Endpoint Cyber Operations Analyst
Location: this role can be 100% remote, we have office locations in Bristol, Farnborough, Glasgow, London, and Whiteley, Hampshire
Looking for an opportunity to make an impact?..
Role Overview:
The Leidos Cybersecurity Capabilities Organisation has an immediate opening for a motivated Endpoint Cyber Analyst to join the Endpoint Cybersecurity Operations team. This position can be supported from our Whiteley, Hampshire office, or remotely for the right candidate.
You will join a team of other endpoint cybersecurity analysts in providing day to day operational support across a range of Leidos managed enterprise endpoint security solutions. This role focuses on learning to support & maintain industry leading cyber security products while gaining experience defending a Fortune 500 organisation.
Working closely with the Endpoint Cybersecurity Engineering team, you will be expected to "think like an adversary" and provide analyst-centric input into every phase in the Cyber Defence development process from an endpoint security perspective.
Additionally, you will provide written documentation in support of the Endpoint Cybersecurity Operations standard operating procedures (SOPs) and contribute to the technical innovation that will evolve Leidos' defensive capabilities and methodologies.
Duties and Responsibilities:
- Daily ticket queue management
- Operational support & maintenance for endpoint security solutions (e.g., Anti-Virus, Host Firewall, Forensics based tools, Privilege management, application allowlisting, EDR)
- Rotational on-call responsibilities (minimal for the UK)
- Technical control implementation & enforcement based on inputs received by the Leidos Cybersecurity Intelligence & Response Center (CSIRC), Endpoint Cybersecurity Engineering team, and other internal organizations, leaders, stakeholders where applicable
- Support change management tasking relative to the security policies associated with the endpoint security solutions that you support
- Work closely with your team lead\manager to ensure tasks are executed on time
- Ensure documentation relative to the supported endpoint security products, procedures, services, etc., are written and centrally accessible.
- Create and monitor reporting for compliance
- Provide assistance in troubleshooting complex problems across the endpoint security solutions
- Provide inputs back to the Endpoint Cybersecurity Engineering team with the goal of identifying and remediating existing gaps in vendor solutions and platform technologies
- Collaborate using information and knowledge sharing networks and professional relationships to achieve common goals
- Take direction & guidance from the endpoint cybersecurity engineering team (and others) and perform other tasks as assigned
- Lead inter-departmental meetings with other teams within Leidos to coordinate security solutions and updates
Skills Required:
- Ability to write and verbally communicate information security and risk-related concepts effectively to both technical and non-technical audiences.
- Strong problem-solving and analytical skills and demonstrate poise and ability to act calmly and competently in high-pressure, high-stress situations.
- Fundamental understanding of accepted security practices, troubleshooting issues, attack vectors, and customer support.
- Understanding of Operating Systems and Network Protocols.
- Foundational understanding of advanced threat detection in an enterprise environment.
- Foundational understanding of malware families, their types, and the threat they pose
- UK Citizenship is required.
Skills Desired:
- BSc in Computer Science, Computer Engineering, Information technology, or other Cyber Security field from an accredited university. Additional years of relevant experience or technology certifications may be considered in lieu of degree. This should include 2-4 years of endpoint security experience.
- Experience operating, troubleshooting, and maintaining endpoint security solutions (e.g., Anti-Virus, Host Firewall, Forensics based tools, Privilege management, application allowlisting, EDR, cloud-based solutions).
- Knowledgeable of forensic procedures and practices including imaging and memory analytics. Specifically, the design, maintenance, and documentation of enterprise forensic capabilities. (Popular commercial products include: EnCase, FTK, and others)
hackajob is partnering with Leidos to fill this position. Create a profile to be automatically considered for this role—and others that match your experience.