Senior Digital Forensics and Incident Response Analyst

3761 Barclays - BX - UK

Knutsford

On-site

GBP 65,000 - 100,000

Full time

9 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Barclays is seeking a Senior DFIR (Digital Forensics and Incident Response) Analyst to join the Security Operations Centre in Knutsford. You will lead investigations of complex cyber security events, apply forensic techniques to identify, contain and remediate threats, and work with cross-functional teams to strengthen the bank's cyber resilience.

The role requires extensive incident response experience in large enterprises, knowledge of Windows/Linux/Mac artefacts, and the ability to

Qualifications

  • Ability to apply digital forensic principles to evidence collection, preservation and analysis.
  • Experience investigating cyber security incidents in large enterprise environments.
  • Proficiency with multiple operating systems and security tooling to support investigations.

Responsibilities

  • Lead the investigation of complex cyber security events within the Security Operations Centre.
  • Apply digital forensic techniques to identify, contain and remediate threats.
  • Strengthen Barclays' cyber resilience through incident response and post-incident improvements.
  • Collaborate with cyber security, infrastructure and technology teams on investigations.
  • Collect and analyse forensic evidence and analyse logs from multiple sources.

Skills

Digital forensic principles
Incident response
Threat analysis
Log analysis
Security controls

Tools

Endpoint Detection and Response (EDR)

Job description

Job Description Purpose of the role

To monitor the performance of operational controls, implement and manage security controls and consider lessons learnt in order to protect the bank from potential cyber-attacks and respond to threats.

Accountabilities

  • Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage.
  • Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise.
  • Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats.
  • Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network.
  • Management of cyber security incidents including remediation & driving to closure.
Assistant Vice President Expectations

To advise and influence decision making, contribute to policy development and take responsibility for operational effectiveness.

Collaborate closely with other functions/ business divisions.

Lead a team performing complex tasks, using well developed professional knowledge and skills to deliver on work that impacts the whole business function.

Set objectives and coach employees in pursuit of those objectives, appraisal of performance relative to objectives and determination of reward outcomes.

If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard.

The four LEAD behaviours are:
  • L – Listen and be authentic,
  • E – Energise and inspire,
  • A – Align across the enterprise,
  • D – Develop others.

OR for an individual contributor, they will lead collaborative assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will identify new directions for assignments and/ or projects, identifying a combination of cross functional methodologies or practices to meet required outcomes.

Consult on complex issues; providing advice to People Leaders to support the resolution of escalated issues.

Identify ways to mitigate risk and developing new policies/procedures in support of the control and governance agenda.

Take ownership for managing risk and strengthening controls in relation to the work done.

Perform work that is closely related to that of other areas, which requires understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function.

Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategy.

Engage in complex analysis of data from multiple sources of information, internal and external sources such as procedures and practises (in other areas, teams, companies, etc).to solve problems creatively and effectively. Communicate complex information.

Complex information could include sensitive information or information that is difficult to communicate because of its content or its audience.

Influence or convince stakeholders to achieve outcomes.

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right.

They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.

Join us as a Senior DFIR (Digital Forensics and Incident Response) Analyst at Barclays, where you will play a critical role within the Security Operations Centre, protecting the organisation from cyber threats and security incidents.

You will lead the investigation of complex cyber security events, applying digital forensic techniques to identify, contain, and remediate threats while helping to strengthen Barclays' overall cyber resilience.

Working alongside cyber security, infrastructure and technology teams, you will investigate a broad range of security incidents, including phishing attacks, malware infections, endpoint compromise and external cyber threats.

You will collect and analyse forensic evidence, provide technical expertise during incident response activities and support continuous improvements to Barclays' detection and response capabilities.

To be successful as a Senior DFIR Analyst, you should have:
  • Ability to apply digital forensic principles relating to evidence collection, preservation, and analysis.
  • Working knowledge of Windows, Linux, and Mac operating systems, with the ability to interpret system-level artefacts and support complex forensic investigations
  • Proven experience investigating and responding to cyber security incidents within large and complex enterprise environments including the ability to analyse logs, alerts, and artefacts from multiple security controls to determine the scope and impact of incidents
Some other highly valued skills may include:
  • Experience using Endpoint Detection and Response (EDR) technologies and analysing endpoint-level security telemetry during incident investigations
  • Knowledge of network analysis concepts, traffic analysis and common attack behaviours.
  • Understanding of malware analysis concepts, cloud security principles and common cloud logging sources to support investigations across hybrid enterprise environments

You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen, strategic thinking and digital and technology, as well as job-specific technical skills.

The successful candidate will be based in Knutsford (Radbroke Hall).

Our Work Experience is the combination of everything that's unique about us: our culture, our core values, our company meetings, our commitment to sustainability, our recognition programs, but most importantly, it's our people.

Our employees are self-disciplined, hard working, curious, trustworthy, humble, and truthful.

They make choices according to what is best for the team, they live for opportunities to collaborate and make a difference, and they make us the #1 Top Workplace in the area.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Digital Forensics and Incident Response Analyst
Senior Digital Forensics and Incident Response Analyst

BARCLAYS • Knutsford

On-site
GBP 70,000 - 95,000
Senior DFIR / Incident Response / Digital Forensics
Senior DFIR / Incident Response / Digital Forensics

慨正橡扯 • Knutsford

On-site
GBP 90,000 - 110,000
Senior DFIR Lead: Cyber Incident Response & Forensics
Senior DFIR Lead: Cyber Incident Response & Forensics

BARCLAYS • Knutsford

On-site
GBP 70,000 - 95,000
Senior DFIR Analyst: Cyber Threat Response Lead
Senior DFIR Analyst: Cyber Threat Response Lead

3761 Barclays - BX - UK • Knutsford

On-site
GBP 65,000 - 100,000
Senior DFIR Lead: Cyber Operations & Forensics
Senior DFIR Lead: Cyber Operations & Forensics

Cyber UK • United Kingdom

Remote
GBP 120,000 - 180,000
Senior Financial Crime Business Analyst
Senior Financial Crime Business Analyst

BARCLAYS • Greater London

On-site
GBP 90,000 - 130,000
Application Security Specialist
Application Security Specialist

Barclays • Knutsford

On-site
GBP 85,000 - 100,000
Senior Consultant, Digital Forensics and Incident Response
Senior Consultant, Digital Forensics and Incident Response

Control Risks • Greater London

Hybrid
GBP 90,000 - 130,000
Hybrid working arrangements
Senior Service Engineer
Senior Service Engineer

Barclays • Glasgow

On-site
GBP 60,000 - 90,000
Senior Consultant, Digital Forensics and Incident Response
Senior Consultant, Digital Forensics and Incident Response

Control Risks • City Of London

Hybrid
GBP 90,000 - 130,000
Hybrid working