Onsite SIEM Analyst (Specialised)
Tasks
- Build investigation timelines and hypotheses
- Capture lessons learned and run post incident reviews
- Coordinate containment and mitigation activities
- Correlate events and identify patterns
- Develop and tune detection rules
- Execute incident response and escalation
- Investigate suspicious activity using evidence
- Maintain investigation records and evidence
- Monitor security events and alerts
- Perform alert triage and validation
Perks/Benefits
Skills/Tech-stack
Alert triage | Cyber Threat | Cyber Threat Intelligence | EDR | Elastic | Elastic Common Schema | Event management | Host-based Forensics | IDS/IPS | Incident Management | Incident Response | Kibana | Kibana Query Language | Kusto Query | Kusto Query Language | Lateral movement | Lateral movement indicators | Linux | Log Analysis | Log Integrity | Microsoft Sentinel | Networking concepts | Persistence artifacts | Process ancestry | Query Language | SIEM | Security monitoring | Splunk | Threat Intelligence | Threat detection | Windows
Education
N/A
Related jobs
-
Security Engineer II GBP 50K-60KAntivirus | Bash | CIS Controls | Cyber Security | DKIMEmployee assistance programme | Flexible working | Free 24 7 virtual GP service | Holiday Starting At 25 Days | Maternity and adoption leaveMid-level Full TimeWelwyn Garden City, United Kingdom of …1d ago
-
Cyber Security Engineer GBP 70K-85KAWS | Agile | Application Security | Automation | CI/CDAnnual leave | Community volunteering opportunities | Hybrid work | Inclusive parental leave | Medical coverSenior-level Full TimeLondon; Manila; Sofia R1d ago
-
Cyber Security Engineer GBP 51K-60KAccess Management | Antivirus | Azure | Cyber Essentials | Cyber Essentials PlusAnnual leave | Life assurance | Pension | Private medical insuranceMid-level Full TimeUnited Kingdom1d ago
-
Cyber Security | Incident Analysis | Risk Assessment | Security Architecture | Security ComplianceSupportive work environment | Team collaborationSenior-level Full TimeLondon, England, United Kingdom1d ago
-
Senior Information and Cyber Security Officer GBP 55K-70K800-53 | Compliance Auditing | Cyber Risk | Cyber Risk Management | Data ProtectionSupportive, inclusive work environmentSenior-level Full TimeGlasgow, United Kingdom2d ago
-
Detection and Response | EDR | Endpoint Detection and Response | Endpoint detection | Incident ResponseRotating on-call schedule | Weekend on-callMid-level Full TimeLondon, UK2d ago
-
Cyber Security Specialist – IT & OT GBP 45K-63KAccess Control | Anomaly Detection | Asset Inventory | Awareness Training | CASBBereavement Counselling | Electric bicycle hire | Employee assistance programme | Fitness programme | Free Electric Vehicle ChargingSenior-level Full TimeSolihull, United Kingdom2d ago
-
Access Management | Cyber Assessment Framework | Cyber Maturity | Cyber Maturity Assessment | Cyber assessmentAnnual leave | Charitable causes support | Cycle to work scheme | Employee assistance programme | Enhanced maternity and paternity payMid-level Full TimeLondon, England, United Kingdom2d ago
-
Cyber Security Officer GBP 44K-47KAudit management | Cyber Essentials | Cyber Essentials Plus | Cyber Security | ERPOnsite gym | Pension | Sports and social club facilitiesMid-level Full TimeKew, United Kingdom2d ago
-
AWS Incident Response | Analysis tools | Azure Incident Response | Bro | Digital forensicsEmployee resource groups | Flexible weekend schedule | Great Place to Work certified | Paid Holidays | Paid adoption leaveMid-level Full TimeGBR Remote, United Kingdom R2d ago
-
Sr. Analyst, Falcon Complete (Remote, GBR) GBP 89K-108K.NET | C# | C++ | Computer forensics | CountermeasuresEmployee networks | Paid adoption leave | Paid parental leave | Professional development | Vacation and holidaysSenior-level Full TimeGBR Remote, United Kingdom R2d ago
-
Cyber Security Engineer GBP 45K-55KAntivirus | BitLocker | Endpoint protection | Exchange | Incident ResponseAnnual leave | Buy and sell holiday | CPD training support | Core hours flexibility | Cycle to work schemeMid-level Full TimeLeeds, England, United Kingdom R2d ago
-
Security Analyst GBP 39K-50KBurp Suite | CIS Critical Security | CIS Critical Security Controls | Cloud Security | Critical Security Controls25 days vacation | Birthday off | Dental coverage | Free lunch | Medical coverageMid-level Full TimeUnited Kingdom R2d ago
-
Cyber Security Specialist GBP 39K-48KAntivirus | Cybersecurity | Incident Response | Information Security Auditing | Information securityBeach hut access | Gym access | On-site nursery | Staff networks | Swimming pool accessEntry-level Contract Full TimeNewport, England, United Kingdom3d ago
-
Threat Analyst 2 GBP 45K-50KAdvanced threat protection | Apple macOS | Defensive Evasion | Detection Systems | Detection and Response24x7x365 coverage with standard business hours | Remote work option | Weekend and holiday rotationsMid-level Full TimeUnited Kingdom3d ago
-
Cyber Security Engineer GBP 70K-80KAWS | Automation | Azure | CI/CD | Cloud SecurityHybrid work | Remote flexibilityMid-level Full TimeManchester, United Kingdom3d ago
-
Security Consultant GBP 72K-106KAI Governance | AI Security | Access Management | Assurance testing | Cloud SecurityMid-level Full TimeKnutsford, Radbroke Hall, United Kingdom3d ago
-
IT Analyst, Information Security GBP 30K-35KAccess Management | Alert triage | Audit Evidence Collection | Audit evidence | Control attestationsHybrid work | Learning opportunitiesEntry-level Full Time2 Whitehall Quay, United Kingdom3d ago
-
Information Security Specialist GBP 46K-46KAI Act | Audit Readiness | Awareness Training | CAPA | Cloud SecurityCareer progression | Flexible work hours | Generous annual leave | Hybrid work model | Paid Christmas shutdownMid-level Full TimeRemote - Anywhere in UK, United … R3d ago
-
Lead IT Security Analyst GBP 30K-31KAccess Control | Access Management | CIS Controls | Cloud Security | Cybersecurity FrameworkAnnual leave | Employee assistance programme | Employee discounts | Eye care vouchers | Life assuranceSenior-level Full Timelutterworth , United Kingdom3d ago
-
OT Cyber Security Lead GBP 57K-57KAir Gapping | Asset discovery | Asset discovery tools | CAF | Cyber SecurityCareer development | Defined benefit pension | Employee assistance programme | Flexible working | Generous annual leaveSenior-level Full TimeAbingdon, England, United Kingdom4d ago
-
Cyber Security Oversight Lead GBP 82K-85KAccess Management | Asset Security | Audit management | Cloud Security | Cyber RiskNational Security VettingSenior-level Full TimeGatwick, GB4d ago
-
Compliance Auditing | Configuration Management | Cyber incident | Cyber incident response | DAAPMSenior-level Full TimeUS-MA-ANDOVER-AN1 ~ 350 Lowell St ~ …4d ago
-
Cyber Security Analyst, Aviation Security GBP 81K-90KActor Profiling | Analytical Thinking | Cyber Threat | Cyber Threat Intelligence | Information securityFamily-friendly policies | Generous annual leave | Hybrid work options | Learning and development opportunities | Pension planExecutive-level Full TimeUnited Kingdom7d ago
-
Cyber Security Researcher GBP 39K-50KAndroid Internals | C# | C++ | Embedded Systems | Ethical HackingAnnual health assessment | Bike purchase scheme | Company pension contribution | Enhanced parental leave | Extra holiday days with serviceMid-level Full TimeSalisbury7d ago