This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Embark on a transformative journey as a Senior Cyber Operations Analyst - AVP. At Barclays, our vision is clear –to redefine the future of banking and help craft innovative solutions. In this role, you will provide 24x7 cybersecurity monitoring, analysis, and incident response for global enterprises. Your responsibilities include event triage, escalation, remediation support, threat detection, reporting, intelligence review, policy implementation, data loss prevention, and generating insights to reduce risk and enhance security operations.
Job Responsibility:
Provide 24x7 cybersecurity monitoring, analysis, and incident response for global enterprises
Management of security monitoring systems, including intrusive prevention and detection systems, to alert, detect and block potential cyber security incidents, and provide a prompt response to restore normal operations with minimised system damage
Identification of emerging cyber security threats, attack techniques and technologies to detect/prevent incidents, and collaborate with networks and conferences to gain industry knowledge and expertise
Management and analysis of security information and event management systems to collect, correlate and analyse security logs, events and alerts/potential threats
Triage of data loss prevention alerts to identify and prevent sensitive data for being exfiltrated from the banks network
Management of cyber security incidents including remediation & driving to closure
Requirements:
Proficiency in SIEM technologies and usability in large, complex computing environments
Experience analyzing and responding to detected security incidents, including timely escalation and resolution
Incident response expertise, including proficiency in Phishing emails, network analysis, and understanding traffic patterns
Experience identifying malware and attacks (e.g., Trojans, ransomware) through analysis of event data from proxies, endpoints, IDS, MPS, and network devices
Knowledge of the Cyber Kill Chain, intelligence-driven defense strategies, and security architecture
Nice to have:
Proficiency of operating system fundamentals and OS security (Windows & Linux)
solid grasp of networking principles, protocols, and best practices
Familiarity with adversary tactics and techniques based on real-world observations from a blue-team perspective and knowledge of effective countermeasures to reduce risk
Understanding of cloud security principles across platforms such as AWS, Google Cloud, and Azure