Aufgaben
We are looking for an experienced Information & Cyber Security Specialist to join our newly integrated Cyber Security function. This role has a primary focus on security operations, incident investigation, detection engineering, vulnerability management and security automation and orchestration. It offers the opportunity to take meaningful ownership of operational security capabilities, influence how they develop and help shape a modern, intelligence-led and increasingly automated Cyber Security function.
Reporting into the Information & Cyber Security Leader, you will work hands-on with security technologies, investigations and improvement activity, while collaborating with colleagues across Cyber Security, Architecture, IT Operations, business teams and our external security providers. This is not a line management role. However, you will have the autonomy to shape assigned capabilities, improve how services operate, share your expertise and support the development of colleagues.
Rollenverantwortung
- Investigate security alerts and incidents using SIEM, XDR, identity, endpoint, email, network and cloud telemetry.
- Support the coordination of containment, eradication, and remediation activity, ensuring actions are understood, appropriately prioritised and completed.
- Develop, test and tune security detections, improve alert quality and help maintain visibility of detection coverage against relevant threats and attacker techniques.
- Take ownership of assigned security operations capabilities, identifying weaknesses, proposing improvements and seeing agreed work through to completion.
- Operate vulnerability management processes, including scanning, validation, threat-informed prioritisation, remediation coordination, exception escalation and closure assurance.
- Work with IT Operations, system owners and suppliers to ensure material vulnerabilities and security weaknesses are addressed within agreed timescales.
- Develop automation and orchestration that improve investigation, enrichment, triage, evidence collection, reporting and response workflows.
- Explore and implement appropriate uses of Microsoft Security Copilot, AI and SOAR technologies, ensuring automated activity remains controlled, auditable and subject to appropriate human review.
- Support the operation and improvement of Microsoft Defender, Microsoft Entra, Conditional Access, endpoint security, identity controls and other assigned security technologies.
- Create and maintain clear runbooks, technical procedures, investigation records, service documentation and operational evidence.
- Share knowledge with colleagues and provide practical coaching and quality support to the Information & Cyber Security Analyst.
- Contribute to wider information security, cyber risk, assurance, third-party security, governance and compliance activities as team priorities require.
- Participate in the Cyber Security on-call rota and support the response to significant out of hours cyber incidents.
Unser idealer Kandidat/in
You will have strong hands-on cyber security experience and be comfortable taking an investigation or improvement activity from initial identification through to a clear outcome. You should be able to demonstrate experience in several of the following areas:
- Security incident investigation and response.
- SIEM or XDR investigation.
- Detection engineering and alert tuning. [CH1]
- Vulnerability management.
- Endpoint, identity, email, network or cloud security.
- Analysing and correlating security telemetry.
- Incident-response procedures and playbooks.
- Security automation, orchestration or scripting. [CH2]
- Working with a managed SOC, MDR or other external security partners.
- Translating technical findings into clear risks, decisions and actions.
You will also need:
- Strong analytical and investigative judgement.
- The ability to work independently and take ownership of assigned outcomes.
- A practical, delivery-focused approach and willingness to get involved.
- Clear written and verbal communication.
- Willingness to contribute outside your primary specialism when wider Cyber Security priorities require it.
- The existing right to work in the United Kingdom.
DESIRABLE EXPERIENCE
Experience in any of the following would be advantageous, but is not essential:
- Taegis XDR or MDR.
- Sophos security technologies.
- Microsoft Defender.
- Microsoft Entra and Conditional Access.
- Microsoft Security Copilot.
- Microsoft Sentinel.
- Threat hunting.
- Digital forensics and evidence handling.
- Security Architecture or design assurance.
HOW WE WORK
Our Information Security and Security Operations teams have recently come together as one Cyber Security function. We are developing an integrated operating model covering governance, risk, protection, detection, incident response, resilience, automation and continuous improvement.
Each team member will have areas of expertise and ownership, but cross-skilling and collaboration are fundamental to how the team will operate. You will be encouraged to bring ideas, challenge existing ways of working and put your own stamp on the capabilities assigned to you. You must be willing to support colleagues, share knowledge and help get priority security work over the line as the new function develops.
WORKING ARRANGEMENTS
The role is based in Arete, Cumbernauld (G88 0HH) with an expected working pattern of four days on site and one day working from home. Occasional travel to other WG&S sites will be required. The successful candidate will participate in an out-of-hours call rota.
Was wir Dir bieten
- We offer a competitive salary and benefits which are designed to promote our employees financial wellbeing. Employees are also eligible to participate in a bonus plan.
- Our employees enjoy a generous holiday entitlement and an opportunity to ‘buy’ or ‘sell’ some holiday entitlement.
- Private Healthcare and Doctor@Hand (remote GP service).
- Our employees can join a defined contribution pension plan. Employees contribute either 4% or 5% of salary, the company contributes 8% or 10% depending on the employee contribution. Employee contributions can be made through salary sacrifice.
- Our Employee Assistance Programme offers practical, impartial support on everyday matters ranging from medical, financial and legal to home and family issues.
- Our Life Assurance cover is a multiple of eight times your annual basic salary.
- Product allocation so that you can enjoy our fantastic portfolio of brands.
- Our Cycle to Work scheme allows you to hire a bike for an agreed length of time, and then snap it up for a fraction of its original value. All while making savings (at least 25%) and spreading the cost.
- Every employee has the opportunity to claim up to £1,000 per year for a charity or charities for which they have raised money, volunteered their time or personally donated.
- Learning resources to help you be your best self.
Über William Grant & Sons
A HOME FOR RARE CHARACTERS
William Grant & Sons: a home where Rare Characters thrive.
We value every employee for their rare character, distinctive skills, experience and perspectives. Every one of our colleagues has a role to play in helping us to achieve our growth ambitions.
At William Grant & Sons, our vision is to be A home where rare characters thrive. We value all colleagues for their rare character, distinctive skills, experience and perspectives. Diversity & Inclusion is at the heart of how we do things at William Grant & Sons, fully aligned to our purpose and our company values. We strive to create an environment where we can all be our best and bring our whole selves to work.
OUR AGILE WORKING PHILOSOPHY
Our agile working philosophy is to “Have your best work day everyday”.
Built on trust, we empower our rare characters to have their best work day every day. Where flexibility and positive working experiences help employees to feel connected and release potential across our teams.
We are open to discussing possible agile/flexible working options as part of the recruitment process.
INCLUSIVE RECRUITMENT PROCESS
Diversity & Inclusion is at the heart of how we do things at William Grant & Sons, fully aligned to our purpose and our company values. We want to ensure that our recruitment process is inclusive.
William Grant & Sons
