Назад
Company hidden
6 часов назад

Information Security Analyst (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Английский
b2
Страна
UK
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Analyst (Cybersecurity): Securing Fuse Energy’s AWS infrastructure, identity providers, endpoints, SaaS applications, and data centre environments with an accent on monitoring, threat detection, and incident response. Focus on investigating compromises, building detection pipelines and rules, performing forensic analysis, and automating triage and response with Python.

Location: London, England, United Kingdom; Workplace: On-site

Company

hirify.global is a renewable energy startup building an integrated energy company spanning generation projects, real-time power trading, distributed energy installations, and direct-to-consumer energy sales.

What you will do

  • Act as the security escalation point for IT across IAM, cloud infrastructure, endpoints, SaaS applications, and automation.
  • Build and tune security monitoring and log pipelines from AWS, endpoints, identity providers, SaaS applications, and network infrastructure.
  • Write, test, and maintain detection rules based on real attacker behaviour and measure detection coverage.
  • Lead incident response from detection through containment, eradication, post-mortem, and tabletop exercises.
  • Perform forensic analysis of compromised endpoints, cloud workloads, and accounts while preserving evidence.
  • Drive vulnerability management, audit readiness, policy improvements, and remediation with IT and engineering teams.

Requirements

  • Hands-on background in IT, SOC operations, or another technical security role.
  • Solid understanding of cloud infrastructure, ideally AWS.
  • Strong networking knowledge, including PCAP analysis, flow logs, VLANs, firewalls, and lateral movement.
  • Understanding of attacker tradecraft, including initial access, persistence, privilege escalation, and exfiltration.
  • Ability to script in Python or a similar language for enrichment, triage, and response automation.
  • Strong ownership and ability to manage security issues end-to-end with limited guidance.

Nice to have

  • Experience with EDR platforms such as CrowdStrike, SentinelOne, or Defender.
  • Detection-as-code, Sigma, SOAR, or custom response automation experience.
  • Experience securing data centre or colocation environments and analysing FortiGate, NetFlow, or sFlow data.
  • Experience with ISO27001 or SOC2 audits, or DFIR certifications such as GCIH, GCFA, or GCIA.
  • Experience in energy, fintech, trading, or other high-value-target environments.

Culture & Benefits

  • Work on security for a fully integrated renewable energy company.
  • Operate in a fast-paced startup environment using first-principles thinking and technology.
  • Collaborate directly with IT and engineering to address root causes and improve prevention.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →