We are seeking a seasoned expert in cloud security to join our team as a Senior Analyst.
The ideal candidate will have a strong background in incident response and cloud security, with experience in managing large and complex solutions across cloud security and incident response.
This role is a key part of our Cyber Defence Operations team, working closely with all cyber teams, Cloud Enablement and Engineering, and Cloud Security Technology teams who manage the cloud environments.
The successful candidate will be responsible for reviewing and performing analysis on incident response engagements involving AWS and/or Azure data, assisting with uplifting the cloud cyber control hygiene, and helping with CDO's incident response process, vulnerability management, and penetration testing in the cloud.
As a Senior Analyst specialising in Incident Response Cloud and Emerging Security, your expertise will be pivotal in guiding solutions, services, and project initiatives within AWS and Azure environments.
* You will act as the technical cloud security SME and escalation path, drawing on your expertise in one or more of the following domains: incident response in AWS or Azure environments, cloud security control effectiveness, host analysis, network forensics, malware analysis, threat intelligence, and system administration.
* You will use cyber security tools to gather information and perform investigations within the Group's public cloud environment.
* You will determine best practice approaches for monitoring, undertaking incident response, and managing cyber control hygiene in the cloud.
* You will document appropriate ways to detect, prevent, and isolate suspicious activity in the cloud.
* You will assist the CDO team with any incident response and remediation activities related to cloud workloads.
* You will review security controls in affected cloud environment(s) to identify gaps and provide input into post-incident reporting.
* You will assist the CEE team with ongoing reviews/uplift of the security posture in the public cloud environment.
* You will research and evaluate emerging security technologies and trends, recommending implementations to enhance our security posture.