Endpoint monitoring and analysis. * Malware analysis and forensics research. * Understanding/differentiation of intrusion attempts and false positives. * Lead investigations into security breaches, incidents, or suspicious activities and provide incident reports to stakeholders. * Enforce security policies, procedures, and guidelines for all IT systems and operations. * Provide recommendations for improving security practices to meet evolving regulatory and organisational needs. * Vulnerability … identification & mitigation/remediation. * Advise incident responders & other teams on cybersecurity threats. * Triage security events and incidents and apply containment and mitigation/remediation strategies. * Collaborate with other IT teams to ensure seamless security integration with infrastructure, applications, and services. * Maintain comprehensive documentation related to security configurations, incident reports, audits, and compliance activities. * Proactively monitor the performance of … avoidance actions to prevent wider problems. * Function as the point of escalation for the Service Desk for security-related tickets. * Analysis of weekly vulnerability scans and update relevant records. * Incident readiness and handling as part of the Computer Security IncidentResponse team (CSIRT). * Monitor and analyse security logs from various systems (including SIEM) and network devices More ❯
Luton, Bedfordshire, United Kingdom Hybrid / WFH Options
Leonardo UK Ltd
will be doing as a Lead Security Engineer; Risk Management: Perform risk assessments to identify potential security risks and work product development teams to implement mitigations and preventive measures. IncidentResponse & Mitigation: Assess and maintain the IncidentResponse Plan, lead the response to security incidents and breaches, providing expertise in root cause analysis, containment, and More ❯
automation and RPA strategies aligned with value streams and business goals Collaborate with cross-functional teams, including change, engineering, and business leaders Ensure strong platform security, monitoring, compliance, and incidentresponse Key Skills & Experience: Proven expertise in Azure architecture, including AKS, Cosmos DB, SQL Database, and Storage Experience with IaC tools (e.g. Terraform, ARM templates) Strong knowledge of More ❯
The role involves building frameworks for intelligent alerts to help Service Delivery teams quickly triage incidents and enable automated runbooks. Additionally, you will identify and deploy tools to automate incident detection, notifications, triage, and resolution. Key Responsibilities: Pipeline Approach: Adopt a pipeline approach to enable observability of services deployed across multiple environments, balancing monitoring, logging, and tracing based on … extending to trigger automated execution of runbooks with clear audit logs. Collaboration: Work closely with DevOps, Service Reliability, and Service Delivery teams to identify and deploy tools that automate incident detection, notifications, triage, and resolution. What We're Looking For: Skills: Leadership and Collaboration: Strong leadership skills with the ability to mentor, coach, and develop high-performing teams. Excellent … and Observability: Experience in creating and maintaining dashboards for proactive monitoring of services. Ability to design and build intelligent alerts using pipelines, enabling early detection of issues and automated incident response. Knowledge of the latest technology trends in the monitoring landscape, such as OpenTelemetry. Contract Management: Experience in managing third-party provider contracts, including negotiating terms, monitoring performance, and More ❯