Negotiable
Inside
Remote
Greater Lincoln Area, United Kingdom
Summary: The Threat Management Consultant role involves establishing operational interlocks with the CSMS and managing security incident response and recovery for IBM as a supplier for PPB. The position requires raising awareness on a 24/7 basis and developing incident response playbooks while implementing various security processes and monitoring services. The consultant will also be responsible for threat intelligence and vulnerability scanning in AWS. This is a remote position for a duration of 6 months, requiring SC clearance eligibility.
Key Responsibilities:
- Establish an operational interlock with the CSMS and own security incident response and recovery on behalf of IBM as the supplier for PPB.
- Raise awareness to the CSMS ASAP on a 24/7 basis.
- Advise on the sending of appropriate log event data to the CSMS.
- Develop incident response playbooks.
- Design and implement SIOC processes to supplement the UK SOC monitoring service.
- Ongoing tuning of Qradar Threat Intelligence.
- Threat Hunting.
- Implement vulnerability scanning using Tenable in AWS.
- Design and Implement UK SOC monitoring service.
Key Skills:
- Experience with operational interlocks and security incident response.
- Knowledge of CSMS and log event data management.
- Ability to develop incident response playbooks.
- Experience in designing and implementing security processes.
- Familiarity with Qradar and threat intelligence.
- Experience in threat hunting.
- Knowledge of vulnerability scanning tools, specifically Tenable.
- Experience in AWS security monitoring.
Salary (Rate): undetermined
City: Greater Lincoln Area
Country: United Kingdom
Working Arrangements: remote
IR35 Status: inside IR35
Seniority Level: undetermined
Industry: IT
Remote working 6 months UMBRELLA ONLY Eligible for SC or Active SC - will be able to start before the clearance checks are complete
Essential Skills For The Role
- Establish an operational interlock with the CSMS and own security incident response and recovery on behalf of IBM as the supplier for PPB.
- Raise awareness to the CSMS ASAP on 24/7 basis.
- Advise on the sending of appropriate log event data to the CSMS
- Develop incident response playbooks
- Design and implement SIOC processes to supplement the UK SOC monitoring service:
- Ongoing tuning of Qradar Threat Intelligence
- Threat Hunting
- Implement vulnerability scanning using Tenable in AWS
- Design and Implement UK SOC monitoring service