Where you'll fit in:Future energy will not look like energy as we know it today. We need to not just think about our future, but build for it. Now.
We are seeking a Security Operations Analyst that will become a member of a growing global Security Team in Kraken Technologies. You'll play a crucial role in helping to ensure that we continue to protect Kraken and our Clients by analysing and responding to security incidents. This is a critical position that is a full-time member of a team approaching security in a way which is able to move at the pace of Kraken.
What you'll own:Working as part of the Global Cyber Defense Center (CDC), you will contribute to a broad range of cyber defense functions, including Kraken's Security Operations Center (SOC), threat intelligence, detection engineering, incident response, and continuous improvement of our detection and response capabilities.
- Monitoring, triaging, and investigation of security incidents on Kraken's infrastructure and Client instances
- Responding to alerts generated by our Security Information and Event Management (SIEM) system
- Automating and continuously expanding the detection capabilities
- Analysing application, Cloud and access logs and events to identify potential security threats and vulnerabilities and coding this analysis for future playbooks
- Identifying where escalation of incidents, or notification to third parties may be required
- Providing incident response support working with our engineering and product teams where necessary
- Maintaining, improving and automating incident response processes and playbooks, to continually improve the team's capabilities
- Preparing reports and incident summaries, as well as reviewing and improving the content and presentation of reports produced by the team
- Maintaining and updating security incident documentation including analysis findings and recommended mitigation strategies, automating wherever possible
- Liaising with stakeholders in relation to incident root cause and providing remediation/improvement recommendations
This role requires participation in a roster covering weekends and public holidays, in co-ordination with other team members globally, in order to deliver a 24x7 operations capability.This is a critical role in a growing, global team. You'll have the opportunity to get involved in exciting and innovative security-related initiatives and we encourage you to take on new challenges that align with your skills and interests, collaborating with other teams to drive improvements in security across our entire organisation.
What you'll bring to the party:- A strong Security Operations and technology background
- Experience in using SIEM platforms to analyse and respond to security alerts
- Familiarity with EDR (Endpoint Detection and Response) tools and their capabilities, including host containment and evidence preservation
- Knowledge of best practices for analysing incidents and logs in a cloud environment
- An understanding of how different mitigation strategies can contain and respond to security events
- An understanding of Cloud and software architectures
- Strong analytical and problem-solving skills, with the ability to identify, triage and mitigate incidents
- Ability to collaborate effectively across Cyber Defense functions and with internal stakeholders, communicate clearly during potentially high-pressure incidents, and support colleagues to deliver a coordinated, timely, and effective incident response.
- A passion for security, a drive to improve security alerting and response processes by harnessing technology and automation
- Good experience in at least some of the areas mentioned above (we're not expecting any candidate to be an expert in all areas)
☆Bonus points:- Experience working in a SOC or CERT that monitors multiple client infrastructure/instances
- Experience with AWS environments including AWS security monitoring, logging (e.g., CloudTrail, GuardDuty)
- Relevant certifications or qualifications related to Security Operations
- Basic scripting or automation skills using SOAR tooling to optimise tasks and develop security automation workflows
What you'll love about us:- Flexible working environment - genuine work life balance here, we are in the top 5 companies in the UK, we treat you as a human, and do our best to make work and life merge smoothly together
- Equity Options Scheme - you own your own part of the business, share options in Kraken so we all work together towards success
- Office - have a certain tech requirement? We'll do our best to get it. We also have drinks, snacks and a coffee machine at the office space on Bourke street.
- Your development is important - we support and help with development including internal and external courses, learning, study support etc, all bespoke to you
Are you ready for a career with us? We want to ensure you have the right tools and environment to unleash your potential. If you have any accommodation requests, please contact us at [redacted]. We'll do our best to tailor the experience to your needs so you can feel comfortable, confident and be at your best!