Overview
We are looking for a skilled Cyber Security Analyst to join our client's team on a 6-month contract basis. This remote position, requiring onsite presence in Central London once a week, focuses on supporting day-to-day security operations, managing security alerts, conducting investigations, and overseeing vulnerability management. The role is crucial in maintaining the organization's security posture and ensuring the effective identification and mitigation of potential threats.
Responsibilities
- Monitor and investigate alerts generated by Rapid7 and SIEM platforms, focusing on reducing existing alert backlogs.
- Conduct thorough security investigations to identify potential threats or suspicious activities.
- Support vulnerability management efforts by reviewing and investigating vulnerabilities using Rapid7.
- Monitor security events through SIEM tools and escalate incidents as necessary.
- Manage Mimecast security operations, including email review and sandboxing to prevent threats.
- Assist with Microsoft Purview activities such as eDiscovery and Data Loss Prevention (DLP).
- Handle Netskope requests, including site reviews and URL unblocking.
- Triage alerts from CrowdStrike to maintain endpoint security.
Requirements
- Hands-on experience with Rapid7 and SIEM platforms, including alert monitoring and investigation.
- Strong background in alert triage, security investigations, and vulnerability management.
- Experience with Mimecast administration, including email review and whitelisting.
- Knowledge of Microsoft Purview, eDiscovery, Data Subject Access Requests (DSAR), and DLP practices.
- Experience managing alerts from CrowdStrike and endpoint security solutions.
- Familiarity with Netskope or similar cloud security platforms.
- Understanding of Security Operations Center (SOC) processes and best practices.
- Excellent communication and documentation skills for maintaining security records.