Information Security Analyst
The Information Security Analyst plays a critical role in supporting and delivering the information security roadmap through operational expertise and collaboration with teams across the business. You will be expected to contribute to day-to-day security operations, supporting incident response, security monitoring, threat detection, and continuous improvement of security processes.
You will work in a dynamic environment with unique challenges every day, acting as a security subject matter expert by providing technical input, consultancy, and advice to projects and business units. Using your proven experience in Information Security, you will help strengthen our security posture by proactively identifying threats, improving detection capabilities, and ensuring the consistent delivery of security services across the business.
The role combines technical responsibilities with business-facing activities, including supporting security initiatives, developing monitoring and detection capabilities, participating in incident response, and working closely with colleagues across Security Architecture, Governance, Risk & Compliance, Security Engineering, and IT.
- Monitor and analyze security events and alerts from SIEM, EDR, and other security tools.
- Investigate and triage security incidents, escalating critical threats when necessary.
- Conduct threat hunting activities to identify suspicious or malicious behavior within the environment.
- Analyze phishing, malware, and other cyber threats, providing remediation recommendations.
- Support incident response activities, including containment, eradication, and recovery efforts.
- Perform security assessments and vulnerability reviews, tracking remediation progress with stakeholders.
- Develop and maintain security monitoring use cases, detection rules, and alerting mechanisms.
- Produce incident reports, security metrics, and recommendations to improve the organisation's security posture.
- Strong knowledge of security operations, incident response, and threat detection methodologies (required).
- Experience with SIEM platforms (e.g., Microsoft Sentinel, Splunk, QRadar) and security monitoring tools (required).
- Understanding of network security, operating systems (Windows/Linux), and common attack techniques (required).
- Ability to analyze logs, investigate security events, and perform root cause analysis (required).
- Strong communication, documentation, and stakeholder management skills (required).
- Industry-leading maternity and paternity leave and paid time off if you have caring responsibilities.
- Discounts at a range of high-street retailers.
- Financial compensation, pension, and bonus schemes.
- Tools and services to help support your well-being, including support with mental health and financial education.
- Gym discounts and our cycle to work scheme.
- Hybrid working model with up to 80% remote work.
William Hill is one of the UK's best-known bookmakers, founded by its namesake in 1934 taking bets around Birmingham. It has since grown into an international, multi-brand betting and gaming business spanning online and retail. The company is now part of evoke plc (formerly 888 Holdings), one of the world's leading online betting and gaming groups. Headquartered in London, William Hill operates sports betting and gaming products across multiple markets.
