technicallyaccuratedocumentationcoveringincidents,rootcauseanalysis,andcorrectiveactions.Supportgovernance,customerassurance,andauditrequirements.Contributetopost-incidentreviewsandlessonslearned.Identifyrecurringissuesandrecommendlong-termimprovements.EnsureincidentsandvulnerabilitiesarecorrectlyloggedandtrackedwithinITSMsystems.Collaboration&EscalationWorkcloselywithIncidentManagers,Securityspecialists,andLevel3InfrastructureandNetworkteams.ActasaseniorescalationpointforLevel1andLevel2teams.Engagethird-partysupplierstoprogressinvestigationandremediation.Participateinout-of-hoursresponseasrequired.Knowledge,Skills&ExperienceEssentialProvenexperienceinaLevel3orSeniorSecurityAnalystorIncidentResponserole.Hands-onexperienceinvestigatingandresolvingincidentsacrossendpoints,identityplatforms,networks,andcloudservices.Strongunderstandingofmalwareandransomwareresponse,identitycompromise,andvulnerabilityremediation.ExperienceworkingwithinformalSecurityIncidentandMajorIncidentprocesses.Strongwrittendocumentationandstakeholdercommunicationskills.Knowledge,Skills&ExperienceDesirableExperiencesupportingmulti-siteoroperationallysensitiveenvironments.FamiliaritywithDefender,SIEM,EDR,andvulnerabilitymanagementtools.UnderstandingofregulatedorPCI-adjacentenvironments.Relevantsecuritycertificationsorequivalentexperience.BehaviouralCompetenciesTakesownershipfromdetectionthroughtoresolution.Investigatesthoroughlyandchallengesincompletefixes.Calm,methodical,anddecisiveduringliveincidents.Understandsoperationalandbusinessimpact.Professionalandconfidentwhenengagingcustomersandsuppliers.DecisionMaking&AuthorityMakestechnicaldecisionsrelatingtoinvestigation,containment,andremediationofsecurityincidents.EscalatesriskanddecisionpointsappropriatelytoIncidentManagementandServiceDeliveryleadership.KeyInterfacesIncidentManagementSecurityOperationsInfrastructureandNetworkServicesThird-partysuppliersCustomerstakeholdersviastructuredincidentcommunicationsTPBN1_UKTJ ...