Threat Hunter & Incident Response Pro

Drweng

Greater London

On-site

GBP 60,000 - 85,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

DRW is seeking a Threat Specialist for our London office to join the Global Security Operations team. You will research and evaluate new security solutions, work with engineers, and help protect our digital assets across markets.

The role focuses on triage, incident response, threat detection creation, and tool administration. A background in security operations and scripting will help you succeed.

Qualifications

  • A bachelor’s degree, or equivalent experience for 1–3 years in industry.
  • Interest in digital forensics and physical security.
  • A passion for security and problem solving.
  • Heightened attention to detail and forward thinking.
  • Strong knowledge of Windows, MacOS, or Linux with willingness to learn others.
  • Knowledge of the Incident Response Cycle.
  • Knowledge of static & dynamic malware analysis, including network packet captures.
  • Knowledge of core networking & cloud security concepts.
  • Experience with Security Information and Event Management (SIEM) products.
  • Experience with Endpoint Detection & Response (EDR) products.
  • Experience with SOAR products.
  • Experience with data analysis of events in security sources such as IPS, Web Security, Endpoint Protection, Event Logs.
  • Experience working with GitHub.
  • Experience with PowerShell, Bash, Python, Ruby, or Perl.
  • Exceptional time management skills.
  • Excellent verbal and written communication skills.

Responsibilities

  • Triage global security alerts from IPS, Web Security, logs, EDR, and more.
  • Respond to identified incidents from analysis of alerts.
  • Triage and route internal security tickets.
  • Create and revise threat detections.
  • Perform SIEM product administration for event correlation and threat detection.
  • Manage SOAR playbooks and dashboards; administer tools.
  • Assist internal teams with insider threat investigations.
  • Drive automated detection, response, and configuration via scripting.
  • Evaluate commercial and open-source security tools as needed.
  • Collaborate with internal Infosec peers to improve security posture.
  • Contribute to internal documentation of standard processes & procedures.
  • Educate users on security best practices.
  • Assess security risks related to new projects and initiatives.
  • Attend security conferences and training to stay ahead.

Skills

Bachelor’s degree / experience
Security awareness
Attention to detail
Windows / MacOS / Linux
Incident response
Malware analysis
Networking & cloud security
SIEM
EDR
SOAR
Data analysis of security events
GitHub
PowerShell
Bash
Python / Ruby / Perl
Communication skills
Time management

Education

Bachelor’s degree or equivalent experience

Tools

SIEM products
EDR products
SOAR products
PowerShell
Bash
Python
GitHub

Job description

DRW is seeking a Threat Specialist for our London office to join the Global Security Operations team. You will research and evaluate new security solutions, work with engineers, and help protect our digital assets across markets.

The role focuses on triage, incident response, threat detection creation, and tool administration. A background in security operations and scripting will help you succeed.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Hunter & Incident Response Engineer
Threat Hunter & Incident Response Engineer

P2P • Greater London

On-site
GBP 65,000 - 90,000
Threat Detection & Incident Response Specialist
Threat Detection & Incident Response Specialist

DRW • City Of London

On-site
GBP 60,000 - 90,000
Threat Specialist
Threat Specialist

Drweng • Greater London

On-site
GBP 60,000 - 85,000
Threat Specialist
Threat Specialist

P2P • Greater London

On-site
GBP 65,000 - 90,000
Threat Specialist
Threat Specialist

DRW • City Of London

On-site
GBP 60,000 - 90,000
Cyber Threat Hunter & Incident Response Specialist
Cyber Threat Hunter & Incident Response Specialist

Cyber UK • Stevenage

Remote
GBP 83,000 - 120,000
Remote Intrusion Analyst: Threat Hunting & Detection
Remote Intrusion Analyst: Threat Hunting & Detection

Berenice Photography • United Kingdom

Remote
GBP 58,000 - 90,000
Threat Hunter
Threat Hunter

nccgroup • Manchester

On-site
GBP 60,000 - 90,000
Cyber Threat Operations Lead – Threat Hunting & Detection
Cyber Threat Operations Lead – Threat Hunting & Detection

Morson Human Resources Limited • England

On-site
GBP 60,000 - 90,000
Senior SecOps Analyst UK — Threat Hunting & IR Lead
Senior SecOps Analyst UK — Threat Hunting & IR Lead

Anduril Industries • Greater London

On-site
GBP 90,000 - 130,000
Equity grants
Competitive benefits