Senior DFIR Analyst

Barclays · Knutsford, Radbroke Hall · United Kingdom

Senior DFIR Analyst senior · Technology / Software Development

Vista previa de la oferta

Senior DFIR Analyst

senior · Technology / Software Development

Job Description

Purpose of the role

To monitor the performance of operational controls, implement and manage security controls and consider lessons learnt in order to protect the bank from potential cyber-attacks and respond to threats. 

Accountabilities

Assistant Vice President Expectations

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.

Join us as a Senior DFIR (Digital Forensics and Incident Response) Analyst at Barclays, where you will play a critical role within the Security Operations Centre, protecting the organisation from cyber threats and security incidents. You will lead the investigation of complex cyber security events, applying digital forensic techniques to identify, contain, and remediate threats while helping to strengthen Barclays' overall cyber resilience.

Working alongside cyber security, infrastructure and technology teams, you will investigate a broad range of security incidents, including phishing attacks, malware infections, endpoint compromise and external cyber threats. You will collect and analyse forensic evidence, provide technical expertise during incident response activities and support continuous improvements to Barclays' detection and response capabilities.

To be successful as a Senior DFIR Analyst, you should have:
• Ability to apply digital forensic principles relating to evidence collection, preservation, and analysis.
• Working knowledge of Windows, Linux, and Mac operating systems, with the ability to interpret system-level artefacts and support complex forensic investigations
• Proven experience investigating and responding to cyber security incidents within large and complex enterprise environments including the ability to analyse logs, alerts, and artefacts from multiple security controls to determine the scope and impact of incidents

Some other highly valued skills may include:
• Experience using Endpoint Detection and Response (EDR) technologies and analysing endpoint-level security telemetry during incident investigations
• Knowledge of network analysis concepts, traffic analysis and common attack behaviours.
• Understanding of malware analysis concepts, cloud security principles and common cloud logging sources to support investigations across hybrid enterprise environments

Encuentra más ofertas como esta

Explora más ofertas activas de esta empresa o crea una cuenta en Insider Jobs para buscar, guardar y seguir oportunidades en todo el job board.