We are working with a leading global law firm to recruit an Information Security Analyst. Reporting to the Information Security Operations Manager, you will be responsible for the day-to-day operation of security tools and controls, identifying, investigating, and resolving security events, and supporting the ongoing enhancement of the organisation’s security posture.
Working as part of a global team, you will stay informed on the evolving threat landscape and play a key role in detecting and mitigating risks.
Key Responsibilities
- Operate and maintain security controls and monitoring tools
- Investigate alerts and lead incident response and remediation activities
- Monitor security systems and analyse logs across endpoints, servers, and networks
- Support deployment, configuration, and improvement of security solutions
- Conduct vulnerability scans, audits, and risk assessments
- Contribute to security policies, standards, and system hardening practices
- Support red/blue team exercises and security testing activities
- Act as an escalation point for security-related issues
- Help automate and improve security processes and controls
Skills & Experience
- Hands-on experience in IT/security operations
- Strong analytical skills with solid cyber threat awareness
- Familiarity with attacker tactics and frameworks (e.g. MITRE ATT&CK)
- Experience with SIEM tools and incident response processes
- Knowledge of security technologies (e.g. EDR, IDS/IPS, WAF, SIEM, SOAR)
- Understanding of vulnerability management tools and practices
- Good networking knowledge (TCP/IP, firewalls, routing, OSI model)
- Experience with Windows, Linux, and Unix systems
- Exposure to cloud security, particularly Microsoft 365 and Azure
- Scripting or programming experience is advantageous
Desirable
- Knowledge of security frameworks (ISO 27001, NIST, CIS, OWASP, etc.)
- Experience with PKI/HSM or designing security solutions
- Relevant certifications (e.g. CISSP, CISM, CEH, CompTIA Security+, SC-200, AZ-500)
…
