Lead Specialist in Security Operations, enhancing detection engineering and incident response at Pearson. Collaborate with teams and drive process improvements in a high-paced environment.
Responsibilities
Lead and execute advanced SOC operations, including incident detection, triage, containment, and root cause analysis across Pearson environments.
Develop, implement, and optimize detection logic, playbooks, and automated response workflows to reduce mean time to containment and improve SOC efficiency.
Continuously assess and enhance SOC processes and procedures, ensuring best practices and alignment with evolving threat landscapes.
Collaborate with threat intelligence teams to analyze emerging risks and integrate relevant TTPs (Tactics, Techniques, and Procedures) into SOC operations.
Act as a trusted advisor to internal stakeholders, translating technical findings into actionable insights and ensuring transparency throughout security operations.
Ensure all SOC activities comply with relevant standards (e.g., NCSC, Cyber Essentials Plus) and internal Pearson policies.
Deliver executive-level reporting, risk assessments, and metrics to demonstrate the effectiveness of SOC operations.
Requirements
Proven experience in security operations, incident response, and detection engineering
Hands-on expertise with SOAR, EDR, NDR, and SIEM technologies
Experience with one or more Cloud Service Providers (AWS, Azure, GCP)
Strong background in multitasking, adapting, and thriving in fast-paced environments
Excellent communication skills, especially in stakeholder management and translating technical risk to non-technical audiences
Principal in Security Monitoring Response at Mastercard managing global crises and resilience operations. Leading incident response efforts and ensuring the safety of people and assets.
SOC Analyst II providing real time security monitoring and threat hunting services for clients in various industries. Assisting in identifying security incidents and managing vulnerabilities.
Security Incident Response Orchestration Lead at Bank of America defining automation for security incident workflows with a focus on Splunk SOAR and Tines. Collaborating with security operations and engineering teams to implement scalable solutions.
SOC Analyst II providing tier II cybersecurity support in a Security Operations Center environment. Conducting vulnerability assessments and analyzing cyber threats while training junior staff members.
Security Operations Analyst responsible for monitoring and responding to cybersecurity threats. Ensuring the confidentiality, integrity, and availability of data per compliance standards.
SOC Analyst responsible for cybersecurity incident management at Algosystems in Greece. Monitoring security threats, conducting investigations, and improving SOC services.
Cyber Operations Lead ensuring coordination of cyber operations between the Security Operations Center and internal business units. Enhancing security through effective incident response and threat management initiatives.
Solution Sales Manager enhancing revenue in financial services, focusing on ServiceNow IRM and Tanium solutions. Collaborating with teams and engaging C - level executives in Austria and Switzerland.
Senior Internal SOC Analyst leading security triage and investigations for Darktrace, utilizing AI - driven cybersecurity technology. Collaborating on incident response and mentorship within a hybrid work environment.