Cyber Security Analyst

Job Description

Location: London (On-site Shift Pattern)

\n

Salary: Up to £70,000 + On-Call Allowance + Benefits

\n

Security Clearance: Active SC Clearance required (Must be a British National and eligible to obtain higher levels of UK security clearance)

\n

\n

We're working with a leading organisation supporting critical national security programmes, who are looking to recruit an experienced Security Analyst to join their 24/7 Security Operations Centre (SOC)

\n

\n

You'll play a key role in monitoring, detecting and responding to cyber security threats across complex enterprise environments, working with industry-leading technologies including Elastic and Splunk. This is an excellent opportunity for someone who thrives in a fast-paced operational environment and enjoys working on high-profile, mission-critical systems.

\n

\n

Key Responsibilities

\n

    \n
  • Monitor security alerts and events across enterprise environments using Elastic and Splunk
  • \n

  • Investigate, triage and respond to security incidents in line with established playbooks and SLAs
  • \n

  • Perform threat hunting and proactive analysis to identify malicious activity.
  • \n

  • Analyse logs from endpoints, networks, cloud services and security tools to detect suspicious behaviour
  • \n

  • Escalate incidents where appropriate and work closely with engineering and incident response teams
  • \n

  • Develop and improve SIEM detection rules and alert tuning to reduce false positives
  • \n

  • Produce clear incident reports and maintain accurate documentation
  • \n

  • Participate in the on-call rota and support major incident response when required
  • \n

  • Contribute to the continuous improvement of SOC processes, tooling and operational procedures

\n\n

\n

Skills & Experience

\n

    \n
  • Experience working within a 24/7 Security Operations Centre (SOC) or equivalent cyber security environment
  • \n

  • Strong hands-on experience using Elastic and/or Splunk for security monitoring and investigations
  • \n

  • Good understanding of SIEM technologies, log analysis and threat detections
  • \n

  • Knowledge of security frameworks such as MITRE ATT&CK and the Cyber Kill Chain
  • \n

  • Experience investigating phishing, malware, endpoint, identity and network security incidents
  • \n

  • Familiarity with Windows, Linux, Active Directory and cloud environments (AWS, Azure or Microsoft 365)
  • \n

  • Strong analytical and problem-solving skills with the ability to make decisions under pressure
  • \n

  • Excellent written and verbal communication skills

\n\n

\n

Essential Require

\n

    \n
  • Active SC Clearance
  • \n

  • British National, with eligibility to obtain higher levels of UK security clearance
  • \n

  • Willingness to work a 24/7 rotating shift pattern (4 days on rotation)
  • \n

  • Able to work from the London office as required

\n

Job Details

Company
Digital Waffle
Location
London, UK
Employment Type
Full-time
Posted