
Cyber Security Specialist L1
- London
- Permanent
- Full-time
- Provide first level support for security incidents and requests by monitoring alerts, owning and managing security incidents through to resolution, and resolving security requests
- Monitor network and system alerts, and own and manage network and system tickets through to warm handoff to an Operations/DevOps team member
- Adhere at all times to separation of duties between your role as a member of the security team that monitors the activities of privileged users, and privileged network and Operations/DevOps team members that use their privileges to resolve incidents and fulfill requests in the production environment
- Provide quality customer service, including interacting with Global Relay employees, answering internal Global Relay inquiries, and escalating as necessary
- Register and classify received incidents and service requests
- Undertake an immediate effort to address security issues in a timely fashion
- Undertake an immediate effort to escalate network and system issues in a timely fashion
- Analyze security events, incidents, and problems to provide recommendations on action
- Update staff and clients on the status of incidents and service requests at agreed intervals
- Escalate incidents and service requests to appropriate resources
- Execute time-sensitive operational tasks as defined in a task list
- Create scheduled and ad-hoc reports using identified tools such as MS Office and specialized applications
- Train new hires
- Perform other security related system administration duties as needed
- Knowledge of internet and network technologies; specifically TCP/IP, UDP, SMTP, HTTP, HTTPS, FTP, SFTP and FTPS; other Internet and network technologies are an asset
- Strong understanding of and exposure to security tools such as firewalls, IDS/IPS, anti-virus, anti-spam, and server and network device hardening
- Ability to write and modify scripts and/or program in various languages, such as Python and PowerShell
- Working knowledge of security incident and event management systems such as Splunk
- Proven competence with using MS Office and other desktop applications
- Previous experience in maintaining and troubleshooting day-to-day operational processes, such as report generation, data verification and data correlation
- Excellent verbal and written communication skills
- Superior attention to detail and follow-up
- Ability to follow processes, multi-task, and excel in a fast-paced environment
- A passion for customer satisfaction and responsiveness
- Methodical and creative approach to problem-solving
- Recognized security industry certifications, such as CompTIA Security+