Information Security Analyst

Company: Swissport International
Apply for the Information Security Analyst
Location: Runcorn
Job Description:

Overview

In this role you work with the Security Operations Centre to detect, investigate, and address insecure features and malicious activity across Swissport’s networks and infrastructure. You will run security controls, including email security gateways and vulnerability management systems, while contributing to user awareness and training. You’ll monitor security alerts from SOC, SIEM, and EDR platforms and help improve risk assessments, tooling, and processes. This is a chance to impact security posture in a fast-paced aviation environment and support a culture of continuous improvement.

Responsibilities

  • Monitor, investigate, and respond to security alerts from SOC, SIEM, and EDR platforms
  • Manage and fine-tune email security gateways and reduce false positives
  • Support vulnerability management from detection through remediation tracking
  • Assist with cyber risk assessments for new software and services
  • Conduct phishing simulations and improve user awareness
  • Coordinate and support user security awareness initiatives and training campaigns
  • Review web access requests for appropriate filtering and compliance
  • Ensure logging coverage and data integrity for the SIEM by validating log forwarding
  • Assist investigations involving potentially compromised accounts or endpoints
  • Contribute to documentation and process development for repeatable security operations
  • Collaborate with other teams to identify improvements to tools, processes, or controls

Key requirements

  • 2–3 years of hands-on cybersecurity or IT security operations experience
  • Familiarity with email security, endpoint detection and response, vulnerability management, and SIEM
  • Understanding of at least one information security framework (e.g., ISO 27001, NIST) and GDPR awareness
  • Strong communication skills to explain technical risks to non-technical users
  • Enthusiastic, proactive team player with a continuous improvement mindset
  • Ability to take initiative, work independently on routine tasks, and escalate when needed
  • Comfort in a fast-paced, operational environment with shifting priorities
  • Willingness to learn new skills; relevant certification (e.g., CompTIA Security+, Microsoft SC-900) is desirable but not essential
  • Experience in regulated or high-availability environments is a plus
  • strong communication
  • proactive collaboration
  • continuous learning
  • security operations
  • SIEM
  • EDR

Posted: September 14th, 2026