Associate Security Analyst (SC Cleared)
Associate Cyber Security Analyst
Contract Length: to 31/03/2027
Location: London, hybrid 60% in the office
Security Clearance: SC (Security Clearance) active
KEY criteria:
- active SC clearance
- at least 2-3 years experience in a position of Cyber Security Analyst
- working experience of Splunk
- working experience of M365 (Microsoft Defender / Sentinel / KQL)
As an associate security analyst you will:
● triage and investigate cyber security alerts and reports from users
● use a variety of techniques to analyse systems, files, network traffic and cloud
environments and understand the nature and extent of possible cyber incidents
● support the technical response to cyber incidents by identifying and implementing (or
supporting the implementation of) containment, eradication and recovery actions
● support the coordination of cyber incidents
● contribute to post-incident reviews to identify lessons and actions
● identify opportunities for, and support the delivery of, continual improvements to the
incident investigation and response capability
● work closely alongside other Cyber Defence functions, supporting the continual
improvement of wider capabilities
● contribute to internal plans, playbooks and knowledge base articles
● act as an escalation point for, and provide coaching and mentoring to, apprentice security
analysts
● be responsible for line management of apprentice security analysts
Cyber incidents can and do arise on a 24/7 basis. The team operates an out-of-hours on call rota,
which you will be expected to join.
Who you are
We’re interested in people who have:
● experience investigating and responding to cyber incidents
● experience using security tools (e.g., EDR, SIEM) to support the investigation and
response to cyber incidents
● Experience with SIEM tools (experience of Splunk preferred but experience of Microsoft
Sentinel or an equivalent SIEM tool is acceptable)
● an understanding of the tools, techniques and procedures commonly used by threat actors
● good analytical and problem-solving skills
● good verbal and written communication skills
It’s desirable, but not essential, that you have:
● experience with Splunk
● experience working in an Agile environment
● experience with cloud environments such as AWS