Security Operations Analyst at PPRO responsible for detecting, analyzing, and responding to security threats. Involves developing and refining detection capabilities in a dynamic, cloud-native environment.
Responsibilities
Design, develop and implement custom detection rules, alerts and dashboards within our SIEM platform to identify emerging threats across both end-user and production environments
Continuously tune and optimize existing rules to improve detection accuracy and reduce false positives
Proactively hunt for threats within our environment by analyzing logs and security data from various sources
Conduct thorough investigations of security alerts generated by endpoint detection & response systems, SIEM and cloud platforms
Manage the full lifecycle of security events from initial detection and triage to containment, eradication and post-incident analysis
Clearly document and report on lessons learned from security events and incidents
Monitor, maintain and enhance our security tooling, ensuring optimal performance and coverage
Collaborate with Technology teams to integrate security monitoring and alerting into the CI/CD pipeline
Evaluate and recommend new security technologies and tools to address both known and unknown gaps in our defenses
Requirements
Strong hands-on experience with SIEM platforms, including the creation and tuning of complex detection rules
Demonstrable experience with Endpoint Detection and Response (EDR) tools
Solid understanding of cloud security principles, CI/CD processes and DevSecOps environments
In-depth knowledge of incident response methodologies and best practices
A proactive mindset with the ability to take ownership of tasks and projects and drive them to completion
Excellent analytical and problem-solving skills, with a keen eye for detail
Scripting or programming skills (e.g., Python, PowerShell) for automation and analysis
Empathetic, thoughtful and business-focused approach to understand how Security controls impact other business functions and customers
An understanding of regulatory compliance frameworks such as PCI DSS, DORA, SOC2, GDPR is a bonus
Benefits
Hybrid working - We offer a hybrid structure with a 3 days / week on site expectation, so you can strike the balance between office and home working.
28-day holiday allowance
Work from abroad policy, enabling employees to work remotely for up to another 30 days per year
GBP 1,000 annual budget to support your professional growth
Leadership cafés, on-the-job training
Various insurances including a medical insurance (BUPA health care plan)
5% matching pension plan through Now Pensions
Enhanced family leave to support you during key life moments
Workplace nursery scheme
Gym membership contribution
Mental Health Platform access for therapy and courses
Director of Security Operations overseeing incident response tasks at Gartner. Leading a geographically dispersed team and improving capabilities for detecting and responding to threats.
Senior Manager for Product Security Ops & Strategy at Salesforce overseeing strategic initiatives and ensuring alignment with security goals. Driving operational excellence and executive communication across teams.
Security Operations Manager responsible for planning and managing security programs at Cox Enterprises. Collaborating with stakeholders and analyzing security vulnerabilities while conducting investigations.
Security Operations Centre Analyst for Paysafe, responding to real - time security alerts and assisting Incident Response in security events. Requires collaboration in a global team environment with various security frameworks.
SOC Analyst focusing on real - time security monitoring and incident response for Atos Group in Bengaluru, ensuring proactive threat detection and effective response to incidents.
Manage global corporate security operations programs at OpenAI, collaborating across teams to enhance security measures. Focus on operational standards and program development for effective security initiatives.
Senior SOC Analyst leading advanced security monitoring and response across various platforms. Collaborating with teams to strengthen security posture and mentor junior analysts.
SOC Analyst developing cybersecurity solutions at Capgemini for leading organizations. Engaging in incident response and security operations in a collaborative environment with global colleagues.