About this role
Salary: £45,000 - 73,000 per year
Requirements: At least 1 years experience in a security operations or similar technical security role.Operational-level experience in at least two of the following domains: Security engineering, alert triaging, rule writing, incident response, Digital Forensics and Incident Response (DFIR), threat intelligence and management, vulnerability management, or security control testing.In-depth understanding of networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP).Experience with cyber defence technologies and tooling, including SIEM solutions, intrusion detection/prevention systems (ID/PS), threat and vulnerability management platforms, endpoint protection, and firewalls.Highly analytical mindset with strong problem-solving skills.Ability to interpret data flows, assess security events, and draw logical conclusions.Excellent written and verbal communication skills.Ability to collaborate effectively across technical and non-technical teams.High level of personal integrity and ethics, demonstrating an appropriate level of judgement.Genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field.Bachelors degree in Information Security, Computer Science, Engineering, Technology, or a related field.Industry-recognised certifications such as CISSP, CEH, CISM, or CompTIA Security.Practical programming or scripting experience, particularly with Python or PowerShell. Responsibilities: Investigate and prioritise Level 2 escalated events and alerts detected through Level 1 monitoring activities by our MSSP to identify potential incidents.Escalate events to senior colleagues and appropriate stakeholders when necessary.Investigate potential cyber security and data loss incidents raised by our employees and third parties, following the defined playbooks for our Cyber Defence team.Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required.Participate in incident response activities, including CSIRT activities, for confirmed incidents in our local time-zone.Conduct initial triage and investigation.Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately.Participate in security incident response exercises and contribute to post-exercise reviews.Be part of our Cyber Defence on-call rota, which may require out-of-hours work.Pick up and hand off incident response activities with the rest of our Belfast Cyber Defence team and other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model.Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from our Threat and Vulnerability Management team, applying this knowledge in daily operations.Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of our Cyber Defence function.Contribute to the maintenance and improvement of playbook and process documentation for our Cyber Defence.Collaborate with other areas of our firm, including wider information security and IT teams, to improve our security posture by implementing controls and fostering awareness.Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. Technologies: PowerShellPythonRESTSecurityTCP/IP More:
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team based in our Belfast office. Our role sits within a 24-7 follow-the-sun global model and includes collaboration with teams across different time zones. We encourage continuous learning and development in cybersecurity, and we are looking for someone who can help strengthen our security posture while supporting tooling, process improvement, incident response, and stakeholder awareness.
last updated 37 week of 2026