We have been made aware of a number of scams where fraudsters are claiming to represent our organisation or organisations we work with. Please click here to find out more details and what to do if you are contacted.

menu

Accessibility tools

Senior Cyber Incident Responder

Remote

  1. Full time

About the job

"

This vacancy has now expired. Please see similar roles below...

"

About the role

The Senior Incident Responder role will sit within our Cyber Defence Department. It is a hands-on technical role which also requires operational management skills.

We are looking for someone who has a strong technical background, with significant experience across all types of incident responses inclusive of cloud and can demonstrate adherence to digital forensic principles and procedures.

The right candidate will be able to work alongside senior stakeholders across the business and our other department technical teams. When not responding to and managing incidents, you will be expected to participate in threat hunting, alongside driving forward the IR team with their strategic mission, consisting of constant reviews of processes and procedures, developing new playbooks, running business-wide tabletop sessions (including extinction-level attacks), and assessing our overall incident response maturity levels. 

Being able to distil technical information to non-technical members of Admiral is vital. The successful candidate not being afraid to question what is being presented to them, constantly searching for answers to “why” something has happened and persisting with the resolutions to stop it from happening again. 

Essential Experience and Skills:

  • 4+ years of experience conducting incident response management and investigations. 
  • Demonstrated experience with digital forensic practices, including report writing. 
  • Strong knowledge of multi-cloud incident response, including but not limited to: 
    • Investigation into relevant logs such as Prisma, Sentinel, Defender, etc.
    • Cloud-native automation of containment activities. 
    • Collaboration with application and infrastructure to understand cloud attack vectors and security measures required.
    • SaaS application investigations and relationship management. 
  • Proficiency with Windows/Linux/Mac operating systems. 
  • Experience in reverse-engineering malware samples and C2 protocols, including but not limited to:
    • Reverse engineering recently discovered malware variants and their respective C2 infrastructure and targets. 
    • Research into the latest malware detection evasion techniques.
    • Creation of detection rules and/or provide detection or blocking recommendations. 
  • Practical programming knowledge or experience in writing scripts in languages such as Python, PowerShell, and Bash. 
  • Broad understanding of networking and common enterprise technologies. 
  • A demonstrable understanding of the Cyber Kill Chain, MITRE ATT&CK and other information security defence and intelligence frameworks. 
  • To be able to demonstrate a professional, calm, and expert manner consistently while also showing leadership during stressful situations. 
  • Proven experience in driving strategic goals and stakeholder management, including third-party relationships. 
  • Certifications such as GCIH, GCFA, GNFA, and GDAT. 

Our Commitment to You

At Admiral, we are committed to being a diverse and inclusive workplace. Admiral is proud to be an equal opportunities employer and does not discriminate on the basis of race, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), national origin, gender, gender identity, sexual orientation, disability, age, or any other legally protected status.

All qualified applicants will receive equal consideration for employment.

Salary, Benefits and Work-Life Balance

We do not have a set salary for this position, as it will be dependent on the successful candidate’s experience. We are happy to see CVs from all candidates who meet the requirements and will be happy to discuss the remuneration package.

At Admiral, we are proud to be a diverse business where we put our people and customers first. We have great benefits to ensure employees have a great work-life balance; it's one of the reasons we’re consistently voted one of the Sunday Times Best Big Companies to Work For in the UK. We want you to have an element of freedom to define a working lifestyle that supports this, so accommodate flexible hours wherever possible.

All colleagues will receive 33 days holiday (including banks holidays) when they join us, and this will increase with length of service, up to a maximum of 38 days (including banks holidays). You also have the option to buy or sell up to five days of annual leave in addition to your allocation.

You can also view some of our other key benefits here.

#LI-NT1

  1. Full time
  2. Information Security

__jobinformationwidget.freetext.LocationText__

Remote

jobs

Related jobs

Loss Adjusting Services Team Manager- South

Salary

Location

Remote

Job Type

Full time

Location

Remote

Brand

Admiral Group

Department

Claims, Household

Office address

Remote

Description

Admiral Household Claims is an exciting department that is experiencing growth as we seek to increase the size of the business. The position of Loss Adjusting Services Team Manager- ‘South’, exists

Reference

10234

Expiry Date

01 Jan 0001

Sophie Smith-Phillips

Vacancy managed by

Sophie Smith-Phillips
Sophie Smith-Phillips

Vacancy managed by

Sophie Smith-Phillips
View Shortlist
DevOps Engineer

Salary

Location

Cardiff

Job Type

Full time

Location

Cardiff

Brand

Admiral Money

Department

Finance Services

Office address

Tŷ Admiral, David Street, Cardiff, CF10 2EH

Description

Admiral Money is hiring for a DevOps Engineer to join the team!  Admiral Money is an exciting division of Admiral Group. We have the freedom and innovation of a small start up with the security of

Reference

10636

Expiry Date

01 Jan 0001

Eden Davies

Vacancy managed by

Eden Davies
Eden Davies

Vacancy managed by

Eden Davies
View Shortlist
Senior Full Stack Engineer

Salary

Location

Cardiff

Job Type

Full time

Location

Cardiff

Brand

Pioneer

Department

Veygo

Office address

Tŷ Admiral, David Street, Cardiff, CF10 2EH

Description

We’re looking for a Senior Full Stack Engineer to join our team at Veygo!  About Veygo     At Veygo our world is learner and temporary pay-as-you-go car insurance. We know people's lifestyles a

Reference

10421

Expiry Date

01 Jan 0001

Eden Davies

Vacancy managed by

Eden Davies
Eden Davies

Vacancy managed by

Eden Davies
View Shortlist

Our Benefits

Admiral employees work hard to keep us at the top of our industry, and are rewarded for it—with competitive pay, a share package, career growth and development opportunities and some other great benefits, too!

People who like what they do, do it better.

Be You

Financial & Mortgage Advice

Financial & Mortgage
Advice

Ecare

24-Hour
Ecare

Cycle to Work Scheme

Cycle to Work
Scheme

Annual Holiday Allowance

Annual Holiday
Allowance

Flexible Working

Flexible
Working

Simply Health

Simply
Health

Private Health Cover

Private Health
Cover

Critical Illness Cover

Critical Illness
Cover

Grow & Progress

Learning and Development

Learning and
Development

Educational Sponsorship

Educational
Sponsorship

Accredited Qualifications ILM

Accredited
Qualifications ILM

iLearn

iLearn
Online Learning

Buy a Book Scheme

Buy a Book
Scheme

Developmental Coaching

Developmental
Coaching

Port of Calls

Port of
Calls

Internal Mobility

Internal
Mobility

Make a Difference

Groups & Societies

Groups and
Societies

Socials & Team Days Out

Socials and Team
Days Out

Multi Faith / Quiet Rooms

Multi Faith / Quiet
Rooms

Admiral Community Fund

Admiral Community
Fund

Give as You Earn

Give as You
Earn

Awards & Star Lunches

Awards and Star
Lunches

Corporate Social Responsibility

Corporate Social
Responsibility

Impact Hours

Impact
Hours

Share In Our Future

Share Schemes

Share
Schemes

Refer a Friend Bonus

Refer a Friend
Bonus

Colleague and Family Discount

Colleague and Family
Insurance Discount

Group Life Assurance

Group Life
Assurance

Pension

Pension
Scheme

Life Event Loan

Life Event
Loan

Tickets to Sponsored Events

Tickets to Sponsored
Events

Tusker

Tusker Salary
Sacrifice

Click here to download our full benefits brochure