Threat Detection Analyst

BAE Systems

Threat Detection Analyst

£45000

BAE Systems, Higher Penwortham, South Ribble

  • Full time
  • Permanent
  • Onsite working

Posted 2 weeks ago, 6 Jul | Get your application in now before you miss out!

Closing date: Closing date not specified

job Ref: a131f217269549f79dddde36f37af428

Full Job Description

Location: Preston. We offer a range of hybrid and flexible working arrangements - please speak to your recruiter about the options for this particular role.
Salary: Up to 45,000 depending on experience and skills
What you'll be doing:
+ Triage, analyse and investigate alerts, log data and network traffic using the monitoring platforms and Internet resources to identify cyber and insider incidents
+ Escalate suspected major security incidents / complex investigations where support is required
+ Build, test, and deploy new detection capabilities across the environment in line with threat intelligence
+ Ensure services are operated in line with agreed service definitions and measures
+ Contribute to the development of the services through process, people and technology where appropriate
+ Engage in threat hunting across adversary behaviours for those threats not easily detected by existing use case

+ Broad and detailed experience of technologies including but not limited to firewalls, IDS/IPS, Active Directory, endpoint protection, Windows Server, Linux, TCP/IP, Networks, Cloud, CDN's and Vulnerability Management
+ A good technical and analytical background with a detailed knowledge of cyber security, computer networks and operating systems
+ Knowledge and experience of using tools to dissect common threats to produce useable IOCs. E.g., Malicious document analysis
+ Detailed knowledge of the current threat landscape, the TTPs frequently employed in those attacks and how we can investigate and mitigate these
Desirable:
+ Background of prior experience of working in an information and/or cyber operations (Government or commercial sector) environments
+ Previous experience using Splunk or other SIEM platforms
+ Development experience or scripting languages

You'll receive benefits including a competitive pension scheme, enhanced annual leave allowance and a Company contributed Share Incentive Plan. You'll also have access to additional benefits such as flexible working, an employee assistance programme, Cycle2work and employee discounts - you may also be eligible for an annual incentive.
The Cyber Operations team:
The Cyber Operations Team is responsible for protecting BAE Systems from Cyber Attack by various threat actors. Not only do we protect BAE systems and its employees, indirectly we protect those who protect us - who serve in our military and rely on the products and services we create.
Why BAE Systems?
This is a place where you'll be able to make a real difference. You'll be part of an inclusive culture that values diversity, rewards integrity, and merit, and where you'll be empowered to fulfil your potential. We welcome candidates from all backgrounds and particularly from sections of the community who are currently underrepresented within our industry, including women, ethnic minorities, people with disabilities and LGBTQ+ individuals.
We also want to make sure that our recruitment processes are as inclusive as possible. If you have a disability or health condition (for example dyslexia, autism, an anxiety disorder etc.) that may affect your performance in certain assessment types, please speak to your recruiter about potential reasonable adjustments.
Please be aware that many roles working for BAE Systems will be subject to both security and export control restrictions. These restrictions mean that factors including your nationality, any previous nationalities you have held, and your place of birth may limit those roles you can perform for the organisation.