hybrid and flexible working arrangements available. Please consult your recruiter for details. Grade: GG10 - GG11 Referral Bonus: £5,000 Job Description Serve as the point of escalation for intrusion analysis, forensics, and incident response queries. Provide rootcauseanalysis for complex, non-standard findings and anomalies without existing playbooks. Mentor team members and share knowledge proactively. … red team and pentest findings to improve detection rules. Provide forensic support and threat emulation to improve alert triage and accuracy. Identify gaps in SOC processes, data collection, and analysis, demonstrating the need for improvements through scenarios and red teaming. Perform complex threat hunting, automation, and analytic enrichment tasks. Set vision and milestones for emulation and detection capabilities, influencing More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
BAE Systems Applied Intelligence
is delivered it is at the highest possible standard Responsible for ensuring that all relevant process is effectively documented and regularly reviewed Responsible for providing well-reasoned and sound analysis, context and predictions into relevant deliverables Responsible for assessing the maturity of the function within the client and identifying areas for improvement, productising those improvements and delivering them Be … a point of contact for intrusion analysis, forensics and Incident Response queries. Able to provide rootcauseanalysis of non-standard analytic findings and anomaly detections for which a playbook does not yet exist. Responsible for ensuring that during times of reduced capacity that all ADHOC and regular products are completed and are at a sufficient More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Babcock
is delivered it is at the highest possible standard Responsible for ensuring that all relevant process is effectively documented and regularly reviewed Responsible for providing well-reasoned and sound analysis, context and predictions into relevant deliverables Responsible for assessing the maturity of the function within the client and identifying areas for improvement, productising those improvements and delivering them Be … a point of contact for intrusion analysis, forensics and Incident Response queries. Able to provide rootcauseanalysis of non-standard analytic findings and anomaly detections for which a playbook does not yet exist. Responsible for ensuring that during times of reduced capacity that all ADHOC and regular products are completed and are at a sufficient More ❯
using data (including from large data sets) and metrics to isolate issues, test theories, confirm assumptions, generate ideas, prioritize opportunities, execute and measure success - Experience in complex problem solving, rootcauseanalysis in a business environment - Intermediate or advance proficiency with Microsoft Excel, knowledge in SQL - Demonstrated experience leading large-scale, complex cross-functional projects - Proven track More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
BAE
particular role. Grade: GG08 Job Description Conducting Cyber Security Monitoring to detect hacking/malware intrusion attempts against customer IT. · Full triage of detection alarms to accurately identify the cause of the alarm, be it active infection, attempted intrusion or a clear reason for false positive. · Conduct full “Identification” of any detected attacks (successful or failed) to understand and … for ensuring monitoring effectiveness and efficiency via the creation and updating of SIEM/SOAR playbooks, in line with changing attacker techniques tactics and procedures (TTP’s) · Use Intrusion Analysis skills and experience to provide input to new detection techniques and research new detection capabilities produced by Industry. Eg documenting requirements for new capabilities/techniques and associated dependencies … for consideration by the Intrusion Analysis Lead for prioritisation. · Ad-hoc communications with government or commercial security operations centres as part of root-causeanalysis · Creation of low-medium complexity KQL analytics and hunt queries, conducting IOC and anomaly-based threat hunts, including rootcause identification of findings · Identification and tagging of incorrect alert More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Babcock
Referral Bonus: £2,000 Job Description Conduct cyber security monitoring to detect hacking/malware intrusion attempts against customer IT. Perform full triage of detection alarms to identify the cause, such as active infection, intrusion attempt, or false positive. Identify and document attack sources, techniques, tactics, and procedures (TTPs), and assess attack extent. Capture and feed back attack chain … details into detection capabilities. Ensure monitoring effectiveness by creating and updating SIEM/SOAR playbooks aligned with attacker TTPs. Use intrusion analysis skills to contribute to new detection techniques and research industry capabilities. Communicate with government or commercial security operation centers for root-cause analysis. Create low to medium complexity KQL analytics and hunt queries, conduct IOC … and anomaly-based threat hunts, and identify root causes. Identify and tag incorrect alert logic and high false positive detection rules for review. Transform internal and partner threat intelligence into actionable detections. Coach junior analysts and colleagues as needed. Lead threat hunting workgroups during events for complex TTPs across industries. Deliver ad-hoc training and workshops to promote security More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
BAE Systems (New)
Referral Bonus: £2,000 Job Description Conduct Cyber Security Monitoring to detect hacking/malware intrusion attempts against customer IT. Perform full triage of detection alarms to identify the cause, such as active infection, intrusion attempts, or false positives. Identify and document attack sources, techniques, tactics, and procedures (TTPs) used in detected attacks, from start to finish. Capture and … feed attack chain details into detection capabilities. Ensure monitoring effectiveness by creating and updating SIEM/SOAR playbooks, adapting to evolving attacker TTPs. Use Intrusion Analysis skills to contribute to new detection techniques and research industry capabilities. Communicate with government or commercial security operations centers for root-cause analysis. Create low to medium complexity KQL analytics and … events for complex TTPs across industries. Deliver ad-hoc training and workshops to promote security awareness and knowledge sharing. Provide daily SITREPs on attacker activity. Experience Knowledge of Intrusion Analysis on Windows devices and servers. Knowledge of Intrusion Analysis in Azure, including attacker methods like ‘living off the cloud’ using Microsoft Graph API, app registrations, and managed identities. More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
VoiceWorks
Rail, BT Group, Sainsbury’s, Post Office, Pret and More... Your Background/Skills: Resolving Technical Issues, Stakeholder Management, Technical Support, SaaS/Software Support, Integration Issues, System Errors, RootCauseAnalysis, Problem Resolution, Technical Documentation, Customer Facing Communication. Tech Skills/Expertise: SQL, Azure, Python, JS, React, C#, APIs About us: We are the UK’s … our products and services. Where you’ll add value: Diagnosing and resolving complex technical issues related to our SaaS product, including software bugs, integration issues, and system errors Performing rootcauseanalysis and collaborating with engineering teams to develop solutions Communicating with customers via our support channels to help resolve issues Delivering exceptional customer service by demonstrating More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Agfa
on behalf of the customer to appropriate technical resources, coordinating global interaction between other Regional Support Services, Global Support Network (GSN), Problem Management and third-party vendors. – (5%) Perform rootcauseanalysis on high priority Incidents and document recommendations to prevent reoccurrences – (10%) Recommend service and product improvements to transform the Service from a reactive to a More ❯
Bradford, England, United Kingdom Hybrid / WFH Options
Yorkshire Water
operations. Maintain and update system configurations and related documentation. Incident and Problem Management: Manage and resolve incidents and service requests related to network systems in a timely manner. Conduct rootcauseanalysis for recurring issues and implement solutions to prevent future occurrences. Document all support activities, including incident resolution steps and troubleshooting procedures. Supplier Management: Manage relationships More ❯
that cannot be addressed by First or Second Line support. You will play a key role in maintaining and improving the organisation’s IT infrastructure, performing deep-dive diagnostics, rootcauseanalysis, and implementing long-term solutions. In addition to supporting escalated incidents, you will contribute to system design, strategic projects, and continuous service improvement. Key Responsibilities … Expert-Level Support & Issue Resolution Take ownership of high-level, complex incidents and problems escalated from Second Line Support Perform in-depth diagnostics and rootcauseanalysis across infrastructure, systems, and applications Develop and implement long-term fixes and preventative measures to reduce repeat incidents Infrastructure Management & Improvement Maintain, monitor, and optimise servers, storage, networking, and virtual … support role Strong expertise in server administration, networking, virtualisation, and storage solutions Solid understanding of IT security principles and best practices Ability to carry out detailed troubleshooting and perform rootcauseanalysis Experience managing or contributing to technical projects and service improvements Proficiency in tools such as Active Directory, Group Policy, Office 365, Exchange, and Windows Server More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
BAE Systems
assess attack scope. Document attack chain details and update detection capabilities accordingly. Maintain monitoring effectiveness by creating and updating SIEM/SOAR playbooks, adapting to evolving TTPs. Use intrusion analysis skills to contribute to new detection techniques and research industry capabilities. Coordinate with government or commercial security operation centers for rootcause analysis. Create KQL analytics and … threat hunting workgroups during complex TTPs across industries. Deliver training and workshops to promote security awareness and knowledge sharing. Provide daily SITREPs on attacker activity. Experience Knowledge of intrusion analysis on Windows devices and servers. Experience with intrusion analysis in Azure, including attacker methods like ‘living off the cloud’ (e.g., Microsoft Graph API, app registrations, managed identities). … tools and techniques quickly. Good working knowledge of MITRE ATT&CK framework. Understanding of networking concepts and protocols (TCP/IP, UDP, DNS, DHCP, HTTP). Experience with intrusion analysis on Windows and Azure cloud architecture. Relevant certifications such as SANS GCIH, GCIA, or similar. Understanding of operating system functionalities. Develop hypotheses and perform threat hunting in Azure cloud More ❯
Job Description We have an exciting opportunity for a Problem Manager to join our growing Service Management team. In this role, you will manage problems through their lifecycle, support rootcauseanalysis, reduce recurring issues, and contribute to continuous IT service improvement. You will also collaborate closely with Major Incident Management to ensure follow-up actions are … effectively addressed and tracked. Key Responsibilities: Manage the Problem Management process from identification to resolution, ensuring adherence to procedures and timelines. Investigate root causes with technical teams and suppliers, track corrective actions to completion. Analyze incident and problem data to identify trends and areas for improvement. Collaborate with Major Incident Managers for post-incident reviews and problem tracking from More ❯
Doncaster, Yorkshire, United Kingdom Hybrid / WFH Options
Hiya Technology Ltd
and Reporting: Define and track key quality metrics to measure the effectiveness of QA processes. Provide regular reports and updates on testing progress, coverage, and results to stakeholders. Conduct rootcauseanalysis on defects, working closely with development teams to resolve issues and prevent recurrence. Skills and Experience of a Lead QA Analyst; Experience in quality assurance More ❯
payment gateway within an AWS environment. Support and manage the production payments application gateway across multiple regions. Manage and resolve incident tickets for the 3rd line support team. Conduct rootcauseanalysis for Major Incidents. Plan and support Release and Change Management activities in production. Support the Problem Management process. Perform application housekeeping and maintenance tasks, including More ❯
in alignment with ITSM principles to ensure consistent service quality. Incident & Change Management - Direct incident, problem, and change management activities in accordance with ITIL standards, ensuring rapid issue resolution, root-causeanalysis, and long-term service stability. Technical Collaboration - Liaise closely with Salesforce and AWS specialists to coordinate upgrades, patch releases, and enhancements, ensuring minimal service disruption More ❯
Proficiency in languages such as Python, Bash, or Go for automation, scripting, and tool development. Experience with monitoring and logging tools and a solid background in incident management and rootcause analysis. Soft Skills: Excellent communication skills, a collaborative mindset, and the ability to mentor and lead cross-functional teams. Compensation This is a pre-seed, equity-only More ❯
Proficiency in languages such as Python, Bash, or Go for automation, scripting, and tool development. Experience with monitoring and logging tools and a solid background in incident management and rootcause analysis. Soft Skills: Excellent communication skills, a collaborative mindset, and the ability to mentor and lead cross-functional teams. Compensation This is a pre-seed, equity-only More ❯
Proficiency in languages such as Python, Bash, or Go for automation, scripting, and tool development. Experience with monitoring and logging tools and a solid background in incident management and rootcause analysis. Soft Skills: Excellent communication skills, a collaborative mindset, and the ability to mentor and lead cross-functional teams. Compensation This is a pre-seed, equity-only More ❯
Proficiency in languages such as Python, Bash, or Go for automation, scripting, and tool development. Experience with monitoring and logging tools and a solid background in incident management and rootcause analysis. Soft Skills: Excellent communication skills, a collaborative mindset, and the ability to mentor and lead cross-functional teams. Compensation This is a pre-seed, equity-only More ❯
Proficiency in languages such as Python, Bash, or Go for automation, scripting, and tool development. Experience with monitoring and logging tools and a solid background in incident management and rootcause analysis. Soft Skills: Excellent communication skills, a collaborative mindset, and the ability to mentor and lead cross-functional teams. Compensation This is a pre-seed, equity-only More ❯
Proficiency in languages such as Python, Bash, or Go for automation, scripting, and tool development. Experience with monitoring and logging tools and a solid background in incident management and rootcause analysis. Soft Skills: Excellent communication skills, a collaborative mindset, and the ability to mentor and lead cross-functional teams. Compensation This is a pre-seed, equity-only More ❯
Proficiency in languages such as Python, Bash, or Go for automation, scripting, and tool development. Experience with monitoring and logging tools and a solid background in incident management and rootcause analysis. Soft Skills: Excellent communication skills, a collaborative mindset, and the ability to mentor and lead cross-functional teams. Compensation This is a pre-seed, equity-only More ❯
Leeds, England, United Kingdom Hybrid / WFH Options
Bupa
to keep applications running effectively. Manage obsolescence and maintain relevant registers. Ensure security and compliance of technology products with Enterprise Policy. Lead incident response, communicate with stakeholders, and conduct rootcause analysis. Identify and implement service automation options. Conduct regular business continuity tests. Drive continuous improvement at product and service levels. Ensure thorough testing and quality standards for More ❯
that cannot be addressed by First or Second Line support. You will play a key role in maintaining and improving the organisation’s IT infrastructure, performing deep-dive diagnostics, rootcauseanalysis, and implementing long-term solutions. In addition to supporting escalated incidents, you will contribute to system design, strategic projects, and continuous service improvement. Key Responsibilities … Take ownership of high-level, complex incidents and problems escalated from Second Line Support Perform in-depth diagnostics and rootcauseanalysis across infrastructure, systems, and applications Develop and implement long-term fixes and preventative measures to reduce repeat incidents Infrastructure Management & Improvement Maintain, monitor, and optimise servers, storage, networking, and virtual environments Assist with infrastructure upgrades … support role Strong expertise in server administration, networking, virtualisation, and storage solutions Solid understanding of IT security principles and best practices Ability to carry out detailed troubleshooting and perform rootcauseanalysis Experience managing or contributing to technical projects and service improvements Proficiency in tools such as Active Directory, Group Policy, Office 365, Exchange, and Windows Server More ❯