More jobs:
Senior Attack Monitoring Analyst; GSOC
Job in
Greater London, London, Greater London, W1B, England, UK
Listed on 2026-05-28
Listing for:
London Stock Exchange
Full Time
position Listed on 2026-05-28
Job specializations:
-
IT/Tech
Cybersecurity, Network Security, Security Manager
Job Description & How to Apply Below
Location: Greater London
Requirements
- The ideal candidate will have a solid technical background, with a firm understanding of modern attack techniques coupled with knowledge of the typical lifecycle of an attack ,
- Preferred experience with operating or administrating a SIEM (e.g., Splunk/QRadar/Log Rhythm) ,
- Solid understanding of networks including the TCP/IP stack, typical organisation architectures, and common protocols abused by malware ,
- Experience in security event analysis & triage, incident handling and root-cause identification ,
- Understanding of tools, techniques and procedures that attackers use to compromise organisations, ideally from direct experience ,
- Knowledge of cyber security either academically or within corporate environments ,
- Ability to work in a fast-paced and demanding environment while remaining calm ,
- Strong verbal and written communication and collaboration skills ,
- Security industry specific and core technical accreditations such as OSCP, GIAC, CCNA ,
- Certification demonstrating SIEM operational competences ,
- Proficient with one or more programming languages (e.g., Python, Power Shell, Java, C#)
- The London Stock Exchange Group seeks an experienced, dedicated and driven Senior Attack Monitoring Analyst to join the Global Security Operations team! ,
- LSEGSecurity Operation sis a central function employingpeople, process and technology to continuously monitor and respond to cyber security incidents ,
- This role is for a Senior Attack Monitoring Analyst for the Global Security Operations Centre (GSOC). The role is responsible for identifying and responding to cyber security incidents and improving the defensive capabilities of the GSOC ,
- Triage security events and employ a methodical and coherent response to security incidents adopting playbooks where necessary ,
- Competently operate a chosen SIEM (e.g., Splunk/QRadar/Log Rhythm) for incident investigations, or for the development of monitoring dashboards ,
- Utilise playbooks, existing knowledge and accurate online resources for guidance when responding to incidents ,
- Utilise online resources for researching and collecting threat intelligence to improve the SOC’s abilities to detect cyber-attacks ,
- Develop new, or improve existing run books and use cases based on investigations and knowledge of modern attacks ,
- Stay up to date with current vulnerabilities, attacks, and countermeasures ,
- Identify, respond and remediate cyber events generated through monitoring technologies
Position Requirements
10+ Years
work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×