StepChange Debt Charity Jobs

Register for job alerts

Find out when we're hiring first.

Register for job alerts and we'll tell you when your perfect job comes up.

Sign up now »

Cyber Security Analyst

Salary
Up to £40,000
Location
Leeds/Hybrid
Shift Pattern
Monday to Friday 9am - 5pm
Contract Type
Permanent
Hours of Work per Week
35
Closing Date
19/05/2026
Ref No
2386

Are you a Cyber Security Analyst who thrives on identifying and responding to evolving cyber threats across complex technology environments?

Could you play a key role in strengthening our organisation’s security posture by supporting day-to-day cyber operations, vulnerability management, and incident response?

Can you help drive continuous improvement in our cybersecurity capabilities as a Cyber Security Analyst, working closely with teams to enhance resilience and protect critical systems?

 

As a Cyber Security Analyst, you will support the day-to-day delivery of cybersecurity operations, helping to identify, assess, and respond to risks, vulnerabilities, and incidents across our technology estate. This is a hands-on role where you’ll work closely with resolver teams across infrastructure, cloud, end user, and applications to strengthen security controls and improve overall resilience.

 

Collaborating with the Cyber Security Manager, you’ll ensure alignment with Governance, Risk, and Compliance (GRC) strategy while contributing to the ongoing development of policies, processes, and controls that protect the organisation from emerging threats.

 

Your role

You’ll support operational security activities including monitoring, alert triage, and incident response, working alongside internal teams and third-party providers to investigate and resolve security events. You’ll play a key role in vulnerability management by reviewing findings, assessing risk, tracking remediation, and reporting on patching performance.

 

You will also help maintain and optimise security tooling across endpoints, identity, cloud, and email systems, identifying opportunities to strengthen baseline controls and improve configurations. Supporting cloud security across AWS and Microsoft 365, you’ll work with technical teams to enforce secure standards and maintain visibility of all cloud services.

 

Your role will also involve contributing to privileged access management, supporting access reviews, and promoting least privilege principles. Acting as an escalation point for the outsourced SOC, you’ll analyse security telemetry, tune detection rules, and contribute to continuous improvement of monitoring and response capabilities.

 

In addition, you’ll assist with incident response activities, support forensic investigations, and help maintain playbooks aligned with Cyber Essentials Plus, ISO 27001, and NCSC CAF guidance. You’ll collaborate across teams to embed security into everyday operations, contribute to audits and compliance activities, and support awareness initiatives to build a strong security culture across the organisation.

 

Experience

Hands-on experience working in a cybersecurity or IT security role, supporting operational security, vulnerability management, or incident response is essential. You’ll also bring experience using vulnerability scanning tools such as Defender, Qualys, Tenable, or similar, along with a solid understanding of SOC operations and threat detection methodologies such as MITRE ATT&CK.

You’ll have working knowledge of securing cloud platforms including AWS, Azure, and Microsoft 365 using native security tools. In addition, familiarity with Cyber Essentials Plus requirements, patching processes, and broader security frameworks will be key to succeeding in this role.

 

Skills and Abilities:

An analytical and investigative mindset is essential, with the ability to identify and assess security threats effectively. You’ll be comfortable working in time-sensitive situations such as incident response and remediation deadlines, while maintaining a high level of integrity, accountability, and a collaborative approach aligned to organisational values.

 

You’ll also bring the ability to collaborate across technical teams and influence the adoption of secure practices. Clear documentation and reporting skills are key, enabling you to communicate findings to stakeholders, alongside an adaptable and proactive attitude with a focus on continuous improvement in cybersecurity practices.

 

Equality, Diversity & Inclusion 

Belonging is central to who we are. We’re committed to building a workforce that reflects the clients we support, and to creating a culture where everyone feels valued and able to be themselves. 

We welcome applications from people of all backgrounds and life experiences. If you need a reasonable adjustment during the recruitment process so you can perform at your best, just let us know. We’re here to support you. 

 

Search vacancies

Advanced search

Register for job alerts

Find out when we're hiring first.

Register for job alerts and we'll tell you when your perfect job comes up.

Sign up now »

Speculative applications

We'd also welcome a speculative application if you think you'd fit in with our team.

Send an application here »

Follow us on social media