Senior Cyber Security Analyst, DefOps (FTC)
Role details
Job location
Tech stack
Job description
We are currently looking for a Senior Cyber Security Analyst to augment our Defensive Operations Section within the wider Cyber Security Team where you will play a key role in protecting the company from cyber vulnerabilities and attacks, as well as ensuring the company's security programme keeps up with the growing business. The role reports to the DefOps Lead, contributing to the effective delivery of security processes and tooling to enable proportionate and effective application of security controls. You will be responsible for the technical configuration, maintenance, and operation of the security tooling.
You will be a key member of a growing team in a dynamic company, helping to define new ways of working using modern security architectures and tools. Baringa will work with you develop a personal training pathway and gain recognised security certifications. We are always evolving and there is a constant stream of exciting challenges and opportunities for us to work towards, together as a team.
What you will be doing
- Perform vulnerability scans, analysis, and prioritise identified weaknesses, working with the Technology Team to remediate identified issues.
- Collate alerts from security tooling, perform triage, prioritise, and where appropriate escalat[e]e for further action or utilise your deep technical and analytical skills to assess and remediate any incidents across our networks.
- Act as the first point of contact for security incidents, providing timely responses, coordination, and communication throughout all stages - including liaison with any 3rd party security providers.
- Perform hands-on investigations to analyse incidents, identify suspicious behaviour, gather evidence, and build on lessons learned to prevent their recurrence.
- Research and implement new security technologies to better protect both company and client information and assets.
- Lead on and produce technical security MI in support of governance and vulnerability management engagements.
- Provide 'hands on' assistance, particularly in technical control implementation or administration where needed.
- Work as part of a team to communicate ideas, suggestions and solutions that achieve the firm's long-term objectives.
Requirements
- Experience of the Microsoft Technology Stack and leading Cloud Technologies (Azure, AWS, etc).
- Experience in full-time Cyber Security or Security Vulnerability Management operational role.
- CompTIA Security+, GIAC Security Essentials, similar qualifications, or equivalent experience.
- Hands-on experience with security technologies such as: Security operations, IT 2nd line support, server or network administration / configuration or application testing or development.
- Experience with security tooling, i.e. MS Defender and Sentinel, Secure Web Gateway, vulnerability scanners, Intrusion Detection Systems (IDS), firewalls, web and email filtering, endpoint protection, and mobile device management (MDM).
- Growth mentality with excellent problem-solving skills, willing to assist in all areas of Cyber Security and to learn new technologies & processes.
- A self-motivated individual with a "can do" attitude, who can work on their own initiative as well as part of a team.
- An excellent communicator who can help develop good InfoSec practices with an ability to interact with all levels within the company.
- IT/Cyber security or Computer science related degree, or equivalent experience.
Benefits & conditions
- Generous Annual Leave Policy: We recognise everyone needs a well-deserved break. We provide our employees with 5 weeks of annual leave, fully available at the start of each year. In addition to this, we have introduced our 5-Year Recharge benefit which allows all employees an additional 2 weeks of paid leave after 5 years continuous service.
- Flexible Working: We know that the 'ideal' work-life balance will vary from person to person and change at different stages of our working lives. To accommodate this, we have implemented a hybrid working policy and introduced more flexibility around taking unpaid leave.
- Corporate Responsibility Days: Our world is important to us, so all our employees get 3 every year to help social and environmental causes and increase our impact on the communities that mean the most to us.
- Wellbeing Fund: We want to encourage all employees to take charge and prioritise their own wellbeing. We've introduced our annual People Fund to support this by offering every individual a fund to support and manage their wellbeing through an activity of their choice.
Diversity and Inclusion
We are proud to be an Equal Opportunity Employer. We believe that creating an environment where everyone feels a sense of belonging is central to our culture and that diversity is paramount to driving creativity, innovation, and value for our clients and for our people.