
SOC Analyst (3486) Remote
Job description
About GBG:
GBG is the leading expert in global digital identity. We combine our powerful technology, the most accurate data coverage and our talented team to deliver award-winning location intelligence, identity verification and fraud prevention solutions.
With over 30 years’ experience, we bring together a team of over 1,250 dedicated experts with local industry insight from around the world to make it easy for businesses to identify and verify customers and locations, protecting everyone, everywhere from fraud.
Why you should be@GBG
(With the 95% of our team members that recommend us as a great place to work)
- We make the world a safer place
- We trust each other and win together
- We are local experts in a global business
- We want you to be yourself
- We grow when you grow
About the team:
The Security Operations team are accountable for GBG’s Information Security, Security Architecture, Security Compliance, Security Awareness, Security Operations and Information Security Risk Management Activities.
The Role:
You will be responsible for supporting the SOC Manager and overseeing GBG Security Operations activity. Improve and challenge existing processes and procedures in a very agile and fast-moving information security environment.
What you will do:
- As a Security Analyst you will operate within a global team that takes responsibility for the security monitoring of key technologies and tools across the estate.
- You will provide effective analysis and triage and handing of security information and events including the review and analysis of logs and prepare regular detailed reports with recommendations for improvement.
- Identify security risks, threats and vulnerabilities of the company’s network, systems, applications, and new technology initiatives.
- Assist in updating/developing, implementing, and operating run books, operating processes and procedures
- Review and analyze ACLs, IDS rules, and network device configuration and propose pragmatic best practice solutions
- Help to develop and configure use cases, and alerting rules within SIEM technologies
- Support day to day threat monitoring, data loss and leakage prevention, security event monitoring, incident management, security forensics, crisis simulation exercises and security research
- This role requires flexibility to work a shift pattern, whilst this is a home-based role, it may require travel and working from multiple sites / locations
- There may be a requirement for occasional on-call over holiday periods when appropriate
Requirements
What we're looking for:
- Demonstrable experience in security management/monitoring, knowledge of SIEM technologies and operation is an advantage
- At least one professional security certification e.g., CISSP, CEH, GCIH, GCFA or working towards
- Knowledge of the incident handling procedures and intrusion analysis models is preferable
- Strong foundation in network security and common attack methodologies
- Exposure to user behavior analytics is preferable but not essential
- Good understanding of common protocols such as HTTP, SMTP, SSL/TLS, SSH, DNS
- Must have strong analytical and problem-solving skills to enable effective security incident and problem resolution
- Experience reviewing and analysing large amounts of raw log data (firewall, network flows, IDS, system logs) Knowledge of latest threat trends and security landscape
- Experience with well-known information security related tools such as Burp, Wireshark, Kali, Netcat, TCPDump and NMAP
Behaviours we'd like to see:
Benefits
To find out more:
Click here to see more about what’s important to us, including our Work When and Where You Want policy, our commitment to ESG, I&D and much more.
To chat to the Talent Attraction team and find out more about our benefits, drop an email to [email protected] and we’ll be in touch!
Make life@GBG work for you.
