SOC Analyst
SOC Analyst
An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manager in assisting DEX meet the challenges and demands of countering the Cyber Threat.
Details of the role include:
- 12 month contract with possible extension/employment
- Shift pattern of 07:00-15:00 or 09:00-18:00 (subject to change)
- 5 days a week on site
- Up to £85 per hour Umbrella
Duties include:
- Conduct proactive Threat Hunting in collaboration with the CTI function
- Lead Threat Detection Engineering effort working with the ISR function
- Assist with the maintenance of Security technologies
- Assisting the Cyber Eng Team with project activity
- Supporting the Incident responders with HR and InfoSec related investigations
- Attend routine security meetings
Skillset/experience required:
- A career background in Cyber Security. Security awareness and experience in all areas of IT, primarily Network Security, Infrastructure and the secondary area being Operating Systems & Applications.
- Demonstrable experience with YARA and Sigma rulesets
- Knowledge of IT Security standard methodologies.
- Demonstrable understanding of the OSI Reference Model and the network communication protocols, including but not limited to DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S.
- Demonstrable experience with Security Information Event Monitoring Tools and/or Network Packet Capture tools.
- Hands on experience with IDS/IPS technologies and threat hunting activities.
- Strong analytical experience and mind-set.
- Experience within Defensive Cyber-attack methodologies and frameworks.
- Understanding of Malware capabilities, attack vectors, propagation and impact.
- Good communication skills liaising with the business and suppliers.