CSIRT Principal Analyst - Hybrid

Warwick, GB, CV34 6DA

National Grid

We are one of the world’s largest investor-owned energy companies, committed to delivering electricity and gas safely, reliably and efficiently to the customers and communities we serve.

View all jobs at National Grid

Apply now Apply later

About us

At National Grid, our commitment to a cleaner, greener energy future is powered by the dedication and ingenuity of our people. Join our team as a Principal Analyst and be a part of something bigger—where your unique skills and passions can make a real difference. Together, we are superpowered.

 

The CSIRT Principal Analyst will deliver the actions and activities as required and detailed in Cyber Incident Response plans. Using technical expertise and co-ordination capabilities, they will work in the main, independently, and lead the CSIRT team to create monitoring, identify, prepare for, and resolve incidents and high-level technical incident response issues.

 

National Grid is hiring a Principal Analyst for our Computer Security Incident Response Team in. This is a hybrid role based out of Warwick.

Key Accountabilities


This role requires that the holder will help to mentor and develop CSIRT Analyst team members to achieve high performance and individual ability.

 

  • Be a point of focus on behalf of the CSIRT when owning Cyber Security Incidents – acting as Subject Matter Expert to provide the shift and senior analysts direction.
  • Use their skillset to provide guidance with respect to Cyber Security, as a Subject Matter Expert during complex incident response.
  • Work alongside System Administrators, SOAR, and the National Grid business units, to ensure the efficient and appropriate onboarding/offboarding of systems and applications applicable to protect/detect/respond.
  • Create Splunk correlation searches and use cases.
  • Create engineering documentation.
  • Create incident response processes, playbooks, and work instructions.
  • Maintain the CISRT tooling and detection.
  • Engage with and lead the CSIRT with requests from business units for the onboarding of projects.
  • Exploring new tools and methodologies to enable the team to develop new capabilities such as custom Machine Learning Detection Content/Risk Based Alerting.

About You

  • Experience operating as a Cyber security incident responder collaborating with internal business functions, e.g., legal, Ethics, HR, and physical security.
  • Strong experience of working within Regulated environments
  • Demonstrated ability to support response to security incidents using commercial and/or open-source technologies.
  • Strong experience mentoring and developing analysts.
  • Strong understanding of networking protocols and infrastructure designs; including cloud infrastructures, routing, firewall functionality, host and network intrusion detection systems, encryption, load balancing, and other network devices.
  • Critical National Infrastructure and/or Operational Technology experience highly desirable.

More Information

A competitive salary between £60,000 – £75,000 – dependent on capability


As well as your base salary, you will receive a bonus of up to 15% of your salary for stretch performance and a competitive contributory pension scheme where we will double match your contribution to a maximum company contribution of 12%. You will also have access to a number of flexible benefits such as a share incentive plan, salary sacrifice car and technology schemes, support via employee assistance lines and matched charity giving to name a few.

#LI-RL1
#LI-HYBRID
 

At National Grid, we work towards the highest standards in everything we do, including how we support, value and develop our people. Our aim is to encourage and support employees to thrive and be the best they can be. We celebrate the difference people can bring into our organisation, and welcome and encourage applicants with diverse experiences and backgrounds, and offer flexible and tailored support, at home and in the office.

 

Our goal is to drive, develop and operate our business in a way that results in a more inclusive culture. All employment is decided on the basis of qualifications, the innovation from diverse teams & perspectives and business need. We are committed to building a workforce so we can represent the communities we serve and have a working environment in which each individual feels valued, respected, fairly treated, and able to reach their full potential.

Apply now Apply later
Job stats:  1  0  0
Category: Analyst Jobs

Tags: Cloud CSIRT Encryption Firewalls Incident response Intrusion detection Machine Learning Monitoring SOAR Splunk

Perks/benefits: Career development Competitive pay Flex hours Salary bonus Team events

Region: Europe
Country: United Kingdom

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.