Flexjet Logo

Flexjet

Information Security Analyst

Posted 14 Days Ago
Be an Early Applicant
In-Office
Farnborough, Rushmoor, Hampshire, England
Junior
In-Office
Farnborough, Rushmoor, Hampshire, England
Junior
Investigate and respond to security incidents, serving as an escalation point for SOC events. Improve detection through alert tuning, monitoring use cases, and security analytics across endpoint, identity, email, network, and cloud environments. Support vulnerability management, hardening, playbook development, automation, vendor risk assessments, audits, and European aviation compliance including EASA Part-IS. Produce security metrics and communicate risks to technical and business stakeholders while participating in an on-call rotation.
The summary above was generated by AI

POSITION SUMMARY

Flexjet is a global leader in premium private aviation, delivering exceptional travel experiences through an ultramodern fleet and teams across North America and Europe. Built on a culture of expertise, precision, safety and service, every part of our organisation plays a role in maintaining the trust of our Owners and ensuring the seamless delivery of world-class aviation services.

As an Information Security Analyst based at our European headquarters in Farnborough, you will help protect the systems, data and services that support our global operations. Working closely with the global Information Security team and colleagues across the business, you will investigate threats, strengthen security controls and contribute to the resilience, safety and compliance of a leading international aviation organisation.

YOUR MISSION

· Investigate and respond to security alerts and incidents, acting as an escalation point for events requiring deeper technical analysis.

· Improve detection by tuning alerts, analysing false positives and recommending monitoring use cases across endpoint, identity, email, network and cloud services.

· Strengthen resilience by supporting vulnerability management, security hardening, playbooks and automation across on-premises and cloud environments.

· Support European compliance by gathering evidence, maintaining records and contributing to risk assessments, audits and regulatory activities, including EASA Part-IS.

· Translate security into action by communicating findings, risks and recommendations clearly to technical teams, management and operational stakeholders.

DUTIES & RESPONSIBILITIES

· Serve as the primary escalation point for incidents raised by our SOC requiring deeper investigation and analysis

· Recommend improvement and tuning opportunities with alerting

· Implement components of a multi-layered defense to protect information system resources and data, both on-premises and in the cloud

· Assist with gathering evidence of technical and administrative controls implementation for audits and reviews.

· Provide recommendations to improve monitoring for on-premises and cloud resources to assist with the development of high-quality alerts

· Utilize EDR and other security tools to develop playbooks and increase automated responses capabilities

· Investigate, respond, report, and document security events.

· Consolidate data to develop accurate reports and metrics to help measure impact of implemented and improved security controls

· Perform risk assessments on prospective IT vendors, hardware, software, services, and components.

· Support information security risk management and compliance activities relevant to European aviation operations, including EASA Part-IS and data protection requirements.

· Participate in an on-call rota and provide support outside of normal business hours when operationally required.

EDUCATION & EXPERIENCE

• Bachelor’s Degree in Computer Science preferred

• Cyber Security certification (GCIH, GCFA, Security+, CySA+, CASP+)

• 1-3+ years of experience in Information Security

• 1+ years of experience with either programming, networking, system administration, or DevOps

• Experience performing firewall reviews - Palo Alto, Cisco, Checkpoint, pfSense.

• Experience with SIEM’s such as LogRhythm, Splunk, Azure Sentinel, Alien Vault or Rapid 7

• Strong experience using Microsoft 365 suite of products such as Endpoint Manager (InTune), Defender, Purview (Compliance), Entra, etc.

• In depth experience securing a hybrid infrastructure

• Strong Cloud Experience with either AWS, Azure, or GCP.

REQUIRED SKILLS

· Knowledge MITRE ATT&CK, and Kill Chain

· Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods

· Expert IPv4 Networking fundamental skills are required. TCP/UDP, Routing, VLANs, Subnet masking, DNS, DHCP, common protocols and ports. IPv6 is a bonus.

· Ability to identify and validate vulnerabilities

· Strong verbal and written communication

o Ability to communicate security issues to peers and management

· Solid understanding of Windows Server Technologies including Active Directory, File Permissions, Print Servers, Group Policies, Clustering

· Self-starter who works well independently or with a team

· Manages time well working simultaneous challenges without undue stress.

· Flexibility and willingness to work in a changing, fast-paced environment.

Candidates must possess the legal ability to work in the United Kingdom.

Flexjet is an equal opportunity employer. We aim to choose individuals who have the highest integrity; those who personify genuine concern for customers and fellow employees alike. More than anything, we look for individuals who grasp the importance of trust in an employer/employee relationship.

Similar Jobs

Entry level
Digital Media • Gaming • Software • Esports • Automation
Manage vulnerability scanning, assess security risks, coordinate testing and remediation, explain technical risks, support governance and audits, monitor emerging threats, and maintain security documentation and compliance across IT systems.
8 Days Ago
Hybrid
Manchester, Greater Manchester, England, GBR
Entry level
Entry level
Digital Media • Gaming • Software • Esports • Automation
Manage vulnerability scanning across IT endpoints, assess security risks, coordinate testing and remediation, explain patching urgency to technical and non-technical teams, support governance and audits, monitor emerging threats, document findings, and ensure compliance with security requirements and PCI DSS.
Top Skills: Pci DssVulnerability Scanning Tools
2 Days Ago
Hybrid
Manchester, Greater Manchester, England, GBR
Entry level
Entry level
Insurance
Supports information security operations across on-premise and cloud environments by monitoring alerts, investigating incidents, assessing controls, managing security risks, supporting audits and compliance, maintaining policies, coordinating third-party assurance, producing reports, and promoting security awareness. The role also contributes to incident response, remediation tracking, evidence gathering, root cause analysis, and continuous improvement of security controls and processes.
Top Skills: Azure Security ServicesEndpoint ProtectionSIEMVulnerability Management Tools

What you need to know about the Manchester Tech Scene

Home to a £5 billion digital ecosystem, including MediaCity, which consists of major players like the BBC, ITV and Ericsson, Manchester is one of the U.K.'s top digital tech hubs, at the forefront of advancements in film, television and emerging sectors like as e-sports, while also fostering a community of professionals dedicated to pushing creative and technological boundaries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account