Threat Management Consultant

Threat Management Consultant

Posted 2 days ago by Experis UK

Negotiable
Inside
Remote
Greater Lincoln Area, United Kingdom

Summary: The Threat Management Consultant role involves establishing operational interlocks with the CSMS and managing security incident response and recovery for IBM as a supplier for PPB. The position requires raising awareness on a 24/7 basis and developing incident response playbooks while implementing various security processes and monitoring services. The consultant will also be responsible for threat intelligence and vulnerability scanning in AWS. This is a remote position for a duration of 6 months, requiring SC clearance eligibility.

Key Responsibilities:

  • Establish an operational interlock with the CSMS and own security incident response and recovery on behalf of IBM as the supplier for PPB.
  • Raise awareness to the CSMS ASAP on a 24/7 basis.
  • Advise on the sending of appropriate log event data to the CSMS.
  • Develop incident response playbooks.
  • Design and implement SIOC processes to supplement the UK SOC monitoring service.
  • Ongoing tuning of Qradar Threat Intelligence.
  • Threat Hunting.
  • Implement vulnerability scanning using Tenable in AWS.
  • Design and Implement UK SOC monitoring service.

Key Skills:

  • Experience with operational interlocks and security incident response.
  • Knowledge of CSMS and log event data management.
  • Ability to develop incident response playbooks.
  • Experience in designing and implementing security processes.
  • Familiarity with Qradar and threat intelligence.
  • Experience in threat hunting.
  • Knowledge of vulnerability scanning tools, specifically Tenable.
  • Experience in AWS security monitoring.

Salary (Rate): undetermined

City: Greater Lincoln Area

Country: United Kingdom

Working Arrangements: remote

IR35 Status: inside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Remote working 6 months UMBRELLA ONLY Eligible for SC or Active SC - will be able to start before the clearance checks are complete

Essential Skills For The Role

  • Establish an operational interlock with the CSMS and own security incident response and recovery on behalf of IBM as the supplier for PPB.
  • Raise awareness to the CSMS ASAP on 24/7 basis.
  • Advise on the sending of appropriate log event data to the CSMS
  • Develop incident response playbooks
  • Design and implement SIOC processes to supplement the UK SOC monitoring service:
  • Ongoing tuning of Qradar Threat Intelligence
  • Threat Hunting
  • Implement vulnerability scanning using Tenable in AWS
  • Design and Implement UK SOC monitoring service