- Company Name
- Cubic Corporation
- Job Title
- Security Analyst
- Job Description
-
**Job title**
Security Analyst
**Role Summary**
Monitors and analyzes security events across hybrid Windows/Linux environments, leveraging SIEM, EDR, NDR, and cloud-native tools. Investigates alerts, escalates incidents, and supports incident response and remediation. Drives continual refinement of detection logic, compliance monitoring, and audit evidence delivery for PCI‑DSS, ISO 27001, and SOC frameworks. Operates autonomously with a focus on proactive detection, risk rating, and cross‑functional collaboration.
**Expectations**
* Work independently with minimal guidance.
* Maintain proactive communication of status and issues.
* Exhibit strong detail orientation and methodical problem‑solving.
* Act as a subject‑matter expert on monitoring, incident handling, and compliance.
* Collaborate across teams and locations, upholding professional standards.
**Key Responsibilities**
* Design, implement, and tune security monitoring solutions (SIEM, EDR, NDR, CSPM, Azure Cloud Defender, AWS Security Hub, GuardDuty, Inspector, CloudWatch).
* Integrate log sources from on‑prem firewalls, servers, endpoints, network devices, and IaaS/PaaS/SaaS platforms into centralized monitoring.
* Develop and optimize detection rules and correlation logic to reduce false positives and improve signal‑to‑noise ratio.
* Monitor alerts and logs for indicators of compromise, performing triage and initial investigation to assess severity and impact.
* Enrich alerts with threat intelligence feeds, prioritize response, and document findings.
* Escalate validated incidents to operations/incident response teams, providing detailed context and facilitating containment, eradication, and recovery.
* Track incident resolution, conduct root‑cause analysis, and report remediation status.
* Review and refine detection logic post‑mortem, conduct threat hunting, and propose automation for alert triage and response workflows.
* Maintain compliance‑aligned monitoring configurations and generate security posture, trend, and incident metrics reports for leadership.
* Assist external audits by providing evidence of monitoring controls, incident handling, and remediation.
**Required Skills**
* Proficient with Tenable, CrowdStrike, Splunk, Imperva, and similar tooling in Windows and Linux environments.
* Strong knowledge of PCI‑DSS 4.0, ISO 27001‑2022, and SOC I/II audit requirements.
* Experience configuring and managing SIEM, EDR, NDR, CSPM, and cloud‑native security platforms.
* Ability to develop detection rules, tune logic, and reduce false positives.
* Competence in threat intelligence integration, incident triage, and root‑cause analysis.
* Familiarity with security risk assessment, monitoring metrics, and reporting.
* Excellent analytical, communication, and documentation skills.
**Required Education & Certifications**
* Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field (or equivalent professional experience).
* Industry certifications preferred: CISSP, CEH, GCIH, CompTIA Security+, or equivalent.
*(Word count: 378)*
Billingham, United kingdom
On site
26-11-2025