This is a remote role, working alternate weekly shifts of 07:00 – 15:00 and 11:00 – 19:00, Monday to Friday. Key Responsibilities
Utilise a Security Information and Event Monitor (SIEM) application (Exabeam) to provide Incident Response services for Voyage Care; investigating potential security incidents, determining their severity, and implementing responses to mitigate threats. Monitor security events from user endpoints (Windows 10 and Windows 11), Windows Servers, Windows Defender, networks, firewalls, IPS/IDS, and Azure cloud systems, system logs and other services. Analyse and triage security events to identify potential threats and vulnerabilities. Actively participate in Root Cause Analysis (RCA) of security incidents and events. Collaborate with colleagues to assist with remediation efforts following security incidents. Identify security weaknesses to continuously improve Voyage Care’s security posture. Report findings and provide recommendations to the Network and Security Team Lead. Maintain up-to-date knowledge of emerging threats, vulnerabilities, and security technologies. Develop and maintain security documentation, including incident reports and RCA documentation. Qualifications and Experience
Degree in Computer Science, Information Security, or related field, or equivalent work experience. Proven experience in a security operations or similar role. Strong understanding of security principles, cybersecurity technologies, and best practices. Experience with a broad set of cyber security monitoring tools and technologies. Understanding network protocols, firewalls, VPNs, intrusion detection/prevention systems, authentication and authorisation protocols. Develop and write scripts and code to assist and remediate security incidents and threats (Python, PowerShell, etc.). Excellent analytical and problem-solving skills. Strong communication skills, both written and verbal. Ability to work collaboratively in a team environment. Current Security qualifications or other relevant certifications are a plus. A willingness to continuously learn and understand about new cyber security threats and how they can be mitigated and overcome.
#J-18808-Ljbffr