← back to jobs
> job detail
K
👽Other

Cyber Security Analyst

Ksc · Quintrell Downs, Cornwall, Newquay, Cornwall, UK
// classified as
Other (Adjacent or hard to classify.)
posted
1d ago
location
Quintrell Downs, Cornwall, Newquay, Cornwall, UK
languages
tools
> description
Overview of the role
This role is broadly responsible for key functions and activities supporting and improving the day-to-day security posture of the King’s College London IT environment, based out of the King’s Service Centre (KSC) in Cornwall. 

The role will support the Cyber Security team and wider service more generally, with a specific focus toward security investigations, forensics and vulnerability management, with other daily activities as laid out in the following descriptions.

Some travel may be required for meetings and training (predominately between KSC and university campuses in London).

Accountabilities & Responsibilities
You will be responsible for:
  • Queue Management – day-to-day management of the security incident/service request queue in alignment with SLA, identifying recurring issues, inefficiencies and opportunities for process improvement.
  • Security Incident Response & Digital Investigations – Providing timely analyst services to aid the technical investigation of security incidents. Establishing root causes, patterns and solutions for re-securing systems and networks.
  • Threat Hunting & Protective Monitoring - Assisting with investigating alerts generated by security systems and raising incidents based on indicators of compromise. Supporting the optimisation of monitoring and alerting capabilities through identification of false positives, gaps in visibility and opportunities for enhanced detection.
  • Vulnerability Assessment & Management – assist with and follow KSC vulnerability management processes. Regularly reporting upon and formally identifying key vulnerabilities, advising colleagues as necessary on remediation activities. Keeping proactively up to date with current & emerging threats and exploits which may impact on the KCL environment.
  • Continuous Technical Improvement – assisting with ongoing development of King’s technical protection investments including but not limited IPS/IDS, firewalls and end user protections.
  • Operational Improvement & Security Engineering Support – Participating in security operational activities including monitoring, incident response and on-call duties to identify opportunities for improvements in processes, detections, automation and security controls. Working with colleagues across Cyber Operations, Development and Governance, Risk and Compliance to support security enhancements, control effectiveness and compliance objectives.
  • Availability to cover security on-call as required.
  • Undertake such other duties within the scope of the post as may, from time to time, be assigned by the Cyber Security Operations or Cyber Security Development manager to ensure the Confidentiality, Integrity, Availability and more general effective operational running of the KCL environment.