Operational Security Team (OST) Analyst
As an Operational Security Team (OST) Analyst, you will support the Delivery Assurance Team in delivering an efficient and effective service to a defined set of clients. You will play an important role in monitoring and triaging alerts linked to host and network security events across critical infrastructure, helping to protect key systems and data.
You’ll be joining a team that values collaboration, continuous improvement and knowledge sharing. In return, you’ll have the opportunity to develop your technical skills, contribute new ideas, and grow your career within a supportive and diverse environment.
What you'll be doing:
- Monitor, analyse and triage security alerts and events, conducting initial investigations and determining appropriate responses.
- Escalate complex incidents to senior analysts for further analysis and resolution.
- Manage incident queues to ensure timely and effective responses to security events.
- Support the maintenance of monitored asset baselines across customer environments.
- Assist in improving detection rules and use cases in line with threat-informed defence approaches.
- Contribute to reporting, documentation and continuous improvement of security processes and procedures.
What you’ll bring:
- Previous experience in IT service desks or similar support roles.
- Entry level cyber security certification such as CompTIA Security+ or similar.
- Academic background in cyber security or a related discipline.
- Knowledge of security frameworks such as Mitre Att&ck.
- Exposure to security tools including SIEM technologies and vulnerability scanning tools.
It would be great if you had:
- Basic knowledge of client-server applications, relational databases, firewalls, VPNs, and enterprise AntiVirus products.
- Basic understanding of networking principles including TCP/IP, WANs, LANs, and commonly used Internet protocols such as SMTP, HTTP, FTP, POP, LDAP
- Entry level cyber security certification (e.g. CompTIA Security+, CREST Practitioner Intrusion Analyst/Blue Teams Level 1 or other SOC related certifications.
- Programming and scripting such as Python, PowerShell, - CompTIA Security+ or CYSA+
- Some experience with SIEM technologies
- Vulnerability scanning experience with tools such as Nessus, Nmap or OpenVas
If you’re interested in this role but not sure if your skills and experience are exactly what we’re looking for, please do apply, we’d love to hear from you!
Employment Type: Full-time, Permanent.
Location: On site - Gloucestershire, Manchester or London
Security Clearance Level: DV.
Internal Recruiter: Rebecca.
Salary: £27,000 - £35,000.
Benefits: 25 days annual leave with the choice to buy additional days, health
cash plan, life assurance, and pension.
Although this role is advertised as full-time, we believe that flexibility at work can promote work/life balance, increase your motivation, reduce stress and improves performance and productivity. We support different ways of working and can offer a range of flexible working arrangements. So, if you’re interested and need to work flexibly, we encourage you to apply and talk to us about what might be possible.
Loved reading about this job and want to know more about us?
Sopra Steria’s Aerospace, Defence and Security business designs, develops and deploys digital solutions to Central Government clients. The work we do makes a real difference to the client’s goal of National Security, and we operate in a unique and privileged environment. We are given time for professional development activities, and we coach and mentor our colleagues, sharing knowledge and learning from each other. We foster a culture in which employees feel valued and supported and have pride in their work for the customer, delivering outstanding rates of customer satisfaction in the UK’s most complex safety- and security-critical markets.