{bc}
workable

Information Security Analyst - SecOps Response

Starling
GBR
Full-time
Onsite
Discovered 1 weeks ago
Cyber incident responseDigital forensicsCloud forensicsGCPAWSEndpoint and server forensics
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Cyber incident responseDigital forensicsCloud forensics
Smart Apply

Full Job Posting

About the Role

Starling is seeking an Incident Responder to proactively defend its customers, assets, and systems against emerging threats.

The role supports the Security Operations team's 24/7 operational capabilities through an on-call rota.

The analyst reports to the Information Security Lead - SecOps Response.

Hybrid Working

  • The role is hybrid and employees are expected to be within commuting distance of a Starling office.
  • Technology employees are expected to attend the office at least one day per week.

Responsibilities

  • Investigate and contain cybersecurity incidents and maintain incident response and readiness processes.
  • Analyze cloud, endpoint, and network logs to identify root cause and determine containment, eradication, and recovery actions.
  • Plan and participate in tabletop exercises and document incident findings, containment steps, and causes.
  • Collaborate with other teams to analyze, contain, eradicate, and recover from cybersecurity incidents.
  • Present findings to technical and non-technical audiences and support detection engineering and threat hunting.

Requirements

  • At least three years of experience in cyber incident response and digital forensics.
  • Experience with incident handling, cloud forensics, endpoint and server forensics, and network forensics.
  • Experience with forensic data acquisition, disk forensics, and memory forensics.
  • Experience supporting and planning tabletop exercises.
  • Understanding of network, cloud, and operating system security controls.
  • Strong communication, teamwork, collaboration, time management, problem-solving, and interpersonal skills.
  • Willingness to learn, share knowledge, and mentor colleagues.

Preferred Qualifications

  • Experience with at least one programming or scripting language such as Python, Go, or Bash.
  • Experience with container security, proactive threat hunting, or malware analysis.
  • GIAC forensic or cloud forensics certifications, 13cubed DFIR training, or similar qualifications are advantageous.

Benefits

  • The benefits package includes holiday allowance, paid volunteering time, enhanced pension, life insurance, income protection, and private medical insurance.
  • Additional offerings include family-friendly policies, retail and wellness discounts, Cycle to Work, gym partnerships, and electric vehicle leasing.

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Starling