Embedded Cyber Detection and Response Analyst at Control Risks | England, GB | Rezi

Embedded Cyber Detection and Response Analyst at Control Risks

Embedded Cyber Detection and Response Analyst

Control Risks · England, GB

1 months ago

Embedded Cyber Detection and Response Analyst

Control Risks · England, GB

a month ago
Resume preview

Impress employers and recruiters.
Choose from hundreds of resume examples.

Target Resume Now

About the Role

The Cyber Detection and Response Analyst supports day-to-day detection, investigation, and response activities as part of a Cyber Detection and Response Team (DART). This is a hands-on technical role focused on identifying, analysing, and responding to cyber threats across the client’s environment, working closely with Security Engineering and broader security stakeholders.

Responsibilities

  • Monitor, triage, and investigate security alerts and events across endpoint, network, cloud, and identity systems.
  • Support incident response activities including analysis, containment, remediation, and documentation.
  • Execute established incident response playbooks and contribute to their continuous improvement.
  • Perform threat hunting activities to identify potential compromises and gaps in detection coverage.
  • Leverage threat intelligence to inform investigations and detection tuning.
  • Collaborate with Security Engineering to tune detection logic and improve security controls.
  • Produce clear, concise incident reports and support root cause analysis and remediation efforts.
  • Support on-call rotations and escalation processes as part of a 24/7 detection and response capability.

Requirements

  • 3–5 years of experience in cybersecurity, with a focus on incident response, SOC operations, or cyber defense.
  • Hands-on experience with SIEM, EDR/XDR, and log analysis tools (e.g., Splunk, Sentinel, CrowdStrike).
  • Practical understanding of incident response methodologies and frameworks such as MITRE ATT&CK and NIST.
  • Familiarity with threat hunting, malware analysis, or forensic investigation techniques.
  • Exposure to cloud environments (AWS, Azure, or GCP) and modern enterprise architectures is preferred.
  • Strong analytical and problem-solving skills, with the ability to communicate technical findings clearly.
  • Relevant certifications (e.g., Security+, GCIH, GCIA, or equivalent) are a plus.

Skills

  • SIEM
  • EDR/XDR
  • Log analysis
  • Splunk
  • Sentinel
  • CrowdStrike
  • Incident response methodologies
  • MITRE ATT&CK
  • NIST
  • Threat hunting
  • Malware analysis
  • Forensic investigation
  • Cloud environments (AWS, Azure, GCP)
  • Analytical skills
  • Problem-solving skills
  • Communication skills

Location

  • Remote

Work Type

  • Full-time
  • 24/7 shift work

Experience Level

  • 3-5 years