We have been made aware of a number of scams where fraudsters are claiming to represent our organisation or organisations we work with. Please click here to find out more details and what to do if you are contacted.

menu

Accessibility tools

Senior DFIR Analyst

Remote

  1. Full time

About the job

"

This vacancy has now expired. Please see similar roles below...

"

The Senior Digital Forensics and Incident Response Analyst role will sit within our Cyber Defence Department. This is a hands-on technical role which also requires operational management skills.

We are looking for someone with a strong technical background and significant experience across all types of incident response with a strong emphasis on cloud response. Someone with excellent documentation skills who is willing to mentor the rest of the DFIR team and junior members of the defence department. This person will be one of the main escalation points for our SOC and an active member of purple team activities.

The right candidate will be able to work alongside senior stakeholders across the business and represent security operations with the technology risk teams. When not responding to and managing incidents, you will be expected to take part in threat hunting as well as driving forward the DFIR team with their strategic mission, which will consist of constant reviews of processes and procedures, developing new playbooks, running business-wide tabletop sessions (including extinction level attacks) and assessing our overall digital forensic and incident response maturity levels. 

Being able to distil technical information to non-technical members of Admiral is vital. The successful candidate not being afraid to question what is being presented to them, constantly searching for answers to “why” something has happened and persisting with the resolutions to stop it from happening again. 

Essential Skills:

  • 4+ years of experience conducting incident response and forensic investigations.
  • 1+ years of experience with incidents in the cloud (Azure and/or GCP).
  • Hands-on experience with proxies, load balancers, virtual machines, containers, and/or serverless technologies.
  • Experience with cloud-native security capabilities and features (e.g., GuardDuty, Sentinel, CloudTrail etc.), common enterprise security tools (SIEM, EDR, etc), and cloud-specific security tools.
  • Proficient use of Linux, MacOS, and Windows Operating System tools (such as curl, wget, nslookup, etc).
  • Practical programming knowledge or experience in writing scripts in Python, PowerShell, Java, etc. 
  • Broad understanding of networking and common enterprise technologies.
  • A demonstrable understanding of the Cyber Kill Chain, MITRE ATT&CK and other information security defence and intelligence frameworks.
  • Always demonstrate a professional, calm, and expert manner while showing leadership during stressful situations.
  • Proven experience in driving strategic goals and stakeholder management, including third-party relationships.
  • Certifications such as GCIH, GCFR, GCLD, and GDAT.

Our Commitment to You

At Admiral, we are committed to being a diverse and inclusive workplace. Admiral is proud to be an equal opportunities employer and does not discriminate on the basis of race, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), national origin, gender, gender identity, sexual orientation, disability, age, or any other legally protected status.

All qualified applicants will receive equal consideration for employment.

Benefits and Work-Life Balance

At Admiral, we are proud to be a diverse business where we put our people and customers first. We have great benefits to ensure employees have a great work-life balance; it's one of the reasons we’re consistently voted one of the Sunday Times Best Big Companies to Work For in the UK.

All colleagues will receive 33 days holiday (including banks holidays) when they join us, and this will increase with length of service, up to a maximum of 38 days (including banks holidays). You also have the option to buy or sell up to five days of annual leave in addition to your allocation.

You can also view some of our other key benefits here.

#LI-MB1

  1. Full time
  2. Information Security

__jobinformationwidget.freetext.LocationText__

Remote

jobs

Related jobs

Underwriting Manager

Salary

Location

International

Job Type

Full time

Location

International

Brand

Admiral Group

Department

Corporate Governance

Office address

Tŷ Admiral, David Street, Cardiff, CF10 2EH

Description

Admiral Insurance (Gibraltar) Limited AIGL is part of the Admiral Group, a FTSE 100 financial services group with over 11 million customers, a turnover of £6.1bn (2024) and 15,000 employees.  AIGL

Reference

10664

Expiry Date

01 Jan 0001

Helen Hunt

Vacancy managed by

Helen Hunt
Helen Hunt

Vacancy managed by

Helen Hunt
View Shortlist
Insurance Legal Services Case Handler

Salary

Location

Cardiff

Job Type

Full time

Location

Cardiff

Brand

Admiral Law

Department

Law

Office address

Tŷ Admiral, David Street, Cardiff, CF10 2EH

Description

An exciting opportunity has arisen for a Case Handler in our Insurance Legal Service Department. We are looking for an innovative, enthusiastic, self-motivated and talented individual to take on the r

Reference

10668

Expiry Date

01 Jan 0001

Samantha Bevan

Vacancy managed by

Samantha Bevan
Samantha Bevan

Vacancy managed by

Samantha Bevan
View Shortlist
Financial Controller

Salary

Location

Cardiff

Job Type

Full time

Location

Cardiff

Brand

Admiral Group

Department

Finance Services

Office address

Tŷ Admiral, David Street, Cardiff, CF10 2EH

Description

(This is a hybrid role, and it requires travel to our Cardiff office regularly) About Us At Admiral, people come first – and we’re proud to have been named a Great Place to Work for over 25 year

Reference

10617

Expiry Date

01 Jan 0001

Helen Hunt

Vacancy managed by

Helen Hunt
Helen Hunt

Vacancy managed by

Helen Hunt
View Shortlist

Our Benefits

Admiral employees work hard to keep us at the top of our industry, and are rewarded for it—with competitive pay, a share package, career growth and development opportunities and some other great benefits, too!

People who like what they do, do it better.

Be You

Financial & Mortgage Advice

Financial & Mortgage
Advice

Ecare

24-Hour
Ecare

Cycle to Work Scheme

Cycle to Work
Scheme

Annual Holiday Allowance

Annual Holiday
Allowance

Flexible Working

Flexible
Working

Simply Health

Simply
Health

Private Health Cover

Private Health
Cover

Critical Illness Cover

Critical Illness
Cover

Grow & Progress

Learning and Development

Learning and
Development

Educational Sponsorship

Educational
Sponsorship

Accredited Qualifications ILM

Accredited
Qualifications ILM

iLearn

iLearn
Online Learning

Buy a Book Scheme

Buy a Book
Scheme

Developmental Coaching

Developmental
Coaching

Port of Calls

Port of
Calls

Internal Mobility

Internal
Mobility

Make a Difference

Groups & Societies

Groups and
Societies

Socials & Team Days Out

Socials and Team
Days Out

Multi Faith / Quiet Rooms

Multi Faith / Quiet
Rooms

Admiral Community Fund

Admiral Community
Fund

Give as You Earn

Give as You
Earn

Awards & Star Lunches

Awards and Star
Lunches

Corporate Social Responsibility

Corporate Social
Responsibility

Impact Hours

Impact
Hours

Share In Our Future

Share Schemes

Share
Schemes

Refer a Friend Bonus

Refer a Friend
Bonus

Colleague and Family Discount

Colleague and Family
Insurance Discount

Group Life Assurance

Group Life
Assurance

Pension

Pension
Scheme

Life Event Loan

Life Event
Loan

Tickets to Sponsored Events

Tickets to Sponsored
Events

Tusker

Tusker Salary
Sacrifice

Click here to download our full benefits brochure