22 часа назад
Information Security Analyst (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Information Security Analyst (AI) (AWS/security): Securing Fuse's IT and cloud environment across AWS infrastructure, identity providers, endpoints, SaaS applications, and data centres with an accent on detection engineering, incident response, and threat-led vulnerability management. Focus on building log pipelines and detection rules, investigating compromised accounts and endpoints, automating triage with Python, and protecting segmented data centre networks.
Location: London, England, United Kingdom; Workplace: Hybrid
Company
is an AI-first energy company developing solar, battery, generation, grid infrastructure, real-time power trading, and distributed energy solutions for homes.
What you will do
- Act as the security escalation point for IT across IAM, security, and automation.
- Build and tune monitoring pipelines from AWS, endpoints, identity providers, SaaS applications, and network infrastructure.
- Write, test, and maintain detection rules while measuring coverage against attacker behavior.
- Lead incident response from detection through containment, eradication, and post-mortem, and maintain tested response runbooks.
- Perform forensic analysis on compromised endpoints, cloud workloads, and accounts while preserving evidence.
- Drive threat-led vulnerability management, audit readiness, data centre monitoring, and root-cause remediation with IT and engineering.
Requirements
- Background in IT, SOC operations, or other hands-on technical work.
- Solid understanding of cloud infrastructure, ideally AWS, and strong networking knowledge including PCAP, flow logs, VLANs, and firewalls.
- Knowledge of attacker tradecraft, including initial access, persistence, privilege escalation, and exfiltration.
- Ability to script in Python or a similar language for enrichment, triage, and response automation.
- Strong ownership and ability to manage security issues end to end with limited guidance.
Nice to have
- Experience with EDR platforms such as CrowdStrike, SentinelOne, or Defender.
- Detection-as-code, SOAR, or custom response automation experience.
- Experience defending data centre or colocation environments, including OOB networks, BMC/IPMI, and physical access telemetry.
- Experience with ISO 27001 or SOC 2 audits, FortiGate logging, and NetFlow/sFlow analysis.
- DFIR certifications or experience in energy, fintech, trading, or other high-value-target environments.
Culture & Benefits
- AI-first, technically ambitious environment focused on building a more affordable energy system.
- Competitive salary with equity eligibility and a biannual bonus scheme.
- Fully expensed technology matched to role requirements.
- Private health insurance.
- Breakfast and dinner allowance for office-based employees; benefits vary by location.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
WRITER
3 дня назад
Security Engineer Detection and Response UK (AI Security)
8 дней назад
Staff Security Engineer (Security Operations)
5 дней назад
Senior Security Engineer, Security Incident Response Team (SIRT) - EMEA (Cybersecurity)
CrowdStrike
3 дня назад
Analyst I, Falcon Complete (Remote, GBR)
2 дня назад
Security Monitoring & Detection Engineering Lead (Microsoft Sentinel)
7 дней назад