Cyber Threat Operations Specialist

Cyber UK

Stevenage

Remote

GBP 83,000 - 120,000

Full time

3 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Cyber UK in Stevenage is seeking a Cyber Threat Operations specialist to support the Active Defence Incident Response Manager in countering cyber threats. You will drive a proactive security posture with threat hunting, detection engineering and in-depth analysis within a high-performing UK team.

The role covers threat hunting, monitoring, reporting and investigations using a wide range of security platforms, including AI/ML and SIEM technologies, across the UK network perimeter.

Qualifications

  • Background in Cyber Security, with network security focus.
  • Experience with threat hunting and detection engineering.
  • Knowledge of OSI model and common protocols.
  • Understanding of malware capabilities and attack vectors.
  • Good communication with business and suppliers.

Responsibilities

  • Support operational functions of the UK SOC.
  • Work with the UK InfoSec Team and IM Domains.
  • Conduct threat hunting, monitoring, reporting and investigations.
  • Lead threat detection engineering with ISR function.
  • Assist maintenance of security technologies.
  • Attend security meetings.

Skills

Cyber Security
Threat hunting
Network security
Malware analysis
Communication

Tools

YARA
Sigma rules
SIEM
Network Packet Capture

Job description


  • Location: Stevenage, Hertfordshire, England

  • Salary: Umbrella

  • Category



  • Sector:

  • Contract type Contract

  • Consultant: Michael Murray


An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manger in assisting DEX meet the challenges and demands of countering the Cyber Threat. The successful applicant will drive a proactive ethos in an ever-changing cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment.


Responsibilities:

To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions of the UK SOC. To work with other UK SOC members, including the UK InfoSec Team and the IM Domains (Customer Support and Infrastructure / Information Systems).
It will cover Threat hunting, analysis, monitoring, Optimising, reporting, alerting and investigation activity utilising a wide variety of security platforms including AI/ML and behavioural analytics, SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the UK Network Perimeter working with the best standard technologies.The Cyber Threat Operations specialist reports to the Active Defence & Incident Response Manager. The Cyber Threat Operations specialist conducts a range of analysis and assists the incident response team with investigations that need to be escalated to an embedded member of staff.The Cyber Threat Operations specialist key responsibilities are:



  • Conduct proactive Threat Hunting in collaboration with the CTI function

  • Lead Threat Detection Engineering effort working with the ISR function

  • Assist with the maintenance of Security technologies

  • Assisting the Cyber Eng Team with project activity

  • Supporting the Incident responders with HR and InfoSec related investigations

  • Attend routine security meetings


Skillset:


  • A career background in Cyber Security. Security awareness in all areas of IT, primarily Network Security, Infrastructure and the secondary area being Operating Systems & Applications.

  • Demonstrable knowledge with YARA and Sigma rulesets

  • Knowledge of IT Security standard methodologies.

  • Demonstrable understanding of the OSI Reference Model and the network communication protocols, including but not limited to DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S.

  • Security Information Event Monitoring Tools and/or Network Packet Capture tools.

  • IDS/IPS technologies and threat hunting activities.

  • Strong analytical mind-set.

  • Defensive Cyber-attack methodologies and frameworks.

  • Understanding of Malware capabilities, attack vectors, propagation and impact.

  • Good communication skills liaising with the business and suppliers.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Threat Operations Specialist
Cyber Threat Operations Specialist

Morson Edge • Stevenage

On-site
GBP 65,000 - 90,000
SOC - Cyber Threat Operations Specialist
SOC - Cyber Threat Operations Specialist

Tatton Recruitment • Stevenage

On-site
GBP 160,000 - 170,000
SOC – Cyber Threat Operations Specialist
SOC – Cyber Threat Operations Specialist

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 97,000 - 138,000
Cyber Security Engineer
Cyber Security Engineer

Certain Advantage • Stevenage

Hybrid
GBP 170,000 - 184,000
Cyber Security Engineer
Cyber Security Engineer

Tatton Recruitment • Stevenage

On-site
GBP 170,000 - 185,000
Cyber Threat Hunter & Incident Response Specialist
Cyber Threat Hunter & Incident Response Specialist

Cyber UK • Stevenage

Remote
GBP 83,000 - 120,000
Cyber Security Engineer
Cyber Security Engineer

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 174,000 - 180,000
Cyber Security Engineer
Cyber Security Engineer

Akkodis • Stevenage

On-site
GBP 60,000 - 90,000
Cyber Security Engineer / SOC Analyst
Cyber Security Engineer / SOC Analyst

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 170,000 - 184,000
Cyber Security Engineer / SOC Analyst
Cyber Security Engineer / SOC Analyst

Certain Advantage • Stevenage

On-site
GBP 170,000 - 185,000