Jobs
>
London

    Senior Cyber Detection Engineer - United Kingdom - Cloudsecurityexpo

    Default job background
    Description

    You will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC and cloud experience who enjoys researching TTPs and the threat landscape and translating that research data into high quality detections. Your role involves actively seeking effective and comprehensive detection strategy and capabilities, ensuring detections are thoroughly tested, alerts are relevant, of value and playbooks are available to and understood by cybersecurity operations teams .

    As one of the team's specialists on cloud technologies, you will work to mature the Attack Analysis team in how we secure, monitor and respond to incidents in both private and public cloud environments. You will work with internal security engineering and cloud engineering teams to ensure that Attack Analysis requirements are represented in the architecture, design and implementation of cloud environments. You'll help design, write and automate detection and incident response processes and tools for public and private cloud environments.

    Working in cybersecurity takes passion for technology, speed, a desire to learn, and vigilance in order to keep every asset safe. You'll be on the front lines of innovation, working with a highly motivated team focused on analyzing, designing, developing and delivering solutions built to stop adversaries and strengthen our operations. Your research and work will ensure stability, capacity and resiliency of our products. Working with your internal team, as well as technologists and innovators across our global network, your ability to identify threats, provide intelligent analysis and positive actions will stop crimes and strengthen our data.

    As a member of the Attack Analysis team, you will fit into a Global team providing 24/7 monitoring and Incident Response, acting as the frontline for attacks against the firms' infrastructure. As a Detection Engineer, your role will include advanced analysis, threat hunting, evaluation of new security technology as well as ensuring larger technology projects at the company are ready to be integrated into the Attack Analysis team and monitoring function. There is also an emphasis on coaching and mentoring in this role; you'll work to bring up the technical expertise of the entire team around you. This could include running training sessions for the team in range or virtual environments, leading hunting exercises, serving as a technical escalation point and coaching the team through adopting monitoring responsibility.

    Key areas of focus include: Public/Private Cloud Engineering and Incident Response, Detection Engineering, Threat Modelling. Hands-on experience with at least 1 cloud platform (AWS, Azure, GCP) is required. Primary Qualifications
    • Min. 6 years of working experience with at least 4 years of hands-on experience in Security Operations and Incident Response or Computer Network Operations (CNO) or Computer Network Defense (CND).
    • Hands-on experience with at least 1 cloud platform (AWS, Azure, GCP) including infrastructure, security and cloud APIs.
    • Bachelor's degree in Computer Science, Information Security, Digital Forensics or equivalent qualification.
    • Excellent written and verbal communication skills to describe security event details and technical analysis with audiences within the cybersecurity organization and other technology groups.
    • Strong collaboration and stakeholder engagement skills.
    • Experience with the creation and tuning of alerting rules from a SIEM and other devices in response to changing threats.
    • Ability to research TTPs and develop high fidelity detections in various tools/languages including but not limited to: Splunk, CrowdStrike, Azure Sentinel, Suricata, Snort.
    • Ability to use data science and analytical skills to identify anomalies over large datasets.
    • Experience with log analysis and correlation of large datasets from multiple data sources to identify and investigate attack patterns.
    • Experience with threat hunting on a large, enterprise network both as an individual and leading hunting exercises with other team members.
    • Ability to perform packet-level analysis and strong understanding of common network protocols and the OSI model.
    • Experience using scripting languages (Python, Powershell, Bash, etc.) to parse machine-generated data, interact with REST APIs and automate repetitive tasks.
    Additional Technical Qualifications
    • Experience with regular expressions and their applications.
    • Experience with Digital Forensics & Incident Response processes including memory & file system analysis methodologies.
    • Experience with analyzing Endpoint Detection & Response (EDR) telemetry and excellent knowledge of operating system internals (Windows, Linux, macOS).
    • Knowledge with command line tools across Windows and Linux.
    • Familiarity with malware analysis (both static and dynamic), binary triage, and file format analysis.
    #J-18808-Ljbffr


  • Alecto Recruitment Ltd London, United Kingdom

    **Gas Detection Engineer** · **London** · **Job ID: 036140** · Alecto Recruitment are currently representing an industry leading Gas Detection company, who are now looking to appoint an additional Gas Detection Service Engineer to support their ongoing growth. · With an outstandi ...


  • H&K Fire Engineering London, United Kingdom Full time

    Summary of role · We are looking for an ambitious and talented Installation & Commissioning Engineer to join our highly successful team in London. You will be given the unique opportunity to develop your career with us in this newly created role with the potential opportunity to ...

  • Trident Search

    Detection Engineer

    1 week ago


    Trident Search London, United Kingdom

    Trident Search have partnered with a company who pride themselves on being ahead of the curve when it comes to cyber security. The client works in the financial sector so its vital they remain at the forefront of the industry, to protect their clients data and their funds. · The ...


  • Highgrove Recruitment Group Limited London, United Kingdom Permanent, Full time

    What will you be doing? As a member of the Team, you will be responsible for providing exceptional support and customer service to all customers as well as attending customers sites to perform proactive maintenance, repairs and commissioning of gas detection products. · Main Resp ...


  • Highgrove Recruitment Group Limited London, United Kingdom

    What will you be doing? As a member of the Team, you will be responsible for providing exceptional support and customer service to all customers as well as attending customers sites to perform proactive maintenance, repairs and commissioning of gas detection products. · Main Res ...


  • OpenAI London, United Kingdom Full time

    About the Team · Security is at the foundation of OpenAI's mission to ensure that artificial general intelligence benefits all of humanity. · The Security team protects OpenAI's technology, people, and products. We are technical in what we build but are operational in how we do ...


  • Appcastenterprise Marlow, United Kingdom

    **Would you like to work in a supportive, collaborative and innovative company?** · **Do you enjoy working as part of an enthusiastic, passionate, and collaborative team?** · **Join our DevOps team** · The Site Reliability Engineering team deliver complete technical solutions usi ...


  • Lawrence Harvey united kingdom, United Kingdom

    Cyber Security Detection Engineer · Salary - £130-150k % Bonus · Location – REMOTE (from within the UK) · We've recently partnered with High-Frequency Trading firm looking to bring in a Security Engineer to enhance their Cyber Detection, Response and Investigation capability. · P ...


  • Lawrence Harvey London, United Kingdom

    Cyber Security Detection Engineer · Salary - £130-150k % BonusnLocation – REMOTE (from within the UK) · We've recently partnered with High-Frequency Trading firm looking to bring in a Security Engineer to enhance their Cyber Detection, Response and Investigation capability. · Pre ...


  • Alecto Recruitment London, United Kingdom £38,000 - £39,000

    Gas Detection Service Engineer · Job ID: 59410 Alecto Recruitment are currently representing a Gas Detection Distributor, who are now looking to appoint a Field Service Gas Detection Engineer to support their ongoing growth in North London. Formed over 25 years ago, my client pr ...


  • Lawrence Harvey United Kingdom

    Cyber Security Detection Engineer · Salary - £130-150k % Bonus · Location – REMOTE (from within the UK) · We've recently partnered with High-Frequency Trading firm looking to bring in a Security Engineer to enhance their Cyber Detection, Response and Investigation capabili ...


  • Lawrence Harvey United Kingdom

    Cyber Security Detection EngineerSalary - £130-150k % BonusLocation – REMOTE (from within the UK)We've recently partnered with High-Frequency Trading firm looking to bring in a Security Engineer to enhance their Cyber Detection, Response and Investigation capability.Previous expe ...


  • Cloudsecurityexpo United Kingdom

    You will be one of the team's subject matter experts on SIEM as well as cloud technologies. You will help mature how JPMC utilizes multiple SIEM solutions (primarily Splunk) for various use-cases within Cyber Operations. The ideal candidate will be someone with previous SOC and c ...


  • Rippling London, United Kingdom

    About Rippling · Rippling is the first way for businesses to manage all of their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform. · By connecting every business system to one source of truth for employee data, businesses can automate al ...


  • Cyber Crime London, United Kingdom

    Senior Threat Detection and Validation Engineer dunnhumby · Global leader in Customer data science and analytics, experts in working with brands, grocery retail, retail pharmacy, and retailer financial services. View company page · dunnhumby is the global leader in Customer D ...


  • Live Nation (Music) UK Limited London, United Kingdom

    Cyber Defence Lead Detection Engineer page is loaded · Cyber Defence Lead Detection Engineer · Apply locations Farringdon, London, United Kingdom time type Full time posted on Posted 2 Days Ago job requisition id JR-63169 Job Summary: · Company: Live Nation Entertainment · ...


  • Live Nation London, United Kingdom

    Cyber Defence Lead Detection Engineer page is loaded · Cyber Defence Lead Detection Engineer · Apply locations Farringdon, London, United Kingdom time type Full time posted on Posted 2 Days Ago job requisition id JR-63169 Job Summary: · Company: Live Nation Entertainment · ...


  • Amazon Data Services UK Limited London, United Kingdom Full time

    Amazon is seeking an innovative Security Engineer to join the Vulnerability Management and Remediation (VMR) team as a Vulnerability Detection Engineer. The VMR team is responsible for the discovery, assessment, triage, and remediation of vulnerabilities across Amazon. We are dat ...


  • Zitko Group Ltd United Kingdom

    Electronic Security and Fire Detection Engineer - North West (Liverpool/Manchester) · Electronic Security and Fire Detection Engineer · North West of England (Manchester / Liverpool) · Hours · Monday – Friday, 8.30am – 5pm · About the role · As a Electronic Security and Fire ...


  • dunnhumby London, United Kingdom

    We're looking · for a Senior Threat Detection Engineer who expects more from their career. It's a chance to extend and improve dunnhumby's Information Security team. It's an opportunity to work with a market-leading business to explore new opportunities for us and influence glo ...