Skip to main content

This job has expired

You will need to login before you can apply for a job.

Security Operations Consultant

Employer
Barclay Simpson.
Location
Fully Remote
Salary
Competitive
Closing date
23 Nov 2022

View more

Job Description
Security Operations Consultant required for market-leading financial services firm. The role will be focusing on updating and implementing test scripts for critical alarms and alerts.
Skills & Responsibilities
  • Create analytic content for on-premises and cloud-based log sources
  • Review and analyse Alarms & Alerts. Then produce and implement changes to SIEM (LogRhythm)
  • Supporting the creation of analytic content, detection concepts, and host-based detection methods.
  • Experience in detection content and analytical techniques to combat ATP Groups, intrusions, and insider threats.
  • Developing and documenting behavioural detection content for security tooling.
  • Creation of a library of detection simulation tests for Windows and Linux OS to ensure detection effectiveness using PowerShell/Python Scripting.
  • Technical understanding of MITRE ATT&CK and its use in mapping detection coverage.
  • Supporting the creation of analytic content, detection concepts, and host-based detection methods.
  • Understanding of network intrusion and threat actor behaviours, attacker tools, and newly discovered techniques for new detection opportunities.
  • Developing new tools and scripts to continually update or improve our threat detection automation processes and analytical capability.
As an ideal candidate, you will have an industry certification such as CISSP/CEH/CRISC and have expert knowledge of Security operations & detection engineering / red teaming. You must also be able to script. You will also have a proven track record of delivery in a similar role.

Get job alerts

Create a job alert and receive personalised job recommendations straight to your inbox.

Create alert