Cyber Threat Operations Specialist

Morson Edge

Stevenage

On-site

GBP 65,000 - 90,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Morson Edge in Stevenage is seeking a Cyber Threat Operations specialist to support the Active Defence Incident Response Manager and help counter cyber threats through robust threat hunting, detection engineering and analysis within a high-performing UK SOC.

You will work with UK InfoSec teams, utilise SIEM, Network Packet Capture and AI/ML analytics, lead threat detection engineering efforts, and help investigations and security meetings.

Qualifications

  • Background in Cyber Security across IT networks, infrastructure and OS/applications.
  • Knowledge of YARA and Sigma rulesets.

Responsibilities

  • Support the Active Defence Incident Response Manager in countering cyber threats.
  • Conduct threat hunting, monitoring, reporting and investigations.
  • Lead threat detection engineering efforts with the ISR function.
  • Assist with maintenance of security technologies and contribute to security meetings.

Skills

Threat Hunting
YARA
Sigma Rules
OSI Model
Security Analytics
Communication

Tools

SIEM
Network Packet Capture

Job description

An opportunity has arisen in the Active Defence Incident Response Team within Digital Excellence (DEX) for a Cyber Threat Operations specialist. Supporting the Active Defence & Incident Response Manager in assisting DEX meet the challenges and demands of countering the Cyber Threat. The successful applicant will drive a proactive ethos in an ever-changing cyber security environment and provide robust threat hunting, detection Engineering and analysis within a high performing team environment.

Responsibilities:

To support the Active Defence Incident Response Manager in assisting Information Management UK meet the challenges and demands of countering the Cyber Threat. Support for the operational functions of the UK SOC. To work with other UK SOC members, including the UK InfoSec Team and the IM Domains (Customer Support and Infrastructure / Information Systems).

It will cover Threat hunting, analysis, monitoring, Optimising, reporting, alerting and investigation activity utilising a wide variety of security platforms including AI/ML and behavioural analytics, SIEM (Security Information Event Management), Network Packet Capture platform, Anti Malicious Code, Threat Detection technologies and platforms across the UK Network Perimeter working with the best standard technologies.

The Cyber Threat Operations specialist reports to the Active Defence & Incident Response Manager. The Cyber Threat Operations specialist conducts a range of analysis and assists the incident response team with investigations that need to be escalated to an embedded member of staff.

The Cyber Threat Operations specialist key responsibilities are:
  • Conduct proactive Threat Hunting in collaboration with the CTI function
  • Lead Threat Detection Engineering effort working with the ISR function
  • Assist with the maintenance of Security technologies
  • Assisting the Cyber Eng Team with project activity
  • Supporting the Incident responders with HR and InfoSec related investigations
  • Attend routine security meetings
Skillset:
  • A career background in Cyber Security. Security awareness in all areas of IT, primarily Network Security, Infrastructure and the secondary area being Operating Systems & Applications.
  • Demonstrable knowledge with YARA and Sigma rulesets
  • Knowledge of IT Security standard methodologies.
  • Demonstrable understanding of the OSI Reference Model and the network communication protocols, including but not limited to DNS, HTTP/S, SSL, SMTP, FTP/S, LDAP/S.
  • Security Information Event Monitoring Tools and/or Network Packet Capture tools.
  • IDS/IPS technologies and threat hunting activities.
  • Strong analytical mind-set.
  • Defensive Cyber-attack methodologies and frameworks.
  • Understanding of Malware capabilities, attack vectors, propagation and impact.
  • Good communication skills liaising with the business and suppliers
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC – Cyber Threat Operations Specialist
SOC – Cyber Threat Operations Specialist

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 97,000 - 138,000
SOC - Cyber Threat Operations Specialist
SOC - Cyber Threat Operations Specialist

Tatton Recruitment • Stevenage

On-site
GBP 160,000 - 170,000
Cyber Threat Operations Specialist
Cyber Threat Operations Specialist

Line Up Aviation • Stevenage

On-site
GBP 7,026,000 - 11,710,000
Cyber Threat Specialist
Cyber Threat Specialist

Certain Advantage • Stevenage

On-site
GBP 92,000 - 111,000
Cyber Threat Operations Lead – Threat Hunting & Detection
Cyber Threat Operations Lead – Threat Hunting & Detection

Morson Human Resources Limited • England

On-site
GBP 60,000 - 90,000
Cyber Security Engineer
Cyber Security Engineer

Advantage Resourcing UK Ltd • Stevenage

On-site
GBP 174,000 - 180,000
Cyber Security Manager
Cyber Security Manager

Virgin Atlantic • Crawley

On-site
GBP 90,000 - 140,000
Cyber Threat Operations & Detection Engineer
Cyber Threat Operations & Detection Engineer

Morson Edge • England

On-site
GBP 60,000 - 90,000
Incident Response Specialist
Incident Response Specialist

Marcus Donald People Limited • City Of London

Hybrid
GBP 92,000 - 111,000
Cyber Security Operations Specialist
Cyber Security Operations Specialist

Tank Recruitment • Bath

On-site
GBP 55,000 - 85,000