Overview
As an Incident Responder in Starling’s Security Operations, you’ll defend customers, assets and systems from cyber threats. You’ll join a 24/7 on-call team, leading incident response and containment efforts while shaping readiness processes. You’ll analyze logs across cloud, endpoint and network environments and collaborate with cross-functional teams to recover quickly. This role offers hands-on impact at a fast-moving, tech-first company with a strong mission to craft secure, fair banking experiences.
Pay / Benefits
- 25 days holiday
- Birthday leave
- Pension scheme
- Private Medical Insurance
- Life insurance 4x salary
- Perkbox membership
Responsibilities
- Conduct incident response activities to investigate and contain cyber security incidents
- Develop and maintain incident response and readiness processes
- Analyze logs from cloud, endpoint, and network sources to identify root cause and containment steps
- Plan and participate in Tabletop Exercises
- Document notes, findings, containment steps, and cause for each incident
- Collaborate with other teams to analyse, contain, eradicate and recover from cyber security incidents
- Present investigation findings to both technical and non-technical audiences
- Support the wider SecOps team with detection engineering and threat hunting
Key requirements
- 3+ years experience in cyber incident response and digital forensics
- Experience in handling incidents
- Experience in cloud forensics (GCP, AWS)
- Experience in endpoint and server forensics (Windows, MacOS, Linux)
- Experience in network forensics
- Experience with forensics data acquisition, disk forensics and memory forensics
- Experience in supporting and planning Tabletop Exercises
- Understanding of network, cloud and operating system security controls
- Excellent communication skills (verbal and written)
- Demonstrated teamwork and collaboration in a multi-functional team
- Time management, problem-solving and interpersonal skills
- Willingness to learn and share knowledge with the team
- Communication
- Teamwork
- Time management
- Cloud forensics (GCP, AWS)
- Endpoint and server forensics
- Network forensics
…
