The Security Analyst will support the delivery of managed security services to our higher education clients.
Reporting to the Security Operations Manager the Security Analyst will work closely with the Product Team, the Senior Security Analyst and a 3rd party MSSP in delivery of Asiera SOC & SIEM services.
Support the security operations and service delivery to our clients when a client security incident occurs.
Assist the Senior Analyst in managing the security incident on behalf of Asiera, including investigation, threat hunting and issuing client advisories.
Act as a key contributor to aid client resolver groups, providing advice on containment and remediation steps, recovery stage activity, and identifying responsive actions that Asiera can take to manage and reduce threats to constituents.
Be a key contributor in the further development of security platforms, platform integration, and design & development of additional managed security services and service features.
Requirements
Experience working in SOC/relevant IT operations role/relevant degree in computing /cyber security or relevant cyber security certifications
Ability to establish and maintain good working relationships with clients, vendors and other stakeholders
Proven experience investigating ICT/ security incidents, including coordination and communication between multiple resolver groups and involved parties
Good knowledge of the threat landscape
Excellent analytical and problem-solving skills
Excellent communication skills, both written and verbal
Ability to work in a busy work environment, to adapt to changing situations and divergent client environments
Adept at working with both technical experts and security experts on shared goals
Experience working with SIEM, EDR, NDR, Threat Intelligence Platforms (bonus points)
Good knowledge of NIST Security Incident Handling 800-61 (bonus points)
Experience with Threat Hunting (bonus points)
Experience with Splunk SPL (bonus points)
Experience with NetFlow and PCAP analysis (bonus points)