SOC Analyst supporting 24/7 operational capabilities in cybersecurity at Starling. Collaborating with global teams to protect customers and assets through incident response and investigations.
Responsibilities
Supporting 24/7 operational capabilities alongside UK colleagues
Incident Triage, Response, and Investigations based on Alerts received
Investigating and responding to security alerts raised by Users
Enhancing and creating analytic triggers to enhance alert efficacy
Continuous development of incident handling and readiness processes
Proactive threat hunting based on threat intelligence
Documentation of incidents and investigations
Requirements
3+ years experience in an in-house SOC role and team
Understanding of AWS Security Solutions (or other Public Cloud Solutions)
Analysis and Incident Response experience with Cloud systems (GCP, AWS)
Experience working and supporting analytics/SIEM platforms.
Experience supporting and conducting Incident Response engagements.
Experience in endpoint based investigations.
Experience in cloud based investigations.
Experience with Incident Command and conducting Tabletop Exercises.
Excellent communication skills (both verbal and written), ability to communicate technical concepts to both technical and non-technical audiences.
Demonstrated teamwork and collaboration skills as part of a multi-functional team
Time management, problem-solving and interpersonal skills.
Eagerness to learn and apply knowledge to new security challenges.
Willingness to share knowledge with the team and mentor colleagues.
A high level understanding of mobile, network and operating system security controls.
Preferred
3+ years experience in a cyber incident response and digital forensics function
Security Training & Operations Team Lead at OLG overseeing security operations and developing training programs for personnel across various locations. Requires strong leadership in managing safety and compliance protocols.
Lead SOC Team at Starling Group ensuring information security and response for global operations. Collaborate with top SecOps professionals managing incident response and continuous improvement.
Head of Fusion & Cybersecurity Operations at TD responsible for strategic direction and operational oversight of protect operations. Safeguarding data and systems from cyber threats and managing teams in cyber crime prevention.
Intermediate Security Operations Centre Analyst at Long View managing security incidents and working with IT systems. Engaging with teams across Canada in a dynamic IT environment.
SOC Analyst responsible for monitoring security events and assessing risks while collaborating with global customers. Working with Fortinet's SOC - as - a - Service team to improve security posture.
IAM Operations Lead responsible for daily administration, governance, and security of identity infrastructure, ensuring correct access and minimizing risks.
CSOC Analyst responsible for managing security incidents and threat investigation at Just Eat Takeaway. Working with an internal team to detect, investigate, and respond to significant threats.
Security Operations Engineer at Supabase providing front - line coverage for security alerts and customer security tickets. Supporting internal IT operations and improving security processes in a remote setup.