Supporting the business and our divisional offices, our Head Office functions cover all departments from our Executive Board through to our support functions such as Group Design and Technical, HR, Health and Safety, IT, Sales and Marketing, Commercial, Procurement, Group Finance, Corporate Affairs, as well as Legal and Company Secretariat. We also have a specialised function – Barratt Partnerships.
While the work varies from team to team, our key requirements don’t: you must be well organised, extremely helpful and resourceful, and able to use your initiative. You’ll understand that what you do is important, and impacts on your team, the department, and the wider business.
To work as part of the information security team, ensuring excellent security compliance throughout the business. You will work with threat monitoring, event log management and vulnerability management to help protect against cyber-attacks and vulnerabilities across the threat landscape.
The Security Analyst plays a critical role in monitoring, detecting, and responding to cybersecurity threats across the organisation. Working under the direction of the Security Operations Team Lead, the analyst will support daily security operations, contribute to threat and vulnerability management activities, and help ensure that incidents are investigated and resolved effectively.
The role involves close collaboration with a third-party 24x7 Security Operations Center (SOC) and participation in the continuous improvement of security detection and response capabilities but also provides support where required for other capabilities including user awareness and security tooling.
Reporting to Security Operations Team Lead, you will be expected to:
- Monitor and manage security alerts and events from internal systems and the third-party SOC, assisting in triage, third line SME review and escalation as needed.
- Review, monitor and implement best practice security measures
- Investigate suspected security incidents, gather evidence, and support containment, eradication, and recovery activities.
- Conduct initial analysis of potential threats using tools such as SIEM, EDR, and threat intelligence feeds.
- Assist in the day-to-day operation of vulnerability scanning tools and help coordinate remediation efforts with IT and infrastructure teams.
- Maintain and update security operations documentation, including incident records, playbooks, and runbooks.
- Collaborate with the SOC to ensure effective knowledge transfer, alignment of use cases, and appropriate escalation of critical events.
- Participate in threat intelligence gathering, analysis, and contextualisation to enhance detection rules and situational awareness.
- Support testing of incident response procedures, such as tabletop exercises and simulated attacks.
- Stay current on the latest threats, vulnerabilities, and cyberattack techniques to inform operational practices.
- Engage in and support the
delivery of User Awareness activities across the Group