Overview
In this role you will support security operations across Withers’ global technology estate. You will work with enterprise security platforms spanning endpoint protection, cloud security, threat monitoring and vulnerability management to protect client data and firm operations. You’ll engage with IT, legal and business stakeholders to explain security matters and drive risk-based decisions. The role emphasizes collaboration across offices and a pragmatic, service-oriented approach to resilience and incident response. This is an opportunity to contribute to a high-performance culture that values integrity and client trust.
Pay / Benefits
- hybrid working policy
- pension
- private medical
- season ticket loan
- subsidised gym memberships
- lifestyle discount scheme
Responsibilities
- Monitor, triage and investigate security alerts across security monitoring and response platforms
- Support incident response activities including containment, eradication, recovery, and evidence preservation
- Maintain and improve security monitoring, alert workflows, playbooks and management reporting
- Assist with vulnerability management, due diligence, audit responses, and compliance monitoring
- Provide practical, risk-based security advice for changes, cloud services and new technologies
- Support disaster recovery, business continuity and resilience testing
- Collaborate with colleagues across offices to align with security standards and risk appetite
- Maintain knowledge of supported technologies and emerging cyber threats
Key requirements
- 3+ years’ experience in cyber security, security operations, incident response or related technology role
- Practical experience with security monitoring, alert triage, threat detection, incident response, BEC, suspicious user activity and vulnerability management
- Hands-on experience with modern security operations tooling including SIEM/XDR, endpoint protection, cloud security, email security, DLP and information protection
- Good understanding of identity, access and cloud security including Entra ID, MFA, Conditional Access, privileged access and audit trails
- Awareness of MITRE ATT&CK and frameworks such as ISO 27001, NIST CSF, Cyber Essentials and GDPR
- Ability to manage security findings through remediation and reporting
- Desire to learn and keep the firm secure and trusted
- Strong written and verbal communication
- Good judgement and professionalism
- Prioritisation under pressure
- SIEM/XDR
- endpoint protection
- cloud security
…
