- Company Name
- Together - loans, mortgages & finance
- Job Title
- Cyber Security Analyst
- Job Description
-
**Job Title:** Cyber Security Analyst
**Role Summary:**
Execute advanced threat monitoring, detection, and response across cloud and on‑premises environments using modern security platforms (Darktrace, Microsoft Defender, Splunk). Act as first responder to alerts, conduct threat hunting, and enhance cybersecurity posture through continuous improvement of detection rules and incident response processes.
**Expectations:**
- Maintain 24/7 vigilance over security alerts and incidents.
- Keep abreast of evolving threat landscapes and emerging technologies.
- Collaborate closely with security engineering, IT, and other stakeholders to implement and refine controls.
- Deliver actionable insights and recommendations that strengthen overall security posture.
**Key Responsibilities:**
- First‑line response to security alerts, performing rapid triage and containment.
- Conduct regular threat hunting across network, endpoints, and cloud environments.
- Design, tune, and refine SIEM alerts and behavioural models to improve detection accuracy.
- Create and maintain dashboards, reports, and metrics for management and compliance.
- Lead root‑cause analysis of incidents and participate in post‑incident reviews.
- Perform malware analysis and limited digital forensics.
- Identify, assess, and prioritize infrastructure and software vulnerabilities; liaise with remediation teams.
- Automate processes and standardise procedures to support SOAR initiatives.
- Develop scripts/tools to streamline common security tasks.
- Share knowledge and cross‑train team members; contribute to continuous learning initiatives.
**Required Skills:**
- Expertise with cloud‑native security tools (Darktrace, Microsoft Defender, Splunk).
- Proven experience in threat hunting, incident response, packet capture analysis, and malware analysis.
- Deep understanding of adversarial TTPs and ability to prioritize security events.
- Solid knowledge of cloud, virtualisation, networking, and Microsoft‑centric infrastructure.
- Familiarity with SIEM, EDR, NDR, and SOAR platforms.
- Strong analytical mindset, attention to detail, and capacity to detect anomalous behaviour.
- Excellent written and verbal communication; ability to explain technical issues to non‑technical audiences.
- Collaborative, self‑directed work ethic; adept at partnering with IT, compliance, and business teams.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field.
- Industry certifications preferred: CISSP, CISM, CEH, or CompTIA Security+; CompTIA Advanced Security Practitioner (CASP+) or equivalent.
- Knowledge of regulated industry frameworks (PCI‑DSS, ISO 27001, NIST) is advantageous.