Information Security Analyst Security Operations Centre
Job Summary
Hybrid working - our approach is to be in the office 2 - 3 days per week.
The purpose of this role is to be part of PAs Group Systems Security Operations Centre (SOC) helping protect PA by monitoring the technology estate investigating and responding to security incidents proactively hunting for threats and continually improving security detections controls and working practices.
Key Activities:
Monitor and investigate security alerts across SIEM EDR/XDR email security cloud platforms identity network security and data loss prevention tooling.
Triage security events determine scope and impact coordinate containment and remediation and maintain clear investigation records and evidence.
Perform proactive threat hunting using threat intelligence attacker techniques and hypotheses relevant to PA.
Develop and tune detections use cases dashboards playbooks and automation to improve coverage and reduce unnecessary alert volume.
Support digital forensic analysis malware and phishing analysis and post-incident reviews as required.
Analyse relevant threat intelligence vulnerabilities and supplier advisories assess PA exposure and recommend proportionate actions.
Support vulnerability and exposure management through reporting prioritisation tracking and engagement with asset owners. Remediation remains the responsibility of asset owners.
Carry out security checks requested by the business including software website and identity-related checks and provide practical risk-based advice.
Contribute to security improvement projects operational documentation knowledge sharing metrics and reporting.
Participate in the paid out-of-hours on-call rota and respond to high-severity incidents when required.
Qualifications :
Essential skills and experience
Practical experience in a SOC incident response security monitoring detection engineering or a closely related technical security role.
Strong investigation log analysis and correlation skills across endpoint identity email cloud and network telemetry.
Experience using SIEM and EDR/XDR platforms to investigate alerts and support containment and remediation.
Ability to document investigations clearly maintain evidence and explain findings to technical and non-technical stakeholders.
Good understanding of common attacker techniques phishing account compromise malware vulnerabilities and cloud security risks.
Ability to prioritise effectively and collaborate across operational teams.
A careful curious and evidence-led approach with strong attention to detail and sound judgement.
Willingness to participate in the paid out-of-hours on-call rota.
Desirable skills and experience
Threat hunting detection-rule development alert tuning malware analysis or digital forensics experience.
Knowledge of vulnerability and exposure management penetration-testing remediation and security-control assurance.
Knowledge of ISO 27001/27002 Cyber Essentials Plus MITRE ATT&CK or comparable security frameworks.
Relevant certification or equivalent practical knowledge such as CompTIA CySA Cybersecurity degree Microsoft Security Operations Analyst or Security Blue Team qualifications.
Essential requirements
Candidates must have resided in the UK for a minimum of five years in order to obtain the security clearance level needed for this role. Candidates who do not meet this requirement cannot be considered
We know the skill-gap and somewhat need to tick every box can get in the way of meeting brilliant candidates so please dont hesitate to apply wed love to hear from you.
Apply today by completing our online application
Please be aware that some of our UK roles at PA Consulting require a UK security clearance.
All PA people are required to undergo background checks and to achieve the Baseline Personnel Security Standard however some UK roles also require higher levels of National Security Vetting where applicants must have at least 5 years of continuous residency in the UK.
We therefore ask that you only apply if you meet the residency requirements (i.e. you are a British citizen or have been resident in the UK for the past 5 years) as this is the prerequisite for a security clearance. If youre unsure about your eligibility we encourage you to review the UK Governments guidance on security vetting before applying.
#LI - HM3
Additional Information :
Life At PA encompasses our peoples experience at PA. Its about how we enrich peoples working lives by giving them access to unique people and growth opportunities and purpose led meaningful work.
We believe diversity fuels ingenuity. Diversity of thought brings exciting perspectives; diversity of experience brings a wealth of knowledge and diversity of skills brings the tools we need. When we bring people together with diverse backgrounds identities and minds embracing that difference through an inclusive culture where our people thrive; we unleash the power of diversity bringing ingenuity to life.
Find out more about Life at PA here.
We are dedicated to supporting the physical emotional social and financial well-being of our people. Check out some of our extensive benefits:
- Health and lifestyle perks accompanying private healthcare for you and your family
- 25 days annual leave (plus a bonus half day on Christmas Eve) with the opportunity to buy 5 additional days
- Generous company pension scheme
- Opportunity to get involved with community and charity-based initiatives
- Annual performance-based bonus
- PA share ownership
- Tax efficient benefits (cycle to work give as you earn)
We recruit retain reward and develop our people based solely on their abilities and contributions and without reference to their age background disability genetic information parental or family status religion or belief race ethnicity nationality sex sexual orientation gender identity (or expression) political belief veteran status or any other range of human difference brought about by identity and experience. We are on a journey towards ensuring our workforce is diverse at all levels and that our firm is representative of the world around us. We welcome applications from underrepresented groups.
Adjustments or accommodations - Should you need any adjustments or accommodations to the recruitment process at either application or interview please contact us.
Remote Work :
No
Employment Type :
Full-time
About Company
WERE NOT A TRADITIONAL CONSULTING FIRM Our clients recognize that were different. We stand apart not just in what we do but even more so in how we do it. Our strategy work focuses on turning innovation into real-world outcomes. At the core of our business are our people a divers ... View more