• Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
  • Sign in
  • Sign up
  • Home
  • Find Jobs
  • Register CV
  • Advertise jobs
  • Employer Pricing
  • IT Jobs
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

54 jobs found

Email me jobs like this
Refine Search
Current Search
vulnerability analyst
Junior Cyber Security Analyst
Back TO Work City, Sheffield
Our client is a well-established commerce business that relies heavily on secure digital systems to support its operations. They are seeking a motivated Junior Cyber Security Analyst to join their growing IT team. Role overview This entry-level position is ideal for an individual looking to begin a career in cyber security. The successful candidate will support the protection of company systems, networks and data while learning from experienced IT and security professionals. Key duties Monitor security alerts and escalate incidents when necessary. Assist with vulnerability assessments and security audits. Support the implementation of cyber security policies and procedures. Help investigate potential security threats and suspicious activities. Conduct routine system checks and security monitoring. Assist with user access administration and account security. Support cyber awareness initiatives for colleagues. Maintain accurate records and documentation. Candidate requirements Strong interest in cyber security and IT. Excellent analytical and problem-solving skills. Good attention to detail. Ability to follow procedures and work accurately. Strong communication and teamwork skills.
Sep 11, 2026
Full time
Our client is a well-established commerce business that relies heavily on secure digital systems to support its operations. They are seeking a motivated Junior Cyber Security Analyst to join their growing IT team. Role overview This entry-level position is ideal for an individual looking to begin a career in cyber security. The successful candidate will support the protection of company systems, networks and data while learning from experienced IT and security professionals. Key duties Monitor security alerts and escalate incidents when necessary. Assist with vulnerability assessments and security audits. Support the implementation of cyber security policies and procedures. Help investigate potential security threats and suspicious activities. Conduct routine system checks and security monitoring. Assist with user access administration and account security. Support cyber awareness initiatives for colleagues. Maintain accurate records and documentation. Candidate requirements Strong interest in cyber security and IT. Excellent analytical and problem-solving skills. Good attention to detail. Ability to follow procedures and work accurately. Strong communication and teamwork skills.
Lumentum
Senior Information Security Analyst
Lumentum Towcester, Northamptonshire
At Lumentum, we develop the technologies that power the world's most advanced communications, industrial and cloud infrastructure. Security is fundamental to everything we do, and we're looking for an experienced Senior Information Security Analyst to help protect our people, data and global operations. This is an opportunity to join a collaborative cyber security team where you'll lead complex investigations, strengthen security controls and influence how we defend against an evolving threat landscape. You'll work across cloud, identity, endpoint, network and data security while partnering with technical and business teams to continuously improve our security capability. If you enjoy solving challenging security problems, mentoring others and driving meaningful improvements, we'd love to hear from you. What you'll be doing As a senior member of our Information Security team, you'll: Lead the investigation and response to complex cyber security incidents across cloud, endpoint, identity, network, email and application environments. Drive improvements to our Security Operations capability through enhanced detections, playbooks, automation and operational processes. Own and enhance key security controls, including Data Loss Prevention (DLP) and Multi-Factor Authentication (MFA), ensuring they remain effective, measurable and aligned with business needs. Assess vulnerabilities, prioritise remediation activities and work with technology teams to reduce cyber risk across the organisation. Provide security assurance for new projects and technology changes, helping embed security by design. Produce meaningful security metrics and reporting for technical and business stakeholders. Coach and mentor colleagues, sharing knowledge and raising security capability across the organisation. Translate complex technical issues into clear, practical recommendations that support informed business decisions. What you'll bring You'll have experience in several of the following areas: Security Operations, Security Incident Response or Security Engineering. Security Information and Event Management (SIEM) and Endpoint Detection & Response (EDR) technologies. Identity and Access Management, including MFA, Conditional Access and Privileged Access. Data Loss Prevention (DLP) technologies and policy management. Vulnerability Management and security hardening. Security architecture reviews and technical assurance. Threat detection, investigation and root cause analysis. Security automation, scripting or workflow improvement. You'll also be comfortable working with recognised security frameworks such as NIST CSF, ISO 27001, CIS Controls or the NCSC Cyber Assessment Framework. About you We're looking for someone who: Has significant experience within cyber security, information security or security operations. Enjoys leading investigations and solving complex technical challenges. Can influence stakeholders at all levels with clear, confident communication. Thinks strategically while remaining hands-on. Takes ownership and is driven by continuous improvement. Builds strong relationships and enjoys developing others. Professional certifications such as CISSP, CISM or CISA are desirable but not essential if you can demonstrate equivalent experience. Why join Lumentum? At Lumentum, you'll work alongside talented people solving real-world technology challenges in a global organisation that values innovation, collaboration and continuous learning. In return, you'll benefit from: The opportunity to influence enterprise-wide cyber security. Exposure to modern cloud and security technologies. A collaborative and supportive team environment. Ongoing professional development and learning opportunities. The chance to make a genuine impact protecting critical business services. Ready to make an impact? If you're passionate about cyber security, thrive in a fast-paced environment and want to help shape the future of security at a global technology leader, we'd love to hear from you.
Sep 10, 2026
Full time
At Lumentum, we develop the technologies that power the world's most advanced communications, industrial and cloud infrastructure. Security is fundamental to everything we do, and we're looking for an experienced Senior Information Security Analyst to help protect our people, data and global operations. This is an opportunity to join a collaborative cyber security team where you'll lead complex investigations, strengthen security controls and influence how we defend against an evolving threat landscape. You'll work across cloud, identity, endpoint, network and data security while partnering with technical and business teams to continuously improve our security capability. If you enjoy solving challenging security problems, mentoring others and driving meaningful improvements, we'd love to hear from you. What you'll be doing As a senior member of our Information Security team, you'll: Lead the investigation and response to complex cyber security incidents across cloud, endpoint, identity, network, email and application environments. Drive improvements to our Security Operations capability through enhanced detections, playbooks, automation and operational processes. Own and enhance key security controls, including Data Loss Prevention (DLP) and Multi-Factor Authentication (MFA), ensuring they remain effective, measurable and aligned with business needs. Assess vulnerabilities, prioritise remediation activities and work with technology teams to reduce cyber risk across the organisation. Provide security assurance for new projects and technology changes, helping embed security by design. Produce meaningful security metrics and reporting for technical and business stakeholders. Coach and mentor colleagues, sharing knowledge and raising security capability across the organisation. Translate complex technical issues into clear, practical recommendations that support informed business decisions. What you'll bring You'll have experience in several of the following areas: Security Operations, Security Incident Response or Security Engineering. Security Information and Event Management (SIEM) and Endpoint Detection & Response (EDR) technologies. Identity and Access Management, including MFA, Conditional Access and Privileged Access. Data Loss Prevention (DLP) technologies and policy management. Vulnerability Management and security hardening. Security architecture reviews and technical assurance. Threat detection, investigation and root cause analysis. Security automation, scripting or workflow improvement. You'll also be comfortable working with recognised security frameworks such as NIST CSF, ISO 27001, CIS Controls or the NCSC Cyber Assessment Framework. About you We're looking for someone who: Has significant experience within cyber security, information security or security operations. Enjoys leading investigations and solving complex technical challenges. Can influence stakeholders at all levels with clear, confident communication. Thinks strategically while remaining hands-on. Takes ownership and is driven by continuous improvement. Builds strong relationships and enjoys developing others. Professional certifications such as CISSP, CISM or CISA are desirable but not essential if you can demonstrate equivalent experience. Why join Lumentum? At Lumentum, you'll work alongside talented people solving real-world technology challenges in a global organisation that values innovation, collaboration and continuous learning. In return, you'll benefit from: The opportunity to influence enterprise-wide cyber security. Exposure to modern cloud and security technologies. A collaborative and supportive team environment. Ongoing professional development and learning opportunities. The chance to make a genuine impact protecting critical business services. Ready to make an impact? If you're passionate about cyber security, thrive in a fast-paced environment and want to help shape the future of security at a global technology leader, we'd love to hear from you.
A&O Shearman
Cyber Defence Analyst
A&O Shearman Dundonald, Belfast
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Ballyclare, County Antrim
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Ballynahinch, County Down
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Ballymena, County Antrim
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Lurgan, County Armagh
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Bangor, County Down
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Lisburn, County Antrim
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman City, Belfast
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Ballynahinch, County Down
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Newtownabbey, County Antrim
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Newtownards, County Down
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Dunmurry, Belfast
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Millisle, County Down
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Dunmurry, Belfast
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Newtownards, County Down
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Dromore, County Down
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Analyst
A&O Shearman Castlewellan, County Down
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Cyber Defence Analyst to join our Information Security team , based in the A&O Shearman's Belfast office. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do Investigate escalations: Investigate and prioritise Level 2 escalated events and alerts which have been detected through Level 1 monitoring activities by the firm's MSSP to identify potential incidents. Escalate these events further to senior colleagues and appropriate stakeholders when necessary. Investigate potential cyber security and data loss incidents raised by firm employees and third parties, following the defined playbooks for the Cyber Defence team. Respond to inbound queries to the information security mailbox, consulting with more senior colleagues for advice where required. Incident Response: Participate in incident response activities, including CSIRT activities, for confirmed incidents in local time-zone: Conduct initial triage and investigation. Assist with containment, mitigation, and remediation efforts, ensuring any forensic evidence is gathered and documented appropriately. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Tooling and Process Improvement: Assist with the implementation and enhancement of new and existing cyber defence tools and processes to maximise the effectiveness of the Cyber Defence function. Contribute to the maintenance and improvement of playbook and process documentation for Cyber Defence. Collaboration and Advisory: Collaborate with other areas of the firm (e.g. wider information security and IT teams) to improve the firm's security posture by implementing controls and fostering awareness. Advise business stakeholders on Cyber Defence, translating complex technical concepts into business-friendly language. What you will have At least 1+ years' experience in a security operations or similar technical security role. Operational-level experience in at least two of the following domains; Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. In-depth understanding of Networking and routing protocols (e.g. TCP/IP) and services (e.g. DNS, SMTP). Cyber defence technologies and tooling, including: SIEM solutions Intrusion Detection/Prevention Systems (ID/PS) Threat and vulnerability management platforms Endpoint protection Firewalls Highly analytical mindset with strong problem-solving skills. Ability to interpret data flows, assess security events, and draw logical conclusions. Excellent written and verbal communication skills. Ability to collaborate effectively across technical and non-technical teams. High level of personal integrity and ethics, demonstrating an appropriate level of judgement. A genuine passion for continuous learning and development in cybersecurity, staying up-to-date with the latest developments, trends, and technologies in the field. You will stand out if you have Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as: CISSP (Certified Information Systems Security Professional) CEH (Certified Ethical Hacker) CISM (Certified Information Security Manager) CompTIA Security+ Practical programming or scripting experience, particularly with: Python PowerShell NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
A&O Shearman
Cyber Defence Senior Analyst
A&O Shearman Lisburn, County Antrim
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .
Sep 10, 2026
Full time
We have an exciting opportunity for a Senior Cyber Defence Analyst to join the Information Security team at A&O Shearman in Belfast. Please note that weekend working is a requirement for this role, with exact shift patterns to be discussed at interview. All weekend hours are eligible for a premium payment, in addition to your base salary. What you will do The Cyber Defence Senior Analyst will reside within the firm's information security team and will be based in Belfast. They will perform a critical role in solidifying the firm's security posture, focusing on the in-depth analysis, and effective response to cyber security events and incidents within their time-zone. They will also contribute to the effectiveness and cohesion of the Cyber Defence team by providing guidance to, and sharing knowledge with, more junior Cyber Defence Colleagues. Investigating escalations: Investigate Level 2 escalated events and alerts which have detected been through Level 1 monitoring activities by the firm's Managed Security Service Provider (MSSP) to identify potential incidents. Assist and advise junior colleagues during investigations where additional experience is required. Incident Response: Conduct initial triage and investigation of confirmed incidents. Perform containment, mitigation, and remediation activities for incidents, ensuring that any required forensic evidence is gathered and documented appropriately along the process. Participate in security incident response exercises and contribute to post-exercise reviews. Be part of the Cyber Defence on-call rota, which may require out-of-hours work. Pick-up and hand-off incident response activities with the rest of the Belfast Cyber Defence team to other teams in different time-zones across the globe, as per our 24-7 follow-the-sun global model. Documentation and Process Improvement: Maintain and improve playbooks and process documentation for Cyber Defence. Ensure documentation reflects current threat landscapes and operational practices. Implement and enhance cyber defence tooling and processes under senior oversight. Develop new detection definitions and use cases for monitoring tools. Mentoring, Collaboration, and Support: Mentor junior colleagues to support their professional development and operational effectiveness. Collaborate with other teams (e.g. Information Security, IT) to implement security controls and raise awareness. Support the Threat and Vulnerability Management team in remediation activities by executing system and configuration changes. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs) using threat intelligence insights from the Threat and Vulnerability Management team, applying this knowledge in daily operations. Provide cyber defence guidance to business stakeholders, translating technical concepts into business language. Maintain awareness of current and emerging cyber threats, techniques, and procedures (TTPs). Assist the Information Security GRC team with client queries and audits from a cyber defence perspective. What you will have Experience in a security operations or similar technical security role, operationally in at least four of the following domains: Security engineering, Alert triaging, Rule writing, Incident response, Digital Forensics and Incident Response (DFIR), Threat intelligence and management, Vulnerability management, or Security control testing. Strong understanding of networking and routing protocols (e.g. TCP/IP) and core services (e.g. DNS, SMTP). Familiarity with cyber defence technologies and tooling, including SIEM solutions, Intrusion Detection & Prevention Systems (ID/PS), Threat and vulnerability management platforms, Endpoint protection, and Firewalls. Highly analytical mindset with the ability to interpret data flows, assess anomalies, and draw meaningful conclusions. Demonstrated ability to investigate complex security issues and propose effective solutions. Excellent verbal and written communication skills, translating cyber security terminology into professional and straightforward language suitable for a global law firm which includes technical and non-technical teams. A genuine passion for continuous learning and development in cybersecurity, staying up to date with the latest developments, trends, and technologies in the field. You will stand out if you bring Bachelor's degree in Information Security, Computer Science, Engineering, Technology, or a related field. Industry-recognised certifications such as, CISSP, CEH, CISM, CompTIA Security+ Experience working with major cloud service providers (CSPs) technologies, such as: Microsoft Azure Google Cloud Platform (GCP) Amazon Web Services (AWS) Prior legal firm or professional services firm experience Practical experience with scripting languages such as Python or PowerShell to support automation and tooling enhancements. NO AGENCIES PLEASE - A&O Shearman does not accept unsolicited CVs. For further information, please see our UK Recruitment Agency Policy and our commitment to direct sourcing here .

Modal Window

  • Blog
  • Contact
  • About Us
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • Facebook
  • Twitter
  • Instagram
  • Pinterest
  • Youtube
Parent and Partner sites: IT Job Board | Search Jobs Near Me | RightTalent.co.uk | Quantity Surveyor jobs | Building Surveyor jobs | Construction Recruitment | Talent Recruiter | London Jobs | Property jobs
© 2008-2026 Jobs Hiring Near Me