Senior Security Analyst at Asta focused on security engineering and operational resilience in a hybrid role. Collaborating with various teams to enhance security protocols and manage incidents.
Responsibilities
The Senior Security Analyst is responsible for strengthening Asta’s security posture through hands-on security engineering, continuous monitoring, and effective operational resilience.
The role makes informed, risk based decisions during security incidents, prioritising alerts, coordinating containment actions, and recommending remediation strategies.
It delivers infrastructure hardening, threat detection, vulnerability management and supports Microsoft 365 security improvements.
The successful candidate will be part of the wider infrastructure team and work closely with development teams, clients, risk and compliance to drive security automation, threat detection, incident response, and risk reduction across the enterprise platform stack.
The role makes informed, risk‑based decisions during security incidents, prioritising alerts, coordinating containment actions, and recommending remediation strategies.
It delivers infrastructure hardening, threat detection, vulnerability management and supports Microsoft 365 security improvements.
Requirements
4 years + of hands-on experience in infrastructure cybersecurity, combining security tooling engineering and managing SOC operations or incident response with experience in regulated industry.
Strong understanding of cybersecurity principles, attack vectors, defense strategies and the Mitre Attack framework
Experience with Microsoft 365 security suite including Microsoft Defender, Azure AD Identity Protection, threat analytics, and security compliance tools.
Hands-on experience with SIEM platforms (Splunk, Crowdstrike (Falcon), Log Rhtyhm, Sentinel, or Microsoft Defender).
Familiarity with EDR/XDR tools (CrowdStrike, SentinelOne, or Microsoft Defender) and endpoint security and configuration.
Experience of working with tools such as Varonis, Tenable, Pentera & external and internal SOC processes
Knowledge of operating systems (Windows, Linux) and security hardening techniques with strong scripting & automation skills (Python, Bash, PowerShell)
Excellent written and verbal communication skills with ability to translate technical concepts for non-technical audiences, deliver training, and produce executive-level reports
Proactive, self-motivated team player with strong analytical & problem-solving skills and hands-on technical credibility with meticulous attention to detail. Ability to work under pressure and manage multiple priorities during security incidents.
Desirable: Security certifications (CISSP, CISM, OSCP, CCSP, Security+, CySA+, GCIH, GCIA, CompTIA Security+), experience with regulatory compliance frameworks (GDPR, ISO 27001, SOC2, PCI-DSS, cyber essentials), digital forensics knowledge, threat intelligence platform experience, AWS & GCP. Develop and maintain infrastructure-as-code for security configurations (Terraform, Ansible).
Benefits
At Asta, you’ll enjoy a market-leading benefits package that puts your wellbeing, career development and financial future first. We combine flexible working, strong family-friendly policies and exceptional rewards to create a supportive, inclusive and high-performing workplace.
Our benefits include:
Work-life balance you can rely on
35-hour working week with hybrid and flexible working
Generous holiday allowance that increases with service
Your health & wellbeing covered
Private medical insurance with virtual GP access
Annual health screening, dental cover and eye care
Subsidised gym or sports club membership
Support for you and your family
Enhanced maternity, paternity, adoption and shared parental pay
Rewarding your contribution
Highly competitive pension with up to 13% employer contribution
Life assurance and income protection
Discretionary annual bonus scheme
Interest-free season ticket loan and salary sacrifice schemes
Industrial Security Analyst ensuring compliance with federal security regulations and administering security programs for classified materials. Collaborating with internal and external stakeholders in a high - profile setting.
Staff Cybersecurity Analyst responsible for safeguarding cloud assets and leading security assessments for Southern Glazer’s. Collaborating with teams to develop cloud security policies and addressing cybersecurity incidents.
Senior Threat Intelligence Analyst working with Bupa's cybersecurity team. Focused on threat management and defensive strategies to enhance cyber security posture.
Senior Information Security Analyst at Field Nation leading SOC 2 and ISO 27001 compliance programs. Collaborating with teams to embed security and leverage AI in GRC workflows.
Analista de Ciberseguridad en CRG Solutions responsable de monitorear amenazas y gestionar vulnerabilidades en la organización. Identificación de riesgos y mejora continua de la postura de seguridad.
Compliance & Information Security Analyst at beqom managing GRC and TPRM functions. Overseeing client governance, risk, and compliance requests, and vendor due diligence at a SaaS company.
Senior Technical Expert in Cyber Defense Center at ZEISS analyzing global cyber threats. Collaborating with SOC, CIRT, and ensuring proactive defense strategies.
Information Security Analyst focusing on vulnerability research and data analysis at Flexera. Involves analyzing, verifying vulnerabilities, and maintaining high - quality content standards.
Oversee the testing lifecycle and provide cyber security solutions at Xcel Energy. Engage in various testing techniques and collaborate with teams to enhance quality practices.