
Information Security Analyst Hemel Hempstead, England
Job description
The Cyber Defence Centre is a department that provides Cyber defence services in order to:
- Prevent a cyber risk (Consulting & audits)
- Detect and react on security incidents (Security Operation Centre – SOC)
- Respond to an attack (Computer Security Incident Response Team – CSIRT)
In this context, the Cyber Defence Centre is seeking to hire a SOC Level 2 analyst
The primary mission of the SOC analyst is to deal with the security events and alarms detected by the security tools, running initial analysis and processing or passing onto the level 2 SOC analysts.
The SOC level 2 analyst belongs to the analysis staff, works during regular business hours and in standby shifts.
Missions:
- Security monitoring
- Investigates initial events and then categorise these into alarms and if appropriate forward on to the 3rd Line Analysts
- Add context to the events to understand the behaviour, analysing data from multiple tools and data sources.
- Participates in the crisis management by providing support to the incident handler and the SOC Level 3 analysts.
- Create reports and visualizations of security attacks.
- Tracks trends for metrics and reporting
- Works on the decrease of false positives
- Maintain the detection rules database.
Customer relation
- Participates in recurrent meetings with the business area and wider security team as the technical referent.
- Provides recommendations or workarounds to the business to reduce the business impact.
- Leads and participates in the continuous improvement of the service (detection level, process, operational procedures, service efficiency, service reporting)
- Supports the business for the remediation of incidents.
- Supports the SOC manager for the reporting of the activity.
Continuous improvements
- In charge of the improvement plan and development of process/procedure manuals and documentation
- Participate in the improvement plan for service efficiency and detection rules.
- Works independently to perform analyses and investigations.
We provide training on the tools and processes for the success of your mission.
Due to the nature of SOC operations, there is the possibility that analysts will be required to work in alternate standby shifts, including weekends and nights.
This job requires an awareness of any potential compliance risks and a commitment to act with integrity as the foundation for the Company’s success, reputation and sustainable growth.
Qualifications:
You are a professional with at least 2 to 5 years of experience in the field service and business relations.
You are comfortable with IDS - NDR - EDR – SIEM – Log Management, Vulnerability scanning technologies.
Education: Security diploma with Cyber security training or equivalence experience in the domain of Cyber defence.
Required Skills:
- Rigorous and respectful of the process. Strong attention to detail.
- Strong time management skills with the ability for multitasking
- Information Security and operationally oriented mindset
- Team Spirit
- Customer focus
- IDS – NDR - EDR - SIEM – Log Management, Vulnerability scanning technologies, Ticketing system
- Intrusion and Information system corruption techniques
- Knowledge of security policies for information systems
- Autonomous and self-organized
- Analysis and synthesis skills
- Drafting quality
- Communication and oral expression (English)
EEO Statement: