Flexjet Logo

Flexjet

Information Security Analyst

Posted 4 Days Ago
Be an Early Applicant
In-Office
Farnborough, Rushmoor, Hampshire, England, GBR
Junior
In-Office
Farnborough, Rushmoor, Hampshire, England, GBR
Junior
Investigate and respond to security incidents, serving as an escalation point for SOC events. Improve detection through alert tuning, monitoring use cases, and security analytics across endpoint, identity, email, network, and cloud environments. Support vulnerability management, hardening, playbook development, automation, vendor risk assessments, audits, and European aviation compliance including EASA Part-IS. Produce security metrics and communicate risks to technical and business stakeholders while participating in an on-call rotation.
The summary above was generated by AI

POSITION SUMMARY

Flexjet is a global leader in premium private aviation, delivering exceptional travel experiences through an ultramodern fleet and teams across North America and Europe. Built on a culture of expertise, precision, safety and service, every part of our organisation plays a role in maintaining the trust of our Owners and ensuring the seamless delivery of world-class aviation services.

As an Information Security Analyst based at our European headquarters in Farnborough, you will help protect the systems, data and services that support our global operations. Working closely with the global Information Security team and colleagues across the business, you will investigate threats, strengthen security controls and contribute to the resilience, safety and compliance of a leading international aviation organisation.

YOUR MISSION

· Investigate and respond to security alerts and incidents, acting as an escalation point for events requiring deeper technical analysis.

· Improve detection by tuning alerts, analysing false positives and recommending monitoring use cases across endpoint, identity, email, network and cloud services.

· Strengthen resilience by supporting vulnerability management, security hardening, playbooks and automation across on-premises and cloud environments.

· Support European compliance by gathering evidence, maintaining records and contributing to risk assessments, audits and regulatory activities, including EASA Part-IS.

· Translate security into action by communicating findings, risks and recommendations clearly to technical teams, management and operational stakeholders.

DUTIES & RESPONSIBILITIES

· Serve as the primary escalation point for incidents raised by our SOC requiring deeper investigation and analysis

· Recommend improvement and tuning opportunities with alerting

· Implement components of a multi-layered defense to protect information system resources and data, both on-premises and in the cloud

· Assist with gathering evidence of technical and administrative controls implementation for audits and reviews.

· Provide recommendations to improve monitoring for on-premises and cloud resources to assist with the development of high-quality alerts

· Utilize EDR and other security tools to develop playbooks and increase automated responses capabilities

· Investigate, respond, report, and document security events.

· Consolidate data to develop accurate reports and metrics to help measure impact of implemented and improved security controls

· Perform risk assessments on prospective IT vendors, hardware, software, services, and components.

· Support information security risk management and compliance activities relevant to European aviation operations, including EASA Part-IS and data protection requirements.

· Participate in an on-call rota and provide support outside of normal business hours when operationally required.

EDUCATION & EXPERIENCE

• Bachelor’s Degree in Computer Science preferred

• Cyber Security certification (GCIH, GCFA, Security+, CySA+, CASP+)

• 1-3+ years of experience in Information Security

• 1+ years of experience with either programming, networking, system administration, or DevOps

• Experience performing firewall reviews - Palo Alto, Cisco, Checkpoint, pfSense.

• Experience with SIEM’s such as LogRhythm, Splunk, Azure Sentinel, Alien Vault or Rapid 7

• Strong experience using Microsoft 365 suite of products such as Endpoint Manager (InTune), Defender, Purview (Compliance), Entra, etc.

• In depth experience securing a hybrid infrastructure

• Strong Cloud Experience with either AWS, Azure, or GCP.

REQUIRED SKILLS

· Knowledge MITRE ATT&CK, and Kill Chain

· Knowledge of IOC extraction, computer forensics, and malware analysis, technologies and methods

· Expert IPv4 Networking fundamental skills are required. TCP/UDP, Routing, VLANs, Subnet masking, DNS, DHCP, common protocols and ports. IPv6 is a bonus.

· Ability to identify and validate vulnerabilities

· Strong verbal and written communication

o Ability to communicate security issues to peers and management

· Solid understanding of Windows Server Technologies including Active Directory, File Permissions, Print Servers, Group Policies, Clustering

· Self-starter who works well independently or with a team

· Manages time well working simultaneous challenges without undue stress.

· Flexibility and willingness to work in a changing, fast-paced environment.

Candidates must possess the legal ability to work in the United Kingdom.

Flexjet is an equal opportunity employer. We aim to choose individuals who have the highest integrity; those who personify genuine concern for customers and fellow employees alike. More than anything, we look for individuals who grasp the importance of trust in an employer/employee relationship.

Flexjet London, England Office

London, United Kingdom

Similar Jobs

Mid level
Digital Media • Gaming • Software • Esports • Automation
Manage and run vulnerability scans, assess and communicate technical risk, coordinate remediation and testing, support audits and compliance (including PCI DSS), investigate security issues, and embed security across projects to protect live operations.
Top Skills: Pci DssVulnerability Scanning Tools
Entry level
Digital Media • Gaming • Software • Esports • Automation
Manage vulnerability scanning across endpoints, assess and communicate technical risk, plan specialist testing, support audits and compliance (including PCI DSS), investigate security issues, and coordinate remediation with technical and non-technical teams to protect live operations.
Top Skills: Pci Dss
Senior level
Fintech • Professional Services • Real Estate • Financial Services
Conduct information security risk assessments, evaluate controls, produce reports and dashboards, track remediation, and escalate unresolved risks. Maintain the Group Information Security Risk Framework and apply ISO 27001, NIST, CIS, PCI DSS, and DORA standards. Support third-party security assurance, supplier due diligence, audits, questionnaires, governance reporting, and security awareness initiatives while collaborating with security, IT, risk, compliance, and audit stakeholders.
Top Skills: Artificial IntelligenceCis ControlsCloud TechnologiesDoraIso 27001Nist Cybersecurity FrameworkPci Dss

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account