Enable job alerts via email!

Lead Detection and Response Analyst

Live Nation (Music) UK Limited

London

On-site

GBP 60,000 - 80,000

Full time

2 days ago
Be an early applicant

Job summary

A prominent music entertainment company is seeking a Lead Detection and Response Analyst in London. This role involves operational leadership in cybersecurity incident response, requiring strong communication and leadership skills. Candidates should have extensive experience with SIEM, EDR, NDR tools, and a background in incident response. The company values diversity and inclusion and offers a supportive work environment.

Qualifications

  • 5+ years of cybersecurity experience, including 2+ years in a leadership role.
  • Understanding of attacker TTPs (MITRE ATT&CK) and incident response in cloud environments (AWS, Azure, GCP).
  • Ability to mentor junior analysts and lead incident investigations.

Responsibilities

  • Coordinate daily shift activities and act as an escalation point for security alerts.
  • Lead incident investigations and perform QA reviews.
  • Monitor security alerts using SIEM, EDR, and NDR platforms.

Skills

Hands-on experience with SIEM tools
Hands-on experience with EDR tools
Hands-on experience with NDR tools
Excellent communication skills
Ability to lead teams

Education

Bachelor's degree in Cybersecurity, Information Security, or related field

Tools

SIEM platforms
EDR platforms
NDR platforms
DFIR tools

Job description

Job Summary:

Who are we?

Live Nation Entertainment is the world’s leading live entertainment and eCommerce company, comprising Ticketmaster.com, Live Nation Concerts, Front Line Management Group, and Live Nation Network. We are the global leader in event ticketing and one of the top five eCommerce sites worldwide, with over 26 million monthly unique visitors. Live Nation Concerts produces over 20,000 shows annually for more than 2,000 artists globally. Front Line Management is the top artist management company, representing over 250 artists. These businesses power Live Nation Network, a leading provider of entertainment marketing solutions, enabling over 800 advertisers to reach the 200 million consumers Live Nation engages annually through live events and digital platforms.

Who are you?

We are looking for a passionate, motivated, and resourceful Lead Detection and Response Analyst to join our team in London. The ideal candidate is entrepreneurial, innovative, forward-thinking, and committed. As a UK/EMEA Lead DART Analyst, you will serve as a bridge between frontline analysts and DART management, guiding real-time incident response, mentoring team members, and contributing to process development and strategic improvements. You will lead shift operations, act as an escalation point for complex investigations, and ensure consistent application of incident response processes across global teams.

Key Responsibilities

  • Operational Leadership
  • Coordinate daily DART shift activities to ensure smooth operations and adequate coverage.
  • Act as an escalation point for high-priority security alerts and investigations.
  • Serve as Incident Commander to streamline and complete incident investigations.
  • Conduct QA reviews on tickets to ensure accuracy and adherence to procedures.
  • Lead shift handovers, ensuring continuity and communication across regions.
  • Monitor and triage security alerts using SIEM, EDR, and NDR platforms.
  • Perform in-depth investigations into potential threats, leveraging internal tools and TTP-based analysis.
  • Collaborate with business units and technical teams during incident response to gather context and execute containment or remediation.
  • Provide structured documentation and post-incident recommendations.
  • Team Support & Development
  • Mentor junior and mid-level analysts during investigations and incident response.
  • Support onboarding and continuous training through documentation, coaching, and hands-on guidance.
  • Promote a culture of collaboration, accountability, and continuous improvement across shifts.
  • Process & Tooling Contribution
  • Identify tooling or workflow gaps; recommend improvements to the Defense and Response Team/Detection and Response Engineering Manager.
  • Contribute to the creation and refinement of playbooks and operational procedures.
  • Participate in tuning detection content and developing use cases with threat detection teams.
  • Reporting & Metrics
  • Assist in tracking KPIs like Time to Detect, Time to Resolve, and Escalation Ratios.
  • Support reporting by summarizing incidents and shift activities aligned with team OKRs.

Required Qualifications

  • Bachelor's degree (or higher) in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field, and/or 5+ years of experience in a cybersecurity analyst role, with at least 2 years in a lead or senior capacity.
  • Proven hands-on experience with SIEM, EDR, NDR, and DFIR tools.
  • Deep understanding of attacker TTPs (MITRE ATT&CK) and strong investigative skills.
  • Experience responding to incidents in cloud environments (AWS, Azure, GCP).
  • Excellent communication skills, both written and verbal, especially in high-pressure scenarios.
  • Ability to guide and motivate analysts with varying experience levels.

We are committed to diversity and inclusion, fostering an inclusive environment where you can bring your whole self to work. We support work-life balance and encourage applications regardless of gender, race, sexual orientation, religion, age, disability, or caring responsibilities.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs