Skip to main content

Senior CSIRT Analyst

  • Cyber Security
  • London

G-Research is a leading quantitative research and technology firm, with offices in London and Dallas.

We are proud to employ some of the best people in their field and to nurture their talent in a dynamic, flexible and highly stimulating culture where world-beating ideas are cultivated and rewarded.

This role is based in our new Soho Place office – opened in 2023 - in the heart of Central London and home to our Research Lab.

The role

The Senior CSIRT Analyst will play a key role in G-Research’s Cyber Security Incident Response Team (CSIRT), specialising in cloud detection and response across AWS and hybrid environments.

You’ll investigate, respond to and proactively hunt for threats across a diverse technology landscape, including high-performance compute clusters, Kubernetes and containerised infrastructures, and corporate Windows environments.

You’ll leverage your expertise in cloud-native security tooling and multi-SIEM operations, such as Elastic, Azure and AWS, to strengthen our detection and response capabilities.

As a senior member of the team, you’ll participate in purple and red team exercises, continuously validating and improving the team’s effectiveness against advanced adversaries. Mentoring junior analysts, contributing to automation initiatives and supporting the on-call escalation rota for out-of-hours response will also be a key part of the role.

Key responsibilities for this role include:

  • Investigating, triaging and responding to complex security incidents across cloud (AWS, Azure), hybrid and on-premises environments

  • Proactively hunting for threats and developing detection logic to improve coverage across Elastic, Azure Sentinel and AWS Security Hub

  • Participating in red and purple team exercises to test, validate and enhance detection and response capabilities

  • Developing and maintaining automation and orchestration workflows in Tines and Python to streamline investigation and response

  • Collaborating with engineering teams to improve log ingestion, detection rules and platform reliability

  • Providing mentorship and technical guidance to junior CSIRT analysts

  • Supporting and participating in the on-call escalation rota for out-of-hours incidents

  • Contributing to continuous improvement of CSIRT processes, playbooks and threat models.

Who are we looking for?

The ideal candidate will ahve the following skills and experience:

  • Significant experience in cyber incident response, detection engineering and/or SOC/CSIRT operations

  • Strong expertise in cloud security within AWS and Azure, with hands-on experience investigating incidents in cloud environments

  • Proficiency with SIEM platforms, such as Elastic Security, Azure Sentinel, AWS Security Hub or GuardDuty, and log analysis.

  • Experience working with red and purple team exercises and adversary simulation

  • Knowledge of containerised environments, including Kubernetes and Docker, and cloud-native infrastructure security

  • Programming and scripting experience, preferably in Python, and exposure to automation platforms such as  Tines and SOAR

  • Strong understanding of modern attack techniques, threat actors and the MITRE ATT&CK framework

  • Prior mentoring, coaching or senior technical leadership experience within a security operations context

Behavioural Competencies:

  • Analytical Thinking: The ability to investigate complex threats, synthesise data from multiple sources and identify root causes.

  • Resilience: Comfortable operating in high-pressure environments and responding to incidents in real time

  • Collaboration: The ability to work closely with engineering, operations and leadership teams to improve overall security posture

  • Innovation: Enthusiastic about automating workflows and experimenting with new detection and response approaches

  • Leadership: The ability to guide junior analysts, foster team growth and promote a culture of continuous improvement

Who should you apply?

  • Highly competitive compensation plus annual discretionary bonus

  • Lunch provided (via Just Eat for Business) and dedicated barista bar

  • 30 days’ annual leave

  • 9% company pension contributions

  • Informal dress code and excellent work/life balance

  • Comprehensive healthcare and life assurance

  • Cycle-to-work scheme

  • Monthly company events

Location: London
Apply Now
An image of Simon
Simon Cyber Security Manager

"There are lots of people within the business that have started as a junior and progressed – which I think is testament to G-Research's belief in fostering growth and recognising potential."

Find out more

What our people say

An image of Willy
Willy Data Services Manager

"My team and I have access to a wide range of training opportunities, which allowed us to get the entire team AWS certified within a quarter. We’re actively working on the latest AI and machine learning projects to stay ahead of industry standards."

Find out more
An image of Gabriel
Gabriel Software Engineer

"The problems we solve are often novel in nature, meaning we get to solve the previously unsolved. I find this to be a great way to stay challenged and engaged!"

Find out more
An image of Yoga
Yoga Software Engineering Manager

"The friendly, collaborative atmosphere here is a breath of fresh air and a perfect fit for me."

Find out more
An image of Garrett
Garrett Software Engineer

"The willingness to collaborate between both teams and functions has made the transition into my new role as easy as possible."

Find out more
An image of Michael
Michael Software Engineer

"It’s a privilege to be in a place where my curiosity is nurtured and my learning journey is supported!"

Find out more
An image of Joshua
Joshua Platform Engineer

"The best thing about working at G-Research is being around such smart people, it motivates you to always want to grow and learn."

Find out more
An image of Margot
Margot HRIS manager

"I enjoy how dynamic the work environment at G-Research is. It keeps you busy and continuously creates opportunities to develop yourself and your career, too."

Find out more
An image of Mario
Mario FPGA Manager

"While some people might think working in finance may not be too exciting, at G-Research, it is, especially if you see it as a problem to solve. How do we solve this algorithm? How do we get faster? This is why I think people are really excited to work here."

Find out more
An image of Alexander
Alexander Software Engineer

"I've felt very lucky to work with teams of people across the business who are generous with their time, knowledge and ideas as we collaborate to continuously build and rebuild complex systems with lots of moving parts."

Find out more
An image of Sebastian
Sebastian Senior Quantitative Researcher

"G-Research makes a lot of effort to have a very open culture and gives a lot of freedom to its individual researchers to pursue directions that they think are valuable, with each researcher very much driving their own research. I didn’t feel like I was losing a lot of freedom compared to academia."

Find out more
Senior CSIRT Analyst Apply now

Stay up to date with G-Research