Jobs

Senior Incident Response Analyst


Job details
  • IAG Tech
  • Harmondsworth
  • 2 days ago

Job Description

The Senior Incident Response Analyst will utilise a diverse range of tools and resources to actively identify, probe, and address both emerging and ongoing threats affecting IAG networks, systems, users, and applications. You must thrive in high-pressure situations, think like both an attacker and defender, and drive relevant teams to take the right actions in the right time frames to mitigate risks. This position necessitates collaboration and dialogue with both technical and non-technical teams, encompassing security leadership and business representatives. As a seasoned expert, the individual in this role will also provide guidance and mentorship to less experienced analysts. Successful candidates:

Must also be willing to participate in a rotating on-call schedule and must be able to work collaboratively across physical locations. Having the ability to work outside of normal working hours as required due to critical incidents or emergency calls, will be essential to success in this role.


Qualifications

Skills

  • Primary Escalation Expertise: Proficient in acting as the primary escalation point, undertaking security analysis on critical alerts, and employing expertise to piece together the attack chain across intricate environments, including cloud, identity, email, network, and endpoint.
  • Threat Knowledge: Comprehensive understanding of the cyber threat landscape, particularly as it relates to the aviation sector.
  • Proactive Threat Hunting: Demonstrated capability to convert threat knowledge into active threat hunting. Skilful in analysing and researching new, emerging, or trending attacks, actors, malware samples, and TTP’s.
  • Communication Proficiency: Must have excellent English reading, writing, and speaking skills with the ability to convey security insights: both in crafting and deciphering security metrics, and in presenting them clearly across all hierarchical levels, up to senior leadership.

Experience

  • A minimum of 5 year’s experience in the areas of: endpoint security, malware analysis, threat hunting, penetration testing, incident response, reverse engineering, or digital forensics.
  • Knowledge of AWS cloud infrastructure with hands-on experience monitoring associated logs, including GuardDuty, CloudTrail, and VPC Flow.
  • Proven Akamai security experience with Kona, WAF, BMP, custom rules, bot definitions and analysing traffic via WSA.
  • Experience performing investigations using EDR/XDR tooling such as CrowdStrike and MS Defender to investigate Windows/Linux systems.
  • Experienced with Memory Forensics, dump extraction and analysis.

 

Qualifications

Essential: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field.

Desired: Master's degree in a related field / Professional certifications such as CERT-CSIH, CISSP, GCFA, GCFE, GCIH, GCIA, GMON



Additional Information

Benefits

The chance to enjoy a challenging career in an exciting, fast-moving environment in a dynamic industry, working in a multi-cultural environment with great offices in many locations. We aim to provide all our people with a work/life balance, as well as the many benefits offered by a global organisation, including health insurance, pension, and performance bonuses.

Diversity and Inclusion

IAG Tech is part of the IAG GBS organisation, and our people are at the heart of everything we do. We recognise that we can only deliver the required business outcomes if we have a thriving community of technology professionals. Together we strive to become the very best at what we do.

We focus on making Tech a great place to work, with a community that we feel proud to belong to. To help make this a reality, our people strategy focuses on six key domains: Engagement, Talent Management, Reward and Recognition, Performance Management, Learning and Development and Culture.

We understand the importance of Diversity and Inclusion in the workplace to deliver this strategy – everyone should feel part of our team. We want to foster an inclusive workplace, celebrate individuality and embrace differences so that everyone in IAG Tech can achieve their goals and ambitions, regardless of their personal circumstances or background.

As a Group, IAG has an ambition that 40% of senior management roles are held by women by 2025. IAG Tech fully supports that ambition, and we are working to help make it a reality. With this in mind, we have set ourselves the challenging target of recruiting 50% female colleagues by 2030.

 

Sign up for our newsletter

The latest news, articles, and resources, sent to your inbox weekly.

Similar Jobs

Sr Digital Forensics Incident Response Analyst

Senior Analyst, Digital Forensics Incident ResponseThermo Fisher Scientific’s Mission is to enable our customers to make the world healthier, cleaner, and safer, and the global coronavirus (COVID-19) outbreak is a powerful reminder of the importance of that Mission! In fact, Thermo Fisher is at the forefront of the global response...

Thermo Fisher Scientific

Cyber Security Lead

Job Summary: Visit - and scroll down Information Security to know about our internal Infosec capabilities.Job Description:A warm welcome from The John Lewis Partnership! Thanks for your interest in joining us. The Partnership is a company that celebrates the uniqueness of each individual. Here,you’re not just an employee, you’re a...

John Lewis Partnership Bracknell

Cyber Security Operations Lead - 12 month Contract

Cyber Security Operations Lead - Outside IR35 - 12 Month ContractLoriens leading public sector client is growing and looking for a security person to lead the SecOps team on a 12-month basis.This person will also work with the head of cyber security and risk and the security architects to set...

Lorien Edinburgh

Senior Cyber Security Analyst (L3) Digital · The Crown Estate, 1 St James Market · Hybrid Remote

Are you ready to be at the forefront of cyber defence?Join The Crown Estate as a Senior Cyber Security Analyst and become a key player in our mission to protect critical assets from cyber threats. You’ll be instrumental in monitoring and responding to cyber alerts, managing vulnerabilities, and ensuring the...

Jobleads London

Senior Cyber Security Analyst (L3) (Basé à London)

Are you ready to be at the forefront of cyber defence?Join The Crown Estate as a Senior Cyber Security Analyst and become a key player in our mission to protect critical assets from cyber threats. You'll be instrumental in monitoring and responding to cyber alerts, managing vulnerabilities, and ensuring the...

Jobleads Holloway

Senior Cyber Security Analyst (L3) Digital · The Crown Estate, 1 St James Market · Hybrid Remote (Basé à London)

Are you ready to be at the forefront of cyber defence?Join The Crown Estate as a Senior Cyber Security Analyst and become a key player in our mission to protect critical assets from cyber threats. You’ll be instrumental in monitoring and responding to cyber alerts, managing vulnerabilities, and ensuring the...

Jobleads London