Enable job alerts via email!

Senior Threat Detection Analyst (IT)

BAE Systems

Frimley

On-site

GBP 80,000 - 100,000

Full time

Today
Be an early applicant

Job summary

A leading defense and security company in the UK is seeking a cybersecurity professional to protect against cyber threats. The role involves analyzing alerts, delivering monitoring services, and defining security capabilities. Candidates should have a strong technical background and experience in cyber operations. Competitive benefits include a pension scheme, health plans, and employee share plans.

Benefits

Flexible health and wellbeing benefits
Competitive pension scheme
Employee share plans
Shopping discounts

Qualifications

  • Background of prior experience working in an information and/or cyber security environment.
  • Comfortable analysing and interpreting large data sets.
  • Experience working within Cyber Operations.

Responsibilities

  • Triage, analyse and investigate alerts and network traffic.
  • Deliver core triage function as part of monitoring services.
  • Mentor and escalate technical queries within the team.
  • Contribute to the development of security capabilities.
  • Define monitoring use cases and develop prototype rules.

Skills

Technical background with experience in firewalls, IDS/IPS, Active Directory
Experience analysing large complex data sets
Knowledge of tools to dissect common threats
Familiarity with the current threat landscape

Education

Relevant security certifications (CISSP, SSCP, CEH, GCIH, GCIA)

Tools

SIEM platforms
Job description
Overview

Cyber Operations is responsible for protecting BAE Systems from cyber attack by various threat actors. Not only do we protect BAE Systems and its employees, indirectly we protect those who protect us – who serve in our military and rely on the products and services we create. Across Threat Intelligence, Detection, Incident Response and now Active Defence we work to evolve cyber operations as a world class capability.

Responsibilities
  • Triage, analyse and investigate alerts, log data and network traffic using the monitoring platforms and Internet resources to identify cyber-attacks / security incidents.
  • Deliver the core triage function as part of 24/7 protective monitoring services across a range of networks/services.
  • Act as a mentor and as an escalation point within the team for technical queries.
  • Ensure timely and accurate communication of incidents to IT, network or security teams across BAE Systems.
  • Escalate suspected major security incidents / investigations where support is required.
  • Define monitoring use cases and develop prototype rules with minimal supervision (for example in response to intelligence or gaps in defences).
  • Contribute to the development of the services through people, process and technology where appropriate.
  • Build a comprehensive knowledge of BAE Systems IT systems to support monitoring activities and tailor remediation recommendations to systems.
  • Contribute to and help define requirements for future security capabilities along with the Lead Analyst.
Technical qualifications
  • Technical background with experience of technologies including but not limited to firewalls, IDS/IPS, Active Directory, endpoint protection, Windows Server, Linux, Networking, Cloud and Vulnerability Management.
  • Analytical background and comfortable analysing and interpreting large and complex data sets and articulating the story behind observations along with providing conclusions and recommendations.
  • Knowledge and experience of using tools to dissect common threats to produce usable IOCs, e.g. malicious document analysis.
  • Detailed knowledge of the current threat landscape, the TTPs frequently employed in those attacks and how we can investigate and mitigate these.
Desirable
  • Background of prior experience working in an information and/or cyber security environment (Government or commercial sector) environments.
  • Previous experience working within Cyber Operations utilising SIEM platforms.
  • Relevant security certifications such as CISSP, SSCP, CEH, GCIH or GCIA.
Company context

Cyber Operations is responsible for protecting BAE Systems from Cyber Attack by various threat actors. Not only do we protect BAE Systems and its employees, indirectly we protect those who protect us - who serve in our military and rely on the products and services we create. Across Threat Intelligence, Detection, Incident Response and now Active Defence we work to evolve cyber operations as a world class capability.

Why BAE Systems?

This is a place where you\'ll be able to make a real difference. You\'ll be part of an inclusive culture that values diversity of thought, rewards integrity, and merit, and where you\'ll be empowered to fulfil your potential. We welcome people from all backgrounds and want to make sure that our recruitment processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments.

Please be aware that many roles at BAE Systems are subject to both security and export control restrictions. These restrictions mean that factors such as your nationality, any nationalities you may have previously held, and your place of birth can restrict the roles you are eligible to perform within the organisation. All applicants must at minimum achieve Baseline Personnel Security Standard. Many roles also require higher levels of National Security Vetting where applicants must typically have 5 to 10 years of continuous residency in the UK depending on the vetting level required for the role, to allow for meaningful security vetting checks.

As well as a competitive pension scheme, BAE Systems also offers employee share plans, an extensive range of flexible discounted health, wellbeing and lifestyle benefits, including a green car scheme, private health plans and shopping discounts - you may also be eligible for an annual incentive.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.