Cyber Security Analyst – Threat Intelligence SME, Hybrid, 740 per day
london
Posted 1 week ago
About the role
Cyber Security Analyst – Threat Intelligence SME12 monthsHybrid – London740 per day, Inside IR35Proven Cyber Security Analyst – Threat Intelligence SME required for our large Government Department. Will conduct safe, simulated cyber-attack simulations against our technology estates, acting as a real-world adversary might, to test our defences, highlight weaknesses and contribute cyber security expertise and insight in support of the department’s strategic security decision-making functions.Key ResponsibilitiesDesigning and executing threat intelligence-based full-spectrum cyber-attack simulations, including long-term campaign planning, persistence, and post-exploitation operations against the organisation.Adopting a red team approach, discovering high-impact weaknesses across the organisation’s most important technology estates and business areas, and validating whether the overarching cyber security apparatus is working effectively.Communicating technical findings in clear risk and impact-focused terms to senior stakeholders, enabling effective understanding and support for strategic decision-making.Development and implementation of tools and methodologies to augment and to automate team offensive and analytical capability.Mentoring junior Red Team members to improve their skills and capabilities, along with wider knowledge transfer to other security and non-security teams to help build a culture of cyber security in the department.EssentialProven ability to plan and execute complex, multi-phase operations.Scenario-driven adversary simulationThreat intelligence analysis and assessmentExploitation of a wide range of technologies, including infrastructure, web application and cloud platforms: Microsoft Entra, Active Directory, M365, macOS. Kubernetes, CI/CD, AWS, Azure.Post-exploitation, persistence and lateral movement, including tactical analysis of attack paths leading to high-value targetsConducting engagement activities in line with operational security best practice and within a range of threat actor capabilities and tradecraftDeep understanding of security technologies found in end-user and server operating systems and supporting infrastructure, including relevant architectural and operational patterns of at-scale deployment and administration of complex legacy and modern enterprise environments.Experience using, developing and deploying tools in support of red teaming activities, including attack infrastructure, C2 frameworks and infrastructure-as-code technologies.Strong communication skills with the ability to clearly explain complex technical issues related to vulnerabilities and risk to diverse audiences, including senior stakeholders, in support of vulnerability management, threat mitigation, and risk-based decision-making.Participation in GCASE / GBEST / CBEST / TIBER engagements.Minorities, women, LGBTQ+ candidates, and individuals with disabilities are encouraged to apply.Interviews will take place this and next week, so please apply immediately or call Bangura Solutions to discuss this contract opportunity further
About this listing
Screened by Joboru
This role passed our automated spam and quality filters and was active in our feed when last checked. Joboru is an aggregator — here is how we screen listings. If anything looks off, tell us.
Similar jobs you may like
It Support Engineer
1 day agoFraser & Co. Talent Partners Limited
SC Cleared Senior ServiceNow Technical Consultant (STC)
1 day agoHays Technology
2nd Line Support Engineer
1 day agoThird Nexus Group Limited
AI Evaluation Engineer
1 day agoSmartSourcing Ltd
Senior Dynamics 365 Business Central Functional Consultant
1 day agoCPS Group (UK) Limited
Atlassian Consultant (SC Cleared)
1 day agoCPS Group (UK) Limited
Data Cabling Engineer / Lead Engineer – London & South East
1 day agoIntegra South Ltd
Junior Software & Systems Developer
1 day agoReed Technology
SC Cleared ServiceNow Technical Consultant
1 day agoHays Technology