AWSAzureCloudCyber SecurityFirewallsLinuxPythonArtificial IntelligenceMachine LearningAnalyticsCloudWatchAzure AD
About this role
Role Overview
This role will be key to our approach to Cyber Defence at Allwyn, managing the toolsets, processes and capabilities required to effectively deliver a world class security operations Centre.
Responsibilities will include managing security engineering toolset.
The role will be focused on developing and maintaining the technology and capabilities we have deployed.
You will be joining an exciting and growing area and will be instrumental in supporting and advancing the operational security capabilities of the Cyber Security Team.
There will be opportunity to work on and establish new Security Projects, as well as provide an advisory role to other elements of the business on best practice.
The role will require establishing relationships with key stakeholders in Risk, Technology and Operations, as well as establishing yourself as a SME for cyber security within the organisation.
Run advanced and predictive analyses and perform assessments based on the Mitre ATT&CK framework.
Will also be required to do validation, and enhancement activities, using predictive analytics' software tools and functionalities as well as the correlating testing activities to ensure quality of the use cases.
Correlation monitoring using multiple SIEM technologies will be required to ensure that the SOC achieves its objective of being a threat led organisation.
Will be required to gather forensic data and physical equipment to perform forensic investigation when necessary.
You will be required to act as incident responder for potential incidents identified and where necessary lead the incident responder.
Works independently and provides guidance and training to others on analysing data trends for use in security use cases to guide the development of the Security toolset.
Improve data and analytics systems and platforms, contribute and continuously improve and refine the data and analytics security strategy.
Conduct security assessments regularly to identify vulnerabilities and performing risk analysis.
Analyse breaches to reach the root cause.
Generate reports for IT administrators, business managers, and security leaders. These reports serve as an input to evaluate the efficacy of the security controls.
Perform forensic analysis and gather evidence for correlation monitoring using multiple SIEM technologies.
Create artificial intelligence algorithms that identify potential patterns or indicators of compromise in security logs, to be used in the defense of the environment.
Ensure the proactive development of all new machine learning activities are in alignment to identified threats by using your extensive knowledge of the threat landscape.
Have expert knowledge of both Aws an Azure security controls and be able to design, implement and maintain all security controls required by the business including knowledge of but not limited to (Azure – AIP;Defender;Azure AD;key vaults;log shipping ect AWS – Guard duty; security hub;trusted advisor;config;cloudtrail;cloudwatch;inspector ect)
Be the subject matter expert on all Azure security tooling.
Implementation and design of required security measures such as firewalls or message encryption.
Uses comprehensive knowledge and skills to work independently while providing guidance and training to others on planning, organizing, prioritizing, and managing activities to efficiently meet business objectives.
Lead on updating Protective Monitoring/SOC documentation, processes and procedures and ensure consistency.
Requirements
Ability to work under pressure
Have 1-3 years’ experience in a similar role
In-depth understanding of the cyber threat landscape and advances adversary tactics
The role requires an expert knowledge and experience of Linux; Windows; Azure; AWS; Sentinel;Paulo Alto and Cyberark.
Threat Modelling and Mitre Att&ck.
In-depth knowledge of a scripting language preferably python
Previous experience in a similar role
Relevant Cloud experience
Tech Stack
AWS
Azure
Cloud
Cyber Security
Firewalls
Linux
Python
Benefits
Company Bonus Scheme
Matched pension contributions up to 8.5%
26 days annual leave + 2 Life Days (and bank holidays)
Single Private Health Cover
Complimentary Private Medical
Income Protection
Flexible Benefits – EV Scheme, Money Coach, Will Writing, Mortgage Advice, Dental and Eye Care Schemes.
Enhanced Family Leave (Maternity, Paternity, Adoption)