Cyber Threat Investigator

Accenture

England

On-site

GBP 90,000 - 120,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Up to 25 days vacation per year
Private medical insurance
Three days leave for charitable work annually

Job summary

A leading global professional services company is seeking an experienced Senior Cyber Security Operations Specialist to join their Blue Team. In this role, you will enhance security detection capabilities and respond to incidents. Candidates should have strong skills in detection engineering, scripting, and core cybersecurity concepts. The position offers a competitive salary and an extensive benefits package, including vacation and private medical insurance.

Qualifications

  • Working knowledge of key threat intelligence concepts.
  • Experience in Detection Engineering and Alert Development.
  • Understanding of network security, cryptography, and cloud security.
  • Up to date knowledge of prevalent APTs and their TTPs.

Responsibilities

  • Develop, maintain, and enhance security detection content.
  • Collaborate to identify gaps in detection coverage.
  • Perform security monitoring and respond to incidents.
  • Act as a point of escalation for junior analysts.

Skills

Detection Engineering
Scripting and Programming (Python/Bash/C/C++/Java)
Core cybersecurity concepts
Threat intelligence concepts
Network protocols understanding
Incident response
Mentorship & leadership

Tools

Splunk SIEM

Job description

Get AI-powered advice on this job and more exclusive features.

Salary: Competitive salary and package dependent on experience

Please Note: Any offer of employment is subject to satisfactory BPSS and SC security clearance which requires 5 years continuous UK address history (typically including no periods of 30 consecutive days or more spent outside of the UK) and declaration of being a British passport holder with no dual nationalism at the point of application.

Note: The above information relates to a specific client requirement

Our Cyber Practice is a fast-growing community of industry leading experts. The practice covers Assurance, Compliance, Security Operations (SecOps), Offensive Security and Security Research. It is critical that the relevance and quality of the services that we provide is maintained and augmented and that the team members have every opportunity to grow and learn with the organisation.

As part of our Blue Team, you’ll use the latest intelligence and tooling to analyse information systems to ensure effective incident detection and response.

Job Description

If you are looking to make your mark on a rapidly growing SecOps team with some very exciting clients, look no further. We are searching for an experienced technical Cyber Security Operations Specialist to join our Blue Team. This is a senior role, and the ideal candidate will be a self-starter with an inquisitive nature, keen attention to detail, and a strong background in cybersecurity topics such as threat hunting, attacker tactics and techniques, monitoring and alerting, threat intelligence, and incident readiness and response.

Key responsibilities

  • Detection engineering - Develop, maintain, and enhance security detection content primarily for the Splunk SIEM, to enable the detection of threats across diverse platforms (e.g. cloud, endpoints, and networks)
  • Collaborate with the extended security team to identify gaps in detection coverage, log ingestion and alerting based on business risks and threats
  • Review and improve existing SecOps standards and capabilities e.g. by highlighting requirements for additional logging, identifying incident or threat trends and detection and business-as-usual optimisation opportunities
  • Perform security monitoring, reviewing and triaging triggered alerts, and suggesting improvements (on a rota basis 9AM to 5:30PM)
  • Respond to and investigate identified cyber security incidents
  • Act as a point of escalation for junior analysts, supporting them through mentorship and shadowing
  • Operate as a technical subject matter expert on client engagements and be prepared to interact with, and present to, senior stakeholders in a consulting capacity
  • Participate in alert testing and incident response tabletop exercises as required
  • Remain up to date with latest threat intelligence which may be of interest to our clients
  • Proactive threat hunting and tradecraft development
  • Incident response and playbook development
  • Change approvals (where applicable)
  • Collection and interpretation of different sources of threat intelligence and researching emerging threats and TTPs
  • Vulnerability scanning, management and reporting
  • This role includes an opportunity to operate in a management (within Accenture) and leadership capacity (within client) if this aligns with your personal career goals

Note: This role requires an approximately 1-week month on-call availability for high priority incident response. Please note there is additional compensation for this, and the frequency is client dependent.

The successful candidate should have experience and skills in some of the following areas:

  • Working knowledge of key threat intelligence concepts such as the Pyramid of Pain, Intelligence Preparation for the Cyber Environment (IPCE), and the Threat Intelligence Lifecycle
  • Detection Engineering and Alert Development
  • Experience with Scripting and Programming – e.g. Python/Bash/c/c++/Java
  • Core cybersecurity concepts such as network security, cryptography, cloud security, forensics
  • Understanding of network protocols and how they can be abused by attackers
  • Up to date knowledge of the most prevalent APTs and their TTPs
  • Knowledge of common analysis techniques associated with Windows and/or Linux

What’s in it for you

At Accenture in addition to a competitive basic salary, you will also have an extensive benefits package which includes up to 25 days of vacation per year, private medical insurance and three days leave per year for charitable work of your choice!

Flexibility and mobility are required to deliver this role to deliver the first-class services we are known for.

About Accenture

Accenture is a leading global professional services company that helps the world’s leading organizations build their digital core, optimize their operations, accelerate revenue growth and enhance services—creating tangible value at speed and scale. We are a talent- and innovation-led company with 774,000 people serving clients in more than 120 countries. Technology is at the core of change today, and we are one of the world’s leaders in helping drive that change, with strong ecosystem relationships. We combine our strength in technology and leadership in cloud, data and AI with unmatched industry experience, functional expertise and global delivery capability. Our broad range of services, solutions and assets across Strategy & Consulting, Technology, Operations, Industry X and Song, together with our culture of shared success and commitment to creating 360° value, enable us to help our clients reinvent and build trusted, lasting relationships. We measure our success by the 360° value we create for our clients, each other, our shareholders, partners and communities. Visit us at www.accenture.com

EEO statement: Accenture is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Consultant – Architect - Financial Services
Security Consultant – Architect - Financial Services

Accenture UK • Greater London

Hybrid
GBP 70,000 - 110,000
Flexible and hybrid working
Private medical insurance
Volunteer days
Security Consultant – Architect - Financial Services
Security Consultant – Architect - Financial Services

ACCENTURE • City Of London

On-site
GBP 90,000 - 130,000
Flexible and hybrid working
Career development & certifications
Training and learning opportunities
Cyber Security Generalist Manager
Cyber Security Generalist Manager

Accenture UK & Ireland • Greater London

On-site
GBP 90,000 - 130,000
30 days’ vacation per year
Private medical insurance
Car allowance
+2
Security Consultant - H&PS
Security Consultant - H&PS

3003 Accenture (UK) Limited Company • City Of London

Hybrid
GBP 60,000 - 90,000
Vacation days 25-30
Private medical insurance
Charity days
Security Consultant – Risk & Resilience - Financial Services
Security Consultant – Risk & Resilience - Financial Services

Accenture UK • Greater London

Hybrid
GBP 60,000 - 90,000
30 days annual leave
Private medical insurance
Volunteer leave
+3
Security Consultant – Architect - Financial Services
Security Consultant – Architect - Financial Services

Accenture • Greater London

Hybrid
GBP 90,000 - 140,000
25 days annual leave
Private medical insurance
Volunteering leave
OT Cyber Security Senior Manager
OT Cyber Security Senior Manager

3003 Accenture (UK) Limited Company • City Of London

Hybrid
GBP 120,000 - 160,000
Hybrid working
Private medical insurance
30 days vacation
Security Consultant - H&PS
Security Consultant - H&PS

WeAreTechWomen • Greater London

Hybrid
GBP 50,000 - 70,000
30 days' vacation
Private medical insurance
3 extra days for charitable work
Senior Technical Security Consultant - H&PS
Senior Technical Security Consultant - H&PS

ACCENTURE • Newcastle Emlyn

Hybrid
GBP 90,000 - 135,000
30 days vacation
Private medical insurance
Volunteer leave
Security Consultant – Risk & Resilience - Financial Services
Security Consultant – Risk & Resilience - Financial Services

Accenture • Greater London

Hybrid
GBP 60,000 - 100,000
30 days annual leave
Private medical insurance
Volunteering leave
+4