Leonardo

Cyber Security Analyst

Leonardo Bristol, England, United Kingdom
No longer accepting applications

Job Description

What you will do

So let's get down to what you will do!

  • Provide monitoring, alerting and incident handling services within the SOC in line with SLAs and within the 24/7/365 shift pattern
  • Act as the initial analytical reference point for identifying and then quantifying the nature and extent of security incident and offer initial professional advice relating to possible business impact in order to reduce both the Mean Time to Detect (MTTD) and Mean Time to Respond (MTTR)
  • Advise on incident containment measures through recommended initial actions to customers in collaboration with the Incident Response (IR) Team
  • Provide advice relating to potential mitigation measures in order to prevent, or limit future reoccurrence in collaboration with the Incident Response (IR) Team
  • Have an understanding of Incident Response, Cyber Kill Chain, Threat Modelling and pertinent Attack Vectors
  • Have a collaborative working ethos in order to work across the team in order to create pertinent Playbooks, Use Cases ,etc
  • Perform proactive analysis across client networks by staying abreast of current threats and trends
  • Develop and maintain a credible knowledge of current and emerging threats likely to affect the Integrity of the managed service you are protecting.
  • Review reoccurring false positive firings and assist in the tuning of SIEM and IDS rules to reduce false positives and maintain good security alerting.
  • Ensure all operational incidents, on-going tickets and relevant information is handed over to the oncoming shift in an effective and efficient manner, using the shift handover process and documentation (HOTO)
  • When required assist in the creation of reporting for management and clients on security incidents and threat intelligence trends.

What We Are Looking For

Be able to excellently communicate at all levels, working with customers is a must, so we need you to be able to let them know what's going on

  • Experience in Cyber Security, e.g. Protective Monitoring, Incident Response, Security Engineering
  • SIEM (LogRhythm, Arcsight, Splunk, etc) & IDS (Snort) experience
  • Have a sound knowledge of IT security best practice, common attack types & detection / prevention methods
  • Demonstrate experience of analysing & interpreting system, security & application logs in order to diagnose faults & spot abnormal behaviours
  • Have great organisational skills & attention to detail
  • Due to the nature of the tasks involved, you must be capable of achieving full SC security clearance
  • Ability to work independently & as part of a team
  • Highly motivated, with the aptitude to learn new skills
  • Ability to work within a Hybrid Remote Working shift pattern covering 24/7/365 operations
  • Occasional travel may be required

These Additional Skills Will Also Help

  • SANS SEC 503 Intrusion Detection in Depth or equivalent
  • SANS SEC 504 Incident Handling, Hacker Tools and Techniques or equivalent
  • SANS SEC 508 Advanced Incident Response, Threat Hunting, and Digital Forensics or equivalent
  • SANS SEC 511 Continuous Monitoring and Security Operations or equivalent
  • Exposure to IT service management best practices such as ITIL
  • Knowledge of standards & guidelines such as ISO27001,GDPR principles and GPG-13.
  • Threat Intelligence experience
  • Report Writing

Primary Location

GB - Bristol - Coldharbour Lane

Contract Type

Permanent

Hybrid Working

Hybrid
  • Seniority level

    Entry level
  • Employment type

    Full-time
  • Job function

    Information Technology
  • Industries

    Defense and Space Manufacturing, Aviation and Aerospace Component Manufacturing, and Computer and Network Security

Referrals increase your chances of interviewing at Leonardo by 2x

See who you know

Get notified about new Cyber Security Analyst jobs in Bristol, England, United Kingdom.

Sign in to create job alert

Similar Searches

Looking for a job?

Visit the Career Advice Hub to see tips on interviewing and resume writing.

View Career Advice Hub