Skip to main content
AfterDuty

Senior IT Security Analyst

La Fosse · London, Greater London

Type
Full-time
Posted
10 days ago

Overview

Your digital forensics and cybercrime investigation experience from policing translates well into incident response and threat analysis.

About this role

This role is a senior technical contributor within a global cyber security team, owning selected cyber security domains end-to-end and driving practical improvements to reduce cyber risk.

The role combines analyst and engineering responsibilities across security tools, vulnerability and exposure management, web and email security, incident response, and threat-informed remediation.

The role works closely with infrastructure, cloud, application, identity and business teams to identify security issues, prioritise actions based on real-world attacker behaviour, and deliver measurable improvements to the cyber defence posture.

The successful candidate can demonstrate that they have

  • Operated as a senior technical contributor in cyber or infrastructure security.
  • Owned or materially contributed to one or more cyber security domains, such as endpoint security, vulnerability management, identity security, network security, incident response or Microsoft 365 / Azure security.
  • Used CrowdStrike or equivalent EDR tooling to investigate detections, support incident response and improve endpoint security controls.
  • Used Zscaler ZIA/ZPA or equivalent secure web gateway, private access, zero trust or network access security technologies.
  • Performed vulnerability assessment, exposure analysis or remediation prioritisation across enterprise technology environments.
  • Applied threat intelligence, MITRE ATT&CK or exploitation-based evidence to prioritise mitigations.
  • Supported or led cyber security investigations and incident response activities.
  • Collaborated with infrastructure, cloud, application, identity and business teams to deliver security improvements.
  • Used scripting, queries, automation or data analysis to improve security outcomes.

You will need

  • Strong hands-on experience administering, tuning and operationalising CrowdStrike Falcon, including endpoint protection, EDR investigations, detection analysis and response workflows.
  • Strong hands-on experience administering and supporting Zscaler ZIA and ZPA, including policy design, access control, traffic analysis and security troubleshooting.
  • Practical experience leading or supporting vulnerability and exposure management programmes, including vulnerability analysis, risk-based prioritisation, remediation tracking and validation of control effectiveness.
  • Strong knowledge of real-world attacker tactics, techniques and procedures (TTPs) and the ability to translate threat intelligence, attack paths and exploitation trends into actionable security improvements.
  • Experience conducting security investigations and incident response activities, including alert triage, root cause analysis, containment, remediation and lessons learned.

About cyber security & digital forensics roles for ex-police

Cyber security, digital forensics and incident-response roles. DMIs, cybercrime investigators and digital forensics officers bring evidential discipline and investigative judgement that DFIR and security teams struggle to hire.

See all cyber security & digital forensics jobs in London

Why this fits a police background

  • Intelligence & OSINT
  • Incident command & response
  • Investigative casework
  • Security operations

What cyber security & digital forensics roles pay ex-police

Advertised UK ranges, editorial estimates reviewed July 2026

Digital forensics analyst£32,000–£45,000
DFIR consultant£45,000–£65,000
Senior forensics / IR specialist£60,000–£80,000
Threat-intelligence specialist£55,000–£80,000
Full cyber security & digital forensics salary guide →

More cyber security & digital forensics jobs for ex-police

  • £35,000 – £40,000Estimated

    Your risk assessment and incident management skills from policing are directly applicable to this GRC role.

    Posted 4 days ago

  • Full-time

    Your incident command and multi-agency coordination experience translates directly to operational resilience and third-party oversight.

    Posted 4 days ago

  • Full-time

    Your investigative mindset and evidence-handling discipline from policing transfer directly to digital forensics and incident response.

    Posted 5 days ago

  • GRC Manager - 6 month FTC

    Trayport · London

    Full-time

    Your experience managing risk, policy, and regulatory compliance under frameworks like PACE transfers directly to GRC.

    Posted 7 days ago