Company

London Stock Exchange GroupSee more

addressAddressLondon, Greater London
CategoryConsulting

Job description

Role Purpose

The Senior Incident Response role is part of a global Incident Response team that sits within the Global Security Operations Centre (GSOC). The role is responsible for identifying and responding to cyber security incidents and enhancing the defensive capabilities of the GSOC.

LSEG GSOC  is a central function employing people, process and technology to continuously monitor and respond to cyber security incidents. Security Operations spans multiple domains including cyber threat intelligence, cyber threat detection, data loss prevention and cyber incident response. 

Key responsibilities

  • Serve as a focal technical lead on cyber security events and incidents.
  • Provide technical, hands-on incident investigation and support and serve as a main point of contact with management.
  • Conduct complex digital forensics and advanced malware analysis investigations.
  • Facilitate, document and manage root cause analysis and post-incident review process, including tracking all action items and lessons learned through to implementation.
  • Preserve, harvest, and analyse data from computer systems including desktops, servers (virtual/physical) and appliances.
  • Handle the chain of custody for all evidence collected during incidents, security, and forensic investigations.
  • Build and improve defensive capabilities using monitoring technologies including SIEM and EDR.
  • Perform proactive threat hunting and threat modelling to identify cyber threats.
  • Coach and mentor Incident Responders in the steps to take to investigate and resolve computer security incidents.

Impact

This role has impact across all parts of the business, as it is responsible for ensuring that cyber-attacks impacting LSEG are appropriately responded to. Impacts include financial, economic, regulatory, customer and brand.

The Global Security Operations Centre (GSOC) where this role sits has responsibility for defending the entire group against cyber-attacks, parts of which are defined by different nations governments as Critical National Infrastructure (CNI).

The role is key to addressing regulatory concerns for all our regulated entities related to cyber security and cyber resilience. 

Technical / job functional knowledge

  • Experience performing complex digital forensic and incident response investigations.
  • Deep knowledge of common operating systems (e.g. macOS, Windows, Unix, Linux) and their associated file systems.
  • Proficient with industry-standard incident response toolsets such as EnCase, X-Ways, FTK and Volatility.
  • Knowledge of cloud technologies and cloud infrastructures such as AWS, GCP, Azure, O365.
  • Experience with conducting log analysis across different components of a typical organisation estate (e.g. OS, network, cloud).
  • Deep understanding of advanced cyber adversary tools, techniques and procedures.
  • Good understanding of Security Operations Centre (SOC) practices, processes and procedures.
  • Good understanding of incident response processes and procedures, including common frameworks (e.g. NIST, SANS).
  • Automating and refining incident response procedures/playbooks to improve SOC efficiencies.
  • Policies, standards and security frameworks, NIST, CIS.

Business and sector expertise

Must have extensive experience of working in incident response such as within SOCs, digital forensics, or equivalent roles.

Preferred experience and knowledge of cyber security in global financial services and/or regulated environments.

LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.

Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.

Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity.

LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.

We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.

Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it’s used for, and how it’s obtained, your rights and how to contact us as a data subject.

If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.

Benefits

Career development, Health care, Team events
Refer code: 3460501. London Stock Exchange Group - The previous day - 2024-06-28 11:30

London Stock Exchange Group

London, Greater London

Share jobs with friends

Related jobs

Senior Incident Responder (Gsoc)

Incident Responder - International travel

Bae Systems Applied Intelligence

Full-time

London, England

3 months ago - seen

Incident Responder - International travel

Bae Systems

London, Greater London

3 months ago - seen

Incident Responder - International travel

Bae Systems Digital Intelligence

Competitive

London, Greater London

3 months ago - seen

Incident Responder - International travel

Bae Systems Digital Intelligence

Competitive

London, Greater London

3 months ago - seen

Incident Responder – International travel

Bae Systems

London, England

3 months ago - seen