products that can advance our security capabilities, such as tools that support analysis/detection and other emerging technologies. Senior SOC Analyst will be instrumental in gathering forensic data and physical equipment, to perform in depth rootcauseanalysisMore ❯
Manchester Area, United Kingdom Hybrid / WFH Options
Us3 Consulting
internal and/or 3rd party support teams Ensure resolution of incidents according to agreed SLA's Apply problem solving skills to recreate, debug, identify and resolve issues Perform rootcauseanalysis of issues to prevent reoccurrence Form part of the on-call rota for out of hours critical incidents Provide proactive support & maintenance across the application More ❯
Bolton, England, United Kingdom Hybrid / WFH Options
JR United Kingdom
internal and/or 3rd party support teams Ensure resolution of incidents according to agreed SLA's Apply problem solving skills to recreate, debug, identify and resolve issues Perform rootcauseanalysis of issues to prevent reoccurrence Form part of the on-call rota for out of hours critical incidents Provide proactive support & maintenance across the application More ❯
Wilmslow, England, United Kingdom Hybrid / WFH Options
Waters Corporation
code quality, and team collaboration Supervise and measure KPIs related to development efficiency, such as cycle time, lead time, and deployment frequency Facilitate continuous improvement initiatives like Agile retrospectives, rootcause analyses, and process audits Work closely with DevOps and tooling teams to streamline CI/CD pipelines and automate manual workflows Support Agile transformation by aligning teams … maintainable, and scalable development Act as a liaison between business partners and technical teams to align process improvements with strategic goals Qualifications 10+ years of experience in business process analysis, with a focus on software development and IT operations Deep understanding of software development methodologies ( Agile, Scrum, SAFe, DevOps, Waterfall) Proven track record of leading large- scale process improvement … in Business Administration, Computer Science, Engineering, or related field Company Description Waters Corporation (NYSE: WAT), the world's leading specialty measurement company, has pioneered chromatography, mass spectrometry and thermal analysis innovations serving the life, materials, and food sciences for over 60 years. With approximately 8,000 employees worldwide, Waters operates directly in 35 countries, including 15 manufacturing facilities, with More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
US3 Consulting
internal and/or 3rd party support teams Ensure resolution of incidents according to agreed SLA's Apply problem solving skills to recreate, debug, identify and resolve issues Perform rootcauseanalysis of issues to prevent reoccurrence Form part of the on-call rota for out of hours critical incidents Provide proactive support & maintenance across the application More ❯
Microsoft 365, and related productivity tools. Install, configure, and maintain Windows Server environments (2016, 2019, 2022) including domain controllers, file servers, print servers, and other core infrastructure services. Perform rootcauseanalysis and remediation of Windows Server issues affecting availability, performance, or security. Support and administer platforms including Active Directory, Azure AD, and Single Sign-On (SSO More ❯
data quality frameworks, data lifecycle management, and metadata management initiatives. Work collaboratively with IT teams, business stakeholders, and external vendors to enhance data management capabilities. Provide expert-level troubleshooting, rootcauseanalysis, and performance optimisation for data platforms, such as Azure SQL databases, Fabric Warehouse and Onelake, Databricks, and Azure Data Factory. Document technical solutions, best practices More ❯
hybrid and flexible working arrangements available. Please consult your recruiter for details. Grade: GG10 - GG11 Referral Bonus: £5,000 Job Description Serve as the point of escalation for intrusion analysis, forensics, and incident response queries. Provide rootcauseanalysis for complex, non-standard findings and anomalies without existing playbooks. Mentor team members and share knowledge proactively. … red team and pentest findings to improve detection rules. Provide forensic support and threat emulation to improve alert triage and accuracy. Identify gaps in SOC processes, data collection, and analysis, demonstrating the need for improvements through scenarios and red teaming. Perform complex threat hunting, automation, and analytic enrichment tasks. Set vision and milestones for emulation and detection capabilities, influencing More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
BAE Systems Applied Intelligence
is delivered it is at the highest possible standard Responsible for ensuring that all relevant process is effectively documented and regularly reviewed Responsible for providing well-reasoned and sound analysis, context and predictions into relevant deliverables Responsible for assessing the maturity of the function within the client and identifying areas for improvement, productising those improvements and delivering them Be … a point of contact for intrusion analysis, forensics and Incident Response queries. Able to provide rootcauseanalysis of non-standard analytic findings and anomaly detections for which a playbook does not yet exist. Responsible for ensuring that during times of reduced capacity that all ADHOC and regular products are completed and are at a sufficient More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Babcock
is delivered it is at the highest possible standard Responsible for ensuring that all relevant process is effectively documented and regularly reviewed Responsible for providing well-reasoned and sound analysis, context and predictions into relevant deliverables Responsible for assessing the maturity of the function within the client and identifying areas for improvement, productising those improvements and delivering them Be … a point of contact for intrusion analysis, forensics and Incident Response queries. Able to provide rootcauseanalysis of non-standard analytic findings and anomaly detections for which a playbook does not yet exist. Responsible for ensuring that during times of reduced capacity that all ADHOC and regular products are completed and are at a sufficient More ❯
and maintain knowledge base articles to improve service delivery. • Use knowledge management tools to share resolutions and prevent recurrence of known issues. • Identify trends in incidents and assist in root-causeanalysis investigations in line with Problem Management processes. • Support the Major Incident Management group during high priority incidents via effective triage, troubleshooting whilst ensuring minimal service More ❯
Manchester, England, United Kingdom Hybrid / WFH Options
Infoplus Technologies UK Limited
Design and implement automated response workflows using Sentinel playbooks (Logic Apps). - Enhance response efficiency by developing SOAR integrations across security tooling. Documentation & Reporting - Produce comprehensive incident reports and rootcause analyses. - Maintain technical documentation for use cases, configurations, response procedures, and data source onboarding. - Generate regular dashboards and reports for SOC leadership and compliance stakeholders. Essential Skills More ❯
Liverpool, Merseyside, North West, United Kingdom Hybrid / WFH Options
In Technology Group Limited
with IT and development teams to ensure secure system architecture and application development. Maintain and enhance incident response procedures and disaster recovery plans. Investigate and document security breaches, providing rootcauseanalysis and remediation plans. Conduct security awareness training for staff and ensure compliance with internal policies and regulatory requirements (e.g., FCA, GDPR, ISO 27001). Stay More ❯
using data (including from large data sets) and metrics to isolate issues, test theories, confirm assumptions, generate ideas, prioritize opportunities, execute and measure success - Experience in complex problem solving, rootcauseanalysis in a business environment - Intermediate or advance proficiency with Microsoft Excel, knowledge in SQL - Demonstrated experience leading large-scale, complex cross-functional projects - Proven track More ❯
Systems Support team (CIM), Operational Technology Engineers, Data Engineers, and Web Developer Monitoring and reporting on system performance, availability, and incident response metrics Providing leadership in incident management and rootcauseanalysis for system-related issues, while also ensuring effective change control procedures for all changes introduced to the factory (ITIL) Managing and leading a team of More ❯
Stockport, Greater Manchester, North West, United Kingdom
Nexperia
Systems Support team (CIM), Operational Technology Engineers, Data Engineers, and Web Developer Monitoring and reporting on system performance, availability, and incident response metrics Providing leadership in incident management and rootcauseanalysis for system-related issues, while also ensuring effective change control procedures for all changes introduced to the factory (ITIL) Managing and leading a team of More ❯
and communicate updates to users. Create and maintain knowledge base articles for service improvement. Share resolutions via knowledge management tools to prevent recurrence. Identify incident trends and assist in root-cause analysis. Support Major Incident Management during high-priority incidents, ensuring minimal disruption. Act as the primary contact for incident and change notifications. Provide professional updates to users More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
BAE Systems Applied Intelligence
particular role. Grade: GG08 Job Description Conducting Cyber Security Monitoring to detect hacking/malware intrusion attempts against customer IT. · Full triage of detection alarms to accurately identify the cause of the alarm, be it active infection, attempted intrusion or a clear reason for false positive. · Conduct full “Identification” of any detected attacks (successful or failed) to understand and … for ensuring monitoring effectiveness and efficiency via the creation and updating of SIEM/SOAR playbooks, in line with changing attacker techniques tactics and procedures (TTP’s) · Use Intrusion Analysis skills and experience to provide input to new detection techniques and research new detection capabilities produced by Industry. Eg documenting requirements for new capabilities/techniques and associated dependencies … for consideration by the Intrusion Analysis Lead for prioritisation. · Ad-hoc communications with government or commercial security operations centres as part of root-causeanalysis · Creation of low-medium complexity KQL analytics and hunt queries, conducting IOC and anomaly-based threat hunts, including rootcause identification of findings · Identification and tagging of incorrect alert More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Babcock
Referral Bonus: £2,000 Job Description Conduct cyber security monitoring to detect hacking/malware intrusion attempts against customer IT. Perform full triage of detection alarms to identify the cause, such as active infection, intrusion attempt, or false positive. Identify and document attack sources, techniques, tactics, and procedures (TTPs), and assess attack extent. Capture and feed back attack chain … details into detection capabilities. Ensure monitoring effectiveness by creating and updating SIEM/SOAR playbooks aligned with attacker TTPs. Use intrusion analysis skills to contribute to new detection techniques and research industry capabilities. Communicate with government or commercial security operation centers for root-cause analysis. Create low to medium complexity KQL analytics and hunt queries, conduct IOC … and anomaly-based threat hunts, and identify root causes. Identify and tag incorrect alert logic and high false positive detection rules for review. Transform internal and partner threat intelligence into actionable detections. Coach junior analysts and colleagues as needed. Lead threat hunting workgroups during events for complex TTPs across industries. Deliver ad-hoc training and workshops to promote security More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
BAE Systems (New)
Referral Bonus: £2,000 Job Description Conduct Cyber Security Monitoring to detect hacking/malware intrusion attempts against customer IT. Perform full triage of detection alarms to identify the cause, such as active infection, intrusion attempts, or false positives. Identify and document attack sources, techniques, tactics, and procedures (TTPs) used in detected attacks, from start to finish. Capture and … feed attack chain details into detection capabilities. Ensure monitoring effectiveness by creating and updating SIEM/SOAR playbooks, adapting to evolving attacker TTPs. Use Intrusion Analysis skills to contribute to new detection techniques and research industry capabilities. Communicate with government or commercial security operations centers for root-cause analysis. Create low to medium complexity KQL analytics and … events for complex TTPs across industries. Deliver ad-hoc training and workshops to promote security awareness and knowledge sharing. Provide daily SITREPs on attacker activity. Experience Knowledge of Intrusion Analysis on Windows devices and servers. Knowledge of Intrusion Analysis in Azure, including attacker methods like ‘living off the cloud’ using Microsoft Graph API, app registrations, and managed identities. More ❯