Security Operations Analyst at PPRO responsible for detecting, analyzing, and responding to security threats. Involves developing and refining detection capabilities in a dynamic, cloud-native environment.
Responsibilities
Design, develop and implement custom detection rules, alerts and dashboards within our SIEM platform to identify emerging threats across both end-user and production environments
Continuously tune and optimize existing rules to improve detection accuracy and reduce false positives
Proactively hunt for threats within our environment by analyzing logs and security data from various sources
Conduct thorough investigations of security alerts generated by endpoint detection & response systems, SIEM and cloud platforms
Manage the full lifecycle of security events from initial detection and triage to containment, eradication and post-incident analysis
Clearly document and report on lessons learned from security events and incidents
Monitor, maintain and enhance our security tooling, ensuring optimal performance and coverage
Collaborate with Technology teams to integrate security monitoring and alerting into the CI/CD pipeline
Evaluate and recommend new security technologies and tools to address both known and unknown gaps in our defenses
Requirements
Strong hands-on experience with SIEM platforms, including the creation and tuning of complex detection rules
Demonstrable experience with Endpoint Detection and Response (EDR) tools
Solid understanding of cloud security principles, CI/CD processes and DevSecOps environments
In-depth knowledge of incident response methodologies and best practices
A proactive mindset with the ability to take ownership of tasks and projects and drive them to completion
Excellent analytical and problem-solving skills, with a keen eye for detail
Scripting or programming skills (e.g., Python, PowerShell) for automation and analysis
Empathetic, thoughtful and business-focused approach to understand how Security controls impact other business functions and customers
An understanding of regulatory compliance frameworks such as PCI DSS, DORA, SOC2, GDPR is a bonus
Benefits
Hybrid working - We offer a hybrid structure with a 3 days / week on site expectation, so you can strike the balance between office and home working.
28-day holiday allowance
Work from abroad policy, enabling employees to work remotely for up to another 30 days per year
GBP 1,000 annual budget to support your professional growth
Leadership cafés, on-the-job training
Various insurances including a medical insurance (BUPA health care plan)
5% matching pension plan through Now Pensions
Enhanced family leave to support you during key life moments
Workplace nursery scheme
Gym membership contribution
Mental Health Platform access for therapy and courses
Head of Technology Operations & Security leading IT and security for a deep - tech scale - up. Overseeing IT operations and governance while implementing security within quantum communication technologies.
Head of IT & Security Operations ensuring secure cloud - based IT for quantum communication technologies. Leading a small IT team and aligning security, compliance, and business priorities.
L3 SOC Analyst managing security escalation cases using threat intelligence at Hewlett Packard Enterprise. Focused on cybersecurity incidents and team mentorship in a hybrid environment.
Senior Security Analyst triaging and investigating security alerts for award - winning IT provider. Collaborating to improve detection capabilities and mentor junior analysts in SOC environment.
Junior Network Analyst in NetSecOps at Porto managing network security and infrastructure. Focus on connectivity and collaboration for seamless communication across the company.
Solution Sales Manager driving revenue growth in financial services sector in Austria and Switzerland. Focused on ServiceNow IRM and Tanium solutions integration with consultative selling approach.
Cybersecurity Analyst at Trust Control monitoring threats and responding to incidents in the SOC. Engaging in continuous learning to enhance cybersecurity practices and strategies.
SecOps Engineer responsible for maintaining and improving application security in cloud infrastructure at Shopmonkey. Collaborating on security tools and processes with a focus on compliance and incident management.
Senior SOC Analyst at Telstra helping protect employees and customers from cyber threats. Leading incident response and threat analysis in Security Operations Centre.
Physical Security Operations Manager leading physical security initiatives and managing guard operations for data center construction. Focused on protecting assets and mitigating risks in critical environments.