Location
London
Hours
Follow-the-sun shift rotation: 1200hrs - 0000hrs (midday to midnight) London Time, 4 days on, 4 days off rotation
Salary
Negotiable
About the Role
The London Stock Exchange Group (LSEG) is seeking an experienced, dedicated, and driven Attack Monitoring Analyst to join the Global Security Operations Centre (GSOC) team. As part of LSEG Security Operations, you will play a key role in continuously monitoring and responding to cyber security incidents using people, process, and technology. This role involves identifying and responding to cyber security incidents and enhancing the defensive capabilities of the GSOC. The ideal candidate will have a solid technical background, a firm understanding of modern attack techniques, and knowledge of the typical lifecycle of cyber attacks. You will triage security events, respond methodically to incidents using playbooks, operate SIEM tools (such as Splunk, QRadar, or LogRhythm), research threat intelligence, develop and improve run books and use cases, and stay current with vulnerabilities, attacks, and countermeasures. This is a fast-paced role requiring calmness under pressure and strong collaboration skills.
Experience
- Operating or administrating SIEM platforms (e.g. Splunk, QRadar, LogRhythm)
- Solid understanding of networks including TCP/IP stack, organisational architectures, and common protocols abused by malware
- Security event analysis, triage, incident handling, and root-cause identification
- Knowledge of attacker tools, techniques, and procedures, ideally from direct experience
- Cyber security knowledge from academic or corporate environments
- Ability to work calmly in a fast-paced and demanding environment
- Strong verbal and written communication and collaboration skills
- Security industry certifications such as OSCP, GIAC, CCNA
- Certifications demonstrating SIEM operational competence
- Proficiency in one or more programming languages (e.g. Python, PowerShell, Java, C#)
About you
You are technically skilled, analytical, and proactive with a passion for cyber security. You thrive in dynamic environments and are committed to continuous learning and improvement. You value teamwork and clear communication and are motivated to contribute to a global security operations team that protects critical financial infrastructure.
Qualifications
Relevant security certifications and programming skills as listed above are highly desirable. A strong technical foundation and a willingness to stay current with evolving cyber threats are essential.
London Stock Exchange Group











