J

Senior Cyber Security Incident Response Analyst (CSIRT) - Security Operations Centre (SOC)

jisc United Kingdom
Visa Sponsorship
Apply
AI Summary

Lead and coordinate cyber security incident response for Jisc’s Security Operations Centre (SOC), protecting the UK’s education and research infrastructure from evolving threats. Escalate incidents, enhance detection capabilities, and shape incident response processes while deputizing for the CSIRT Lead. Requires deep expertise in cyber security incident response, modern IT environments, and threat intelligence-led operations.

Key Highlights
Lead and coordinate cyber security incident response for Jisc’s SOC, protecting the UK’s education and research infrastructure
Deputize for the CSIRT Lead, ensuring effective operational delivery and incident management
Work in a threat intelligence-led environment, handling complex incidents like malware, phishing, DDoS, and network intrusions
Key Responsibilities
Lead and coordinate responses to cyber security incidents, including malware outbreaks, phishing attacks, DDoS campaigns, and network intrusions
Support complex incident investigations and enhance detection capabilities within Jisc’s SOC
Deputize for the CSIRT Lead to ensure effective operational delivery and incident management
Shape and evolve incident response processes and technologies to stay ahead of emerging cyber threats
Work collaboratively with a team of cyber security professionals to protect the UK’s education and research infrastructure
Technical Skills Required
Cyber Security Incident Response Security Operations Centre (SOC) Network Security Principles
Benefits & Perks
Circa £47,000 per annum (negotiable based on experience)
Comprehensive benefits package including 31 days annual leave (plus bank holidays), flexible pension schemes, and health care cash plan
Hybrid working with office hubs in London, Bristol, Manchester, and Oxford

Job Description


Job Title: Senior Security Analyst

Jisc grade: TCY3

Salary: Circa £47,000 per annum (negotiable based on experience) + comprehensive benefits package

Job Type: Permanent

Hours: Extended working period: 08:00 to 18:00 (35 hours per week), working an alternating weekly shift pattern of 08:00 to 16:00 and 10:00 to 18:00.

Reports into: Lead cyber security incident investigator (CSIRT)

Working style: Hybrid - A blend of working from home and your nominated hub office. We have hubs located in London, Bristol, Manchester and Oxford. For this role you may only have to attend an office once a quarter for meetings.


About Jisc:

At Jisc, we're driven by a simple ambition: to use technology to transform education, research and innovation.

For more than 30 years, we've been the digital partner for the UK's education and research sectors, providing world-class networks, innovative digital services and expert guidance that help universities, colleges and research institutions thrive.

Our work supports millions of learners, educators and researchers every day, enabling everything from groundbreaking discoveries and life-changing research to exceptional digital learning experiences. While many people may not realise it, the technology and services we provide help power some of the UK's most important educational and research achievements.

Join Jisc and you'll be part of a purpose-driven organisation where your ideas can have a real impact. Together, we're shaping the future of learning, research and innovation for the benefit of society.


About the Team

Join the team protecting the UK's world-leading education and research sector from an ever-evolving cyber threat landscape.

Jisc's Security Operations Centre (SOC) plays a critical role in safeguarding the Janet Network, the UK's National Research and Education Network, which connects more than 20 million users across universities, colleges and research organisations. Combining cutting-edge security technologies, threat intelligence and specialist expertise, we provide 24/7 protection, rapid incident response and advanced threat detection to help our members stay secure and resilient.

Our Security Centre brings together Cyber Security Incident Response (CSIRT), Digital Forensics and Incident Response (DFIR), SIEM Analysts and Network Defensive Services specialists. Working at the forefront of cyber defence, we identify and respond to threats, support organisations through cyber incidents, conduct threat hunting activities and continuously evolve our capabilities to stay ahead of emerging risks.

This is an opportunity to work alongside highly skilled security professionals and make a real impact on the organisations that drive education, innovation and research across the UK.


About the Role

We're looking for an experienced Cyber Security professional to join our CSIRT team as a senior escalation point and key contributor to the operation and development of Jisc's Security Operations Centre.

In this role, you'll play a pivotal part in protecting both Jisc and our members from cyber threats. You'll lead and coordinate responses to security incidents, support complex investigations, enhance detection capabilities and help shape the future of our incident response processes and technologies.

Working within a threat intelligence-led environment, you'll tackle a wide variety of cyber security challenges, from malware outbreaks and phishing attacks to DDoS campaigns and sophisticated network intrusions. You'll also deputise for the CSIRT Lead when required, helping to ensure effective operational delivery and incident management.


What we are looking for

Essential Experience

  • Strong understanding of modern IT environments and infrastructure, including Microsoft technologies (Azure and Active Directory), virtualisation platforms, backup technologies and cloud services.
  • Experience in cyber security incident response and managing security incidents throughout the lifecycle.
  • Previous experience acting as a technical escalation point or senior member of a security or operational team.
  • Experience working within a Security Operations Centre (SOC), CSIRT or similar cyber security environment.


Essential Skills

  • Working knowledge of network security principles and internet protocols, including TCP/IP.
  • Strong understanding of security risks and threats within complex networked environments.
  • Systems administration experience and strong knowledge of at least one operating system.
  • Ability to remain calm, analytical and decisive during high-pressure incidents.
  • Strong customer service and stakeholder management skills.
  • Excellent communication skills, with the ability to translate complex technical issues into clear, actionable advice.
  • Strong prioritisation, organisation and teamwork skills.
  • Pragmatic and methodical approach to incident investigation and response.


Qualifications

  • Degree in Computer Security or a related discipline, or
  • Equivalent practical experience gained within a systems administration, network operations or IT operational environment.


This role offers the opportunity to contribute to the security and resilience of the UK's critical education and research infrastructure while working with industry-leading technologies and security experts.


Don’t meet every single requirement?

We know that sometimes people can be put off applying for a job if they think they can’t tick every box, so we encourage you to apply even if you do not meet 100% of the requirements, but if you feel this role is perfect for you. You may be just the right candidate for this or other roles!


Hybrid working:

Specific patterns for working in the office are not mandated, and the frequency of time worked in the office is agreed with your manager. Meeting in person is something we value, so you may need to travel on occasion to any of our hub offices.


Why work for us?

At Jisc, every role is meaningful, and every individual is valued. We foster a culture of continuous learning and personal growth, offering opportunities to develop new skills and make a real impact in education and research. With a strong focus on work-life balance, we embrace flexible working that prioritises outcomes over hours, empowering you to create a rhythm that energises both your professional and personal life.


Our Guiding Principles:

Jisc’s culture is powered by our four guiding principles: putting customers first, driving innovation, creating impact, and championing inclusive collaboration to deliver sustainable outcomes and shape a better future.


Discover the amazing benefits we provide! Here’s what you can look forward to:

  • Flexible work pattern, which can adapt to suit your schedules and personal commitments
  • 31 days annual leave (plus bank holidays) that includes three closure days over Christmas
  • Buy up to an additional 5 days leave during the flexible benefits window
  • Generous flexible pension schemes
  • A range of wellbeing lifestyle benefits including company paid health care cash plan, mental health first aiders and support
  • A company culture of continuous learning with access to thousands of LinkedIn Learning courses, and lots of resources and opportunities to support your development
  • Allocated allowance of up to £250 to equip your home office
  • Financial well-being support including access to preferential loan and savings plans, mortgage advice, will writing tools and support and resources to help you make the most of your money
  • A wide range of discounts and cashback from retailers and big-name high-street stores
  • Family friendly policies including enhanced parental, maternity and paternity and co-parental leave as well as opportunity for career breaks
  • Support your volunteering with up to 3 days volunteer leave


Equity, diversity and inclusion:

Jisc believe our people make all the difference in cultivating an inclusive culture that welcomes ideas, encourages innovation, and values belonging.

We work hard to create an equitable experience for our candidates and workforce which embraces all aspects of their identity including race and ethnicity, religion and belief, sex, gender identity, sexual orientation, trans identities, age, class, disability, neurodivergence, or veteran status.


Application process:

Please let us know how we can best accommodate you throughout the recruitment process. We’re committed to making our process accessible and comfortable for everyone - just tell us what works best for you.

Just so you know, we review CVs as soon as we can and aim to provide an update on your application within 4 weeks of receiving it. However, you may hear from us a lot sooner, so please keep an eye out for our emails or calls!

We’re really looking forward to getting to know the real you. While we encourage the use of AI tools to help you get started on your CV or cover letter, we encourage you to review your application before submitting. Make sure it truly reflects your own voice, experiences, and personality.

If you are currently a Jisc employee, please apply through your Dayforce Employee profile.


We have a thorough background screening process that verifies the details you share with us in your CV and your application. Any inaccurate information supplied during the application stages can lead to a job offer being withdrawn.


Sponsorship:

Jisc has an active sponsor licence to recruit on a Skilled worker visa basis. Candidates wishing to apply who require sponsorship should determine the likelihood of obtaining a Certificate of Sponsorship for the role by assessing their circumstances against the relevant Home Office criteria. Jisc does not offer any financial re-imbursement towards the applicant costs, such as re-location, skilled worker visa and dependant costs or the immigration health charge.


No agencies please.


Similar Jobs

Explore other opportunities that match your interests

Cyber Security Incident Investigator (Security Analyst) - SOC

Cyber Security
9h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

jisc

United Kingdom

Senior Cyber Security Lead (English Learning Technology)

Cyber Security
1d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

cambridge university press & a...

United Kingdom

Staff Software Security Engineer

Cyber Security
6d ago
Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

drift ai

United Kingdom

Subscribe our newsletter

New Things Will Always Update Regularly