Cyber Security Specialist (SecOps / Liverpool)
Job Description
This position focuses on security monitoring, incident investigation, threat analysis, and operational security improvement. The successful candidate will act as a subject matter expert for cyber security operations, supporting both proactive and reactive security activities while helping to enhance the organisation's overall security maturity.
\nClient Details
\nOur client is a well-established and respected professional services organisation with a strong national presence and a reputation for delivering high-quality solutions to a broad client base. With ongoing investment in technology and cybersecurity, they are committed to maintaining a secure and resilient environment that supports business growth, innovation, and operational excellence.
\nDescription
\n- \n
- Investigating and responding to security incidents escalated through the Security Operations function. \n
- Performing detailed security event analysis and identifying potential threats or areas requiring further investigation. \n
- Working closely with external security service providers to ensure effective monitoring, alert management, and incident handling. \n
- Supporting cyber incident response activities as a technical security specialist. \n
- Analysing security metrics and trends, providing recommendations to improve security controls and reduce risk. \n
- Delivering and managing security awareness initiatives, including phishing simulations and remediation activities. \n
- Maintaining and optimising security monitoring and protection platforms across the technology estate. \n
- Conducting security reviews of systems, infrastructure, and operational processes. \n
- Collaborating with technology and business teams to drive continuous security improvements. \n
- Ensuring security operations align with relevant regulatory, governance, and industry best practice requirements. \n
- Contributing to the development and implementation of operational security controls and procedures. \n
Profile
\n- \n
- Previous experience working within a Security Operations Centre (SOC) or equivalent cyber security environment. \n
- Demonstrated experience in security operations, cyber defence, incident response, threat detection, or a related security discipline. \n
- Strong understanding of cyber attack techniques, threat actor methodologies, and appropriate mitigation strategies. \n
- Experience investigating security incidents and coordinating response activities. \n
- Knowledge of Security Information and Event Management (SIEM), Identity and Access Management (IAM), and Data Loss Prevention (DLP) technologies. \n
- Good understanding of modern security frameworks, detection engineering concepts, and operational security best practices. \n
- Experience securing cloud-based and enterprise collaboration environments. \n
- Familiarity with cyber threat intelligence and attack frameworks such as MITRE ATT&CK. \n
- Strong analytical and problem-solving skills with the ability to assess security risks effectively. \n
- A proactive approach to continuous learning and staying current with emerging threats and security trends. \n
Desirable
\n\n- \n
- Degree in Cyber Security, Information Technology, Computer Science, or a related discipline. \n
- Relevant industry certifications such as CISSP, GIAC, CompTIA Security+, SC-200, AZ-500, or equivalent. \n
- Experience working within regulated or enterprise-scale environments. \n
Job Offer
\n- \n
- Private healthcare. Life assurance. \n
- hybrid working 3 days in offices (Liverpool, Glasgow, London) \n
- Ongoing training and professional development opportunities. \n
