Threat Management Consultant

Threat Management Consultant

Posted 3 days ago by Experis

£665 Per day
Inside
Remote
Nationwide

Summary: The Threat Management Consultant role involves remote work for a duration of six months, focusing on security incident response and recovery for IBM as a supplier for PPB. The consultant will be responsible for establishing operational interlocks, advising on log event data, and developing incident response playbooks while implementing various security processes and services. Candidates must be eligible for SC clearance or have active SC clearance to start before the completion of clearance checks.

Key Responsibilities:

  • Establish an operational interlock with the CSMS and own security incident response and recovery on behalf of IBM as the supplier for PPB.
  • Raise awareness to the CSMS ASAP on a 24/7 basis.
  • Advise on the sending of appropriate log event data to the CSMS.
  • Develop incident response playbooks.
  • Design and implement SIOC processes to supplement the UK SOC monitoring service.
  • Ongoing tuning of Qradar.
  • Threat Intelligence.
  • Threat Hunting.
  • Implement vulnerability scanning using Tenable in AWS.
  • Design and Implement UK SOC monitoring service.

Key Skills:

  • Experience in security incident response and recovery.
  • Knowledge of CSMS and log event data management.
  • Ability to develop incident response playbooks.
  • Experience with SIOC processes and UK SOC monitoring services.
  • Proficiency in Qradar tuning.
  • Understanding of Threat Intelligence and Threat Hunting.
  • Experience with vulnerability scanning tools, specifically Tenable in AWS.

Salary (Rate): £665/day

City: undetermined

Country: undetermined

Working Arrangements: remote

IR35 Status: inside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

description: Threat Management Consultant

Remote working

6 months

UMBRELLA ONLY

Eligible for SC or Active SC - will be able to start before the clearance checks are complete

Essential Skills for the role

  • Establish an operational interlock with the CSMS and own security incident response and recovery on behalf of IBM as the supplier for PPB.
  • Raise awareness to the CSMS ASAP on 24/7 basis.
  • Advise on the sending of appropriate log event data to the CSMS
  • Develop incident response playbooks
  • Design and implement SIOC processes to supplement the UK SOC monitoring service:
  • Ongoing tuning of Qradar
  • Threat Intelligence
  • Threat Hunting
  • Implement vulnerability scanning using Tenable in AWS
  • Design and Implement UK SOC monitoring service