Senior Security Analyst at Asta focused on security engineering and operational resilience in a hybrid role. Collaborating with various teams to enhance security protocols and manage incidents.
Responsibilities
The Senior Security Analyst is responsible for strengthening Asta’s security posture through hands-on security engineering, continuous monitoring, and effective operational resilience.
The role makes informed, risk based decisions during security incidents, prioritising alerts, coordinating containment actions, and recommending remediation strategies.
It delivers infrastructure hardening, threat detection, vulnerability management and supports Microsoft 365 security improvements.
The successful candidate will be part of the wider infrastructure team and work closely with development teams, clients, risk and compliance to drive security automation, threat detection, incident response, and risk reduction across the enterprise platform stack.
The role makes informed, risk‑based decisions during security incidents, prioritising alerts, coordinating containment actions, and recommending remediation strategies.
It delivers infrastructure hardening, threat detection, vulnerability management and supports Microsoft 365 security improvements.
Requirements
4 years + of hands-on experience in infrastructure cybersecurity, combining security tooling engineering and managing SOC operations or incident response with experience in regulated industry.
Strong understanding of cybersecurity principles, attack vectors, defense strategies and the Mitre Attack framework
Experience with Microsoft 365 security suite including Microsoft Defender, Azure AD Identity Protection, threat analytics, and security compliance tools.
Hands-on experience with SIEM platforms (Splunk, Crowdstrike (Falcon), Log Rhtyhm, Sentinel, or Microsoft Defender).
Familiarity with EDR/XDR tools (CrowdStrike, SentinelOne, or Microsoft Defender) and endpoint security and configuration.
Experience of working with tools such as Varonis, Tenable, Pentera & external and internal SOC processes
Knowledge of operating systems (Windows, Linux) and security hardening techniques with strong scripting & automation skills (Python, Bash, PowerShell)
Excellent written and verbal communication skills with ability to translate technical concepts for non-technical audiences, deliver training, and produce executive-level reports
Proactive, self-motivated team player with strong analytical & problem-solving skills and hands-on technical credibility with meticulous attention to detail. Ability to work under pressure and manage multiple priorities during security incidents.
Desirable: Security certifications (CISSP, CISM, OSCP, CCSP, Security+, CySA+, GCIH, GCIA, CompTIA Security+), experience with regulatory compliance frameworks (GDPR, ISO 27001, SOC2, PCI-DSS, cyber essentials), digital forensics knowledge, threat intelligence platform experience, AWS & GCP. Develop and maintain infrastructure-as-code for security configurations (Terraform, Ansible).
Benefits
At Asta, you’ll enjoy a market-leading benefits package that puts your wellbeing, career development and financial future first. We combine flexible working, strong family-friendly policies and exceptional rewards to create a supportive, inclusive and high-performing workplace.
Our benefits include:
Work-life balance you can rely on
35-hour working week with hybrid and flexible working
Generous holiday allowance that increases with service
Your health & wellbeing covered
Private medical insurance with virtual GP access
Annual health screening, dental cover and eye care
Subsidised gym or sports club membership
Support for you and your family
Enhanced maternity, paternity, adoption and shared parental pay
Rewarding your contribution
Highly competitive pension with up to 13% employer contribution
Life assurance and income protection
Discretionary annual bonus scheme
Interest-free season ticket loan and salary sacrifice schemes
Lead Cybersecurity Analyst specializing in Cloud Security for FIS. Assessing security posture of cloud environments and providing actionable remediation strategies.
Network Security Analyst II securing information systems and networks against security threats at Cayuse. Responsible for vulnerability assessments, incident response, and security measures implementation.
Senior Network Security Analyst responsible for network security and infrastructure management at Minsait. Collaborating on innovative projects while ensuring compliance and performance optimization.
Senior Access Management Analyst ensuring information security and integrity at Banco ABC Brasil. Managing user access and implementing security policies in the organization.
Information Security Analyst securing client systems and data through analysis and compliance with standards. Collaborating with IT teams to implement secure system solutions and oversee risk assessments.
IT Security Analyst for Bundesdruckerei GmbH monitoring security events in diverse infrastructures. Collaborating within the Blue Team and responding to security incidents.
Cyber Security Analyst focusing on security telemetry and metrics for Heathrow operations. Enhancing organizational cyber resilience through actionable intelligence and reporting.
Cyber Security Analyst within the Cyber Security Governance, Risk and Compliance team. Supporting effective management and oversight of cyber risk at Heathrow Airport.