Information Security Operations Analyst

Posted 2 weeks ago

Apply Now

Resume Score

Check how well your resume matches this job before you apply.

Sign in to check score

About the role

  • SOC Analyst supporting 24/7 operational capabilities in cybersecurity at Starling. Collaborating with global teams to protect customers and assets through incident response and investigations.

Responsibilities

  • Supporting 24/7 operational capabilities alongside UK colleagues
  • Incident Triage, Response, and Investigations based on Alerts received
  • Investigating and responding to security alerts raised by Users
  • Enhancing and creating analytic triggers to enhance alert efficacy
  • Continuous development of incident handling and readiness processes
  • Proactive threat hunting based on threat intelligence
  • Documentation of incidents and investigations

Requirements

  • 3+ years experience in an in-house SOC role and team
  • Understanding of AWS Security Solutions (or other Public Cloud Solutions)
  • Analysis and Incident Response experience with Cloud systems (GCP, AWS)
  • Experience working and supporting analytics/SIEM platforms.
  • Experience supporting and conducting Incident Response engagements.
  • Experience in endpoint based investigations.
  • Experience in cloud based investigations.
  • Experience with Incident Command and conducting Tabletop Exercises.
  • Excellent communication skills (both verbal and written), ability to communicate technical concepts to both technical and non-technical audiences.
  • Demonstrated teamwork and collaboration skills as part of a multi-functional team
  • Time management, problem-solving and interpersonal skills.
  • Eagerness to learn and apply knowledge to new security challenges.
  • Willingness to share knowledge with the team and mentor colleagues.
  • A high level understanding of mobile, network and operating system security controls.
  • Preferred
  • 3+ years experience in a cyber incident response and digital forensics function
  • Experience in forensics: cloud (GCP, AWS); endpoint/server (Windows, MacOS, Linux); and/or network.
  • Any experience of programming in Python, Go and/or Java.
  • A Cyber/Information Security related degree and/or relevant cyber security qualification(s) would be desired but not required
  • Understanding of malware analysis techniques

Benefits

  • A discretionary benefits stipend, payable on a monthly basis, is provided
  • 20 days annual leave plus public holidays

Job type

Full Time

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

AWSCloudCyber SecurityGoogle Cloud PlatformJavaLinuxMacOSPythonGo

Location requirements

HybridTorontoCanada

Report this job

Found something wrong with the page? Please let us know by submitting a report below.