Security Operations Consultant (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Belfast, United Kingdom. Hybrid working with attendance at a PA office or client site for a minimum of two days per week; some assignments may require up to five days per week on a client site. Applicants must be British citizens or have been continuously resident in the UK for the past five years to meet security-clearance residency requirements.
Company
is a consulting firm combining strategy, technology, innovation, science and engineering expertise to help clients across sectors including defence, security, government, financial services, health and transport.
What you will do
- Lead and develop SOC analysts and incident response specialists through operational direction, coaching and support.
- Coordinate live cyber-incident investigation, containment, eradication, recovery, communications and post-incident reviews.
- Assess and improve enterprise and public-sector Security Operations capabilities across people, processes and technology.
- Optimise SIEM, SOAR, EDR/XDR and threat-detection tooling to improve visibility and response.
- Develop incident playbooks, standard operating procedures, automated response workflows and tabletop exercises.
- Contribute expertise to Security Operations services and the Digital Trust & Cyber Security community.
Requirements
- Experience running or supervising a SOC, CSOC or Incident Response team.
- Practical experience managing live cyber incidents, including ransomware, account takeovers or supply-chain breaches.
- Hands-on experience with SIEM/SOAR tools such as Microsoft Sentinel and Splunk, plus EDR/XDR platforms such as Microsoft Defender for Endpoint and CrowdStrike Falcon.
- Understanding of MITRE ATT&CK, NIST CSF, NCSC CAF v4.0 and ISO 27001.
- Ability to write concise incident reports and communicate with engineers and business leaders.
- Eligibility for required UK security clearance and background checks, including the relevant UK residency requirement.
Nice to have
- Experience in management consulting, managed services or client-facing advisory roles.
- Experience in regulated UK environments such as Central Government, Defence or Critical National Infrastructure.
- Hands-on familiarity with cloud security monitoring in AWS, Azure or GCP.
Culture & Benefits
- Cross-disciplinary collaboration with cyber security, product, design and technology specialists.
- Technical career progression, coaching, mentoring and knowledge sharing.
- Development budget for technical and non-technical training and professional certifications.
- Private healthcare, 25 days of annual leave, pension scheme and performance-based bonus.
- PA share ownership, tax-efficient benefits and opportunities for community and charity initiatives.
Hiring process
- Initial call with a technology recruiter.
- Two 60-minute competency or technical interviews.
- Final 60-minute meeting with a PA leader, including a mini case study and discussion of client-centricity.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →