We have been made aware of a number of scams where fraudsters are claiming to represent our organisation or organisations we work with. Please click here to find out more details and what to do if you are contacted.

menu

Accessibility tools

Threat Detection Engineer

Remote

  1. Full time

About the job

"

This vacancy has now expired. Please see similar roles below...

"

We are looking for a candidate with experience as a Azure Sentinel Detection Engineer. You will be responsible for developing, implementing, and continuously improving Admiral’s threat led security detection Analytics and response capabilities. You will need to understand the changing threat landscape, identify opportunities for improvements in existing detections, establish new detections, and ensure appropriate detection coverage for the organisation. You will work closely with multiple teams, including security operations, incident response, and threat intelligence, in a fast moving and agile environment.

You will be responsible for developing and driving siem and endpoint threat detections both day-to-day and strategically. You are expected to seek out effective and comprehensive detection logic thus, ensuring detections are high fidelity and thoroughly tested, and that detection rules are available and understood by operational cyber security teams.

Develop security specific content necessary to implement Use Cases and transform into correlation queries, templates, reports, rules, alerts, and dashboards..

Responsibilities

  • Creation of new detections from use cases from business related projects threat modelling and threat intelligence.
  • Create custom analytics rules to detect threats.
  • Continuous development and testing of detection rules and tooling.
  • Drive the improvement of our Detection Framework, its methodologies, and lifecycles.
  • Guidance and Support for Analysts in release, implementation, and tuning phases
  • Contribute to the review and lessons learned of Blue, Red and Purple Team engagements.
  • Conduct knowledge-sharing sessions for edge cases from emerging threats.
  • Contribution to the improvement of environmental detections (data source gap analysis)

Desirable Skills, Experience and Behaviours

  • KQL Analytics experience is a Must.
  • Configuration of Data connectors for Security Events, Threat Intelligence Platforms, Linux Syslog, Office 365, etc
  • More than 2 years+ experience in Cyber Security as a Threat Detection Engineer
  • Knowledge of attacker tools and evasion techniques
  • Working knowledge of at least one major programming language, including scripting languages like Python and PowerShell
  • Good understanding of Windows and Linux Operating Systems
  • Translate threat intelligence into actionable detection logic.
  • Knowledge of cloud infrastructure, cloud security and cloud APIs a plus.
  • Knowledge of Active Directory threats
  • Experience working with Mitre Attack Framework
  • Strong team working skills with ability to build trusted relationships with people and groups with diverse backgrounds, and to influence at all levels.
  • Professional, with attention to detail - always seeking quality and excellence in their work.
  • Collaborative and engaging approach to problem solving and a willingness to work as part of the team.
  • Passionate for diversity, recognising the innovation and competitive edge that comes from a diverse highly skilled team where equal opportunities are truly valued.
  • A problem-solver, always seeking the best solution for the right outcome.
  • Friendly manner, with a willingness to adapt style and approach to achieve quality results.
  • Self-motivated, results-focussed, pragmatic with the ability to manage conflicting deadlines and prioritise.
  • SC-200 Certification advantageous

Our Commitment to You

At Admiral, we are committed to being a diverse and inclusive workplace. Admiral is proud to be an equal opportunities employer and does not discriminate on the basis of race, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), national origin, gender, gender identity, sexual orientation, disability, age, or any other legally protected status.

All qualified applicants will receive equal consideration for employment.

Salary, Benefits, and Work-Life Balance

We do not have a set salary for this position, as it will be dependent on the successful candidate’s experience. We are happy to see CVs from all candidates who meet the requirements and will be happy to discuss the remuneration package.

At Admiral, we are proud to be a diverse business where we put our people and customers first. We have great benefits to ensure employees have a great work-life balance; it's one of the reasons we’re consistently voted one of the Sunday Times Best Big Companies to work for in the UK. We want you to have an element of freedom to define a working lifestyle that supports this, so accommodate flexible hours wherever possible.

All colleagues will receive 33 days holiday (including banks holidays) when they join us, and this will increase with length of service, up to a maximum of 38 days (including banks holidays). You also have the option to buy or sell up to five days of annual leave in addition to your allocation.

You can also view some of our other key benefits here.

#LI-NT1

  1. Full time
  2. Information Security

__jobinformationwidget.freetext.LocationText__

Remote

Our Achievements

colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop


colleags at a laptop
jobs

Related jobs

Broker Sales Executive

Salary

Location

Cardiff

Job Type

Full time

Location

Cardiff

Brand

Admiral Money

Department

Finance Services

Office address

Tŷ Admiral, David Street, Cardiff, CF10 2EH

Description

About us Admiral Money is the dynamic lending arm of Admiral Group, offering personal loans, motor finance, and second charge mortgages since 2017. We’re building something special for our customer

Reference

10896

Expiry Date

01 Jan 0001

Daniel Cavill

Vacancy managed by

Daniel Cavill
Daniel Cavill

Vacancy managed by

Daniel Cavill
View Shortlist
Associate Researcher/Service Designer

Salary

Location

Cardiff

Job Type

Full time

Location

Cardiff

Brand

Admiral Group

Department

Digital and Marketing

Office address

Tŷ Admiral, David Street, Cardiff, CF10 2EH

Description

We're seeking a curious, analytically-minded and passionate individual with research experience to join our thriving Research and Service Design team, here at Admiral. Our team's purpose is ‘to be the

Reference

10904

Expiry Date

01 Jan 0001

Abbi James

Vacancy managed by

Abbi James
Abbi James

Vacancy managed by

Abbi James
View Shortlist
Metadata & Documentation Specialist

Salary

Location

Remote

Job Type

Full time

Location

Remote

Brand

Admiral Group

Department

Admiral Tech

Office address

Remote

Description

The Data Enablement Services Department comprises key teams, including Data Governance, Metadata Management, Data Quality Management, Customer Master (MDM), and Records Management. The Metadata tea

Reference

10807

Expiry Date

01 Jan 0001

Charlotte Butler

Vacancy managed by

Charlotte Butler
Charlotte Butler

Vacancy managed by

Charlotte Butler
View Shortlist

Our Benefits

We know our colleagues work hard to serve our customers and keep us innovating, so it’s important to us that they’re well-rewarded.
 
Alongside our competitive pay we also offer a share package, career growth and development opportunities and a whole host of other great benefits!

Explore our benefits below to discover Where You Can

Where You Can Be You

Financial & Mortgage Advice

Financial & Mortgage
Advice

Ecare

24-Hour
Ecare

Cycle to Work Scheme

Cycle to Work
Scheme

Annual Holiday Allowance

Annual Holiday
Allowance

Flexible Working

Flexible
Working

Simply Health

Simply
Health

Private Health Cover

Private Health
Cover

Critical Illness Cover

Critical Illness
Cover

Where You Can Grow & Progress

Learning and Development

Learning and
Development

Educational Sponsorship

Educational
Sponsorship

Accredited Qualifications ILM

Accredited
Qualifications ILM

iLearn

iLearn
Online Learning

Buy a Book Scheme

Buy a Book
Scheme

Developmental Coaching

Developmental
Coaching

Port of Calls

Port of
Calls

Internal Mobility

Internal
Mobility

Where You Can Make a Difference

Groups & Societies

Groups and
Societies

Socials & Team Days Out

Socials and Team
Days Out

Multi Faith / Quiet Rooms

Multi Faith / Quiet
Rooms

Admiral Community Fund

Admiral Community
Fund

Give as You Earn

Give as You
Earn

Awards & Star Lunches

Awards and Star
Lunches

Corporate Social Responsibility

Corporate Social
Responsibility

Impact Hours

Impact
Hours

Where You Can Share In Our Future

Share Schemes

Share
Schemes

Refer a Friend Bonus

Refer a Friend
Bonus

Colleague and Family Discount

Colleague and Family
Insurance Discount

Group Life Assurance

Group Life
Assurance

Pension

Pension
Scheme

Life Event Loan

Life Event
Loan

Tickets to Sponsored Events

Tickets to Sponsored
Events

Tusker

Tusker Salary
Sacrifice

Click here to download our full benefits brochure