Crawley, West Sussex, Three Bridges, United Kingdom
UK Power Networks (Operations) Ltd
of action. Principle Responsibilities: SoC Monitoring: Monitor and evaluate cyber security events and alerts using a variety of security tools and systems, including IBMQRadar, FortiSiem Microsoft Defender for Office 365, McAfee Web Gateway, McAfee ePolicy Orchestrator and Darktrace. Incident Response: Respond to cyber security incidents, including internal and more »
and SOC workflow enrichments. Strong understanding of current threat landscape, data ingest and telemetry requirements. Experience with SIEM platforms such as Splunk, Azure Sentinel, Qradar, Exabeam, etc. Python scripting MITRE Caldera and ATT&CK Atomic Red Team SOAR automation and enrichment Strong work ethic and postive can do attitude more »
Manchester, Clifton, City and Borough of Salford, United Kingdom Hybrid / WFH Options
Advania UK
experience of working in an Incident Response Team or a similar environment Knowledge of SIEM platforms such as Azure Sentinel, Microsoft Defender, Splunk, ArcSight, QRadar, or LogRhythm. Strong analytical and problem-solving skills with the ability to handle complex security incidents. Familiarity with regulatory frameworks and standards Click here more »