Threat Management Consultant
Remote working
6 months
UMBRELLA ONLY
Eligible for SC or Active SC - will be able to start before the clearance checks are complete
Essential Skills for the role
- Establish an operational interlock with the CSMS and own security incident response and recovery on behalf of IBM as the supplier for PPB. Raise awareness to the CSMS ASAP on 24/7 basis.
- Advise on the sending of appropriate log event data to the CSMS
- Develop incident response playbooks
Design and implement SIOC processes to supplement the UK SOC monitoring service:
- Ongoing tuning of Qradar
- Threat Intelligence
- Threat Hunting
- Implement vulnerability scanning using Tenable in AWS
- Design and Implement UK SOC monitoring service
