Associate Security Analyst (SC Cleared)

Associate Cyber Security Analyst

Contract Length: to 31/03/2027

Location: London, hybrid 60% in the office

Security Clearance: SC (Security Clearance) active

KEY criteria:

- active SC clearance

- at least 2-3 years experience in a position of Cyber Security Analyst

- working experience of Splunk

- working experience of M365 (Microsoft Defender / Sentinel / KQL)

As an associate security analyst you will:

● triage and investigate cyber security alerts and reports from users

● use a variety of techniques to analyse systems, files, network traffic and cloud

environments and understand the nature and extent of possible cyber incidents

● support the technical response to cyber incidents by identifying and implementing (or

supporting the implementation of) containment, eradication and recovery actions

● support the coordination of cyber incidents

● contribute to post-incident reviews to identify lessons and actions

● identify opportunities for, and support the delivery of, continual improvements to the

incident investigation and response capability

● work closely alongside other Cyber Defence functions, supporting the continual

improvement of wider capabilities

● contribute to internal plans, playbooks and knowledge base articles

● act as an escalation point for, and provide coaching and mentoring to, apprentice security

analysts

● be responsible for line management of apprentice security analysts

Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota,

which you will be expected to join.

Who you are

We’re interested in people who have:

● experience investigating and responding to cyber incidents

● experience using security tools (e.g., EDR, SIEM) to support the investigation and

response to cyber incidents

● Experience with SIEM tools (experience of Splunk preferred but experience of Microsoft

Sentinel or an equivalent SIEM tool is acceptable)

● an understanding of the tools, techniques and procedures commonly used by threat actors

● good analytical and problem-solving skills

● good verbal and written communication skills

It’s desirable, but not essential, that you have:

● experience with Splunk

● experience working in an Agile environment

● experience with cloud environments such as AWS

Job Details

Company
Lancesoft
Location
London Area, United Kingdom
Hybrid / Remote Options
Posted