Security Operations Centre Analyst
UK - Windsor - Millstream, United Kingdom
Join us, be part of more.
We’re so much more than an energy company. We’re a family of brands revolutionising how we power the planet. We're energisers. One team of 21,000 colleagues that's energising a greener, fairer future by creating an energy system that doesn’t rely on fossil fuels, whilst living our powerful commitment to igniting positive change in our communities. Here, you can find more purpose, more passion, and more potential. That’s why working here is #MoreThanACareer. We do energy differently - we do it all. We make it, store it, move it, sell it, and mend it.
An opportunity to play your part – Are you ready to be a key player in Centrica's cyber world? As a Security Operations Centre Analyst, you'll play a pivotal role in safeguarding our organisation’s digital fortress. Your mission: monitor, detect, and respond to security incidents with lightning speed, while crafting and implementing top-notch security measures to protect our systems and data. You'll collaborate closely with our cyber defence squads, ensuring we stay one step ahead of threats and continuously enhance our security landscape. If you're passionate about cybersecurity and eager to make a real impact, this is the adventure you've been waiting for!
Location: UK, Windsor (talk to us about flexible working)
The day to day:
- Monitor security alerts from various sources like SIEM, EDR, and other tools.
- Investigate and respond to security incidents, ensuring effective containment, remediation, and recovery while considering business requirements.
- Follow defined incident response processes and escalate to the Cyber Security Incident Response team when necessary.
- Develop and fine-tune detection rules, create and maintain detection playbooks, and collaborate with threat intelligence to identify new detection opportunities.
- Use automation tools and scripting languages (e.g., Python, PowerShell) to streamline repetitive tasks and boost efficiency.
- Proactively hunt for potential threats within the environment, leveraging threat intelligence and advanced analytics to identify and mitigate risks.
- Work closely with other cyber defence teams, including Intelligence, Vulnerability Management, Threat Hunting, and Purple Teams. Effectively communicate findings and recommendations to various stakeholders.
- Utilise your technical expertise to analyse telemetry related to incidents and identify appropriate investigation pathways.
- Identify techniques used by attackers and support investigations with relevant intelligence.
- Record actions within an incident in a coherent and concise manner, ensuring all relevant data is secured and presented in the incident record.
About You
- Hands-on experience in a Security Operations Centre (SOC).
- Deep understanding of incident response processes and the Cyber Kill Chain.
- Proficient with Microsoft Azure and AWS cloud technologies.
- Relevant certifications such as Microsoft SC-200, AWS Certified Cloud Practitioner, Microsoft AZ-900, GIAC Certified Forensic Analyst (GCFA), and GIAC Certified Incident Handler (GCIH).
- Skilled in network and application protocols, and familiar with Windows, Linux, and macOS operating systems and their artifacts.
- Experience with security tools and technologies, including EDR solutions, SOAR platforms, and advanced SIEM capabilities.
- Preferred experience in scripting or programming languages.
- Preferred experience dealing with incidents in various environments, including OT and ICS technologies.
- Preferred experience working with wider Cyber Defence teams, such as Intelligence, Vulnerability Management, Threat Hunting, and Purple Teams.
- Understanding of cyber security legislation and experience with information risk and security-related best practices, policies, standards, and regulations.
What's in it for you?
- Enjoy a generous market salary, along with fantastic growth opportunities and a vibrant work environment!
- Power up your pay with a 15% Employee Energy Allowance, surpassing the government's price cap!
- Secure your future with our comprehensive pension plan, designed for peace of mind.
- Elevate your health with our fully-funded company healthcare plan, prioritizing your well-being.
- Recharge with a generous 25-day holiday allowance, plus public holidays, and even purchase up to 5 extra days for extended relaxation!
- Experience unparalleled work-life balance with an exceptional selection of flexible benefits, from tech treats and eco-friendly car leases to travel insurance for your adventures!
Why should you apply?
We’re not a perfect place – but we’re a people place. Our priority is supporting all of the different realities our people face. Life is about so much more than work. We get it. That’s why we’ve designed our total rewards to give you the flexibility to choose what you need, when you need it, making sure that you and your family are supported not only financially, but physically and emotionally too. Visit the link below to discover why we’re a great place to work and what being part of more means for you.
https://www.morethanacareer.energy/centrica
If you're full of energy, fired up about sustainability, and ready to craft not only a better tomorrow, but a better you, then come and find your purpose in a team where your voice matters, your growth is non-negotiable, and your ambitions are our priority.
Help us, help you. We would love for you to share any information about yourself throughout our recruitment process so that we can better understand you and help shape your journey.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Automation AWS Azure Cloud Cyber Kill Chain EDR GCFA GCIH GIAC ICS Incident response Linux MacOS PowerShell Python Scripting SIEM SOAR SOC Threat intelligence Vulnerability management Windows
Perks/benefits: Flex hours Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.