Information Security Analyst
Quick Summary
Security Operations & Incident Response: Participate in security incident response activities, including investigation, containment, eradication, recovery, and post-incident analysis.
Create weekly and monthly reporting packs, demonstrating rolling position on vulnerabilities, threats, progress against plan on important security initiatives.
Responsibilities
~1 min read-
Participate in security incident response activities, including investigation, containment, eradication, recovery, and post-incident analysis.
-
Monitor security alerts from different sources (SIEM, EDR, cloud logs) and respond to security incidents promptly.
-
Develop and maintain security documentation, including procedures, runbooks, and incident response plans.
-
Conduct vulnerability assessments and support penetration testing remediation efforts.
-
Contribute to the development and delivery of security awareness training for employees, being a domain authority for security best practices.
-
Work with all IT teams to ensure security is integrated into all aspects of our infrastructure and applications at the design and requirements stage.
-
Find opportunities for automation and improvement of Rainforest Alliance security posture, including exception handling of threat alerts, patches, system and software vulnerabilities.
-
Create weekly and monthly reporting packs, demonstrating rolling position on vulnerabilities, threats, progress against plan on important security initiatives.
-
Conduct risk assessments and participate in security design reviews.
-
Administer and configure Azure security services (e.g., Azure Security Centre/Defender for Cloud, Defender for Endpoint, Azure Network Security Groups, Azure Key Vault, Azure Firewall).
-
Monitor Azure environments for security threats, vulnerabilities, and misconfigurations.
-
Make sure security best practices within Azure IaaS and PaaS deployments, audit Azure resources for compliance.
-
Lead and secure Entra ID (Azure Active Directory) including Conditional Access Policies, Multi-Factor Authentication (MFA), Identity Governance, and Privileged Identity Management (PIM).
-
Monitor Entra ID for suspicious activity and unauthorised access attempts.
-
Secure Microsoft 365 services (Exchange Online, SharePoint Online, OneDrive, Teams), looking after user access, data governance, and threat protection within the Microsoft 365 ecosystem.
-
Configure and improve Microsoft 365 security features (e.g., Defender for Office365, Data Loss Prevention (DLP), Microsoft Purview + compliance policies).
-
Develop, implement, and maintain security baselines and hardening standards for endpoints (Windows, macOS, Linux).
-
Configure and handle Microsoft Entra Domain Services based Group Policies (GPOs) and equivalent Mobile Device Management (MDM) solutions for security settings.
-
Ensure secure configuration and patch management across all endpoints.
-
Administer, configure, and optimise our XDR service, currently Crowdstrike Falcon but planned for migration to Microsoft Defender XDR.
-
Monitor alerts and dashboards for endpoint security incidents and threats, perform threat hunting and incident response activities using CrowdStrike data.
-
Develop and refine custom detections and response playbooks within CrowdStrike.
- Identify and prioritise remediation of CVE-aligned vulnerabilities
- Provide reporting to IT leadership on progress against remediation targets
- Notify IT teams of new high/critical vulnerabilities and coordinate remediation planning
- Design reporting dashboards for senior IT leadership
-
Minimum of 3 years of hands-on experience in an information security role.
-
Experience with Azure security services and best practices.
-
Experience with Entra ID (Azure Active Directory) and Microsoft 365 security administration.
-
Experience with endpoint hardening methodologies and implementation.
-
Hands-on administration and operational experience with CrowdStrike Falcon platform.
-
Experience with security incident response and threat hunting.
-
Experience with networking concepts.
-
Familiarity with security frameworks (e.g., Cyber Essentials, NIST, ISO 27001).
What We Offer
~1 min read
About the Role
~1 min readLocation & Eligibility
Listing Details
- Posted
- September 30, 2026
- First seen
- September 30, 2026
- Last seen
- October 2, 2026
Posting Health
- Days active
- 3
- Repost count
- 0
- Trust Level
- 56%
- Scored at
- October 4, 2026
Signal breakdown
Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.