Rodeo
Get started

Ofgem

Lead Cyber Security Analyst

England
£35.2k – £48.6k/yr
Posted about 24 hours ago
Sign up to applySee more jobs like this
Get notified of more jobs like this · No spam, ever

How your CV stacks up

1Upload CV
2Analyse CV
3Improve CV

Upload your CV to see how well it fits this job role

?%

About the job

Successful candidates may be based in any of our office locations – Cardiff, Glasgow or London. We especially welcome applicants from Cardiff and Glasgow. 1 day per week in the office (20%)

Job summary

Across government, cyber security is fundamental to protecting critical services, safeguarding sensitive data and maintaining public trust. As cyber threats continue to evolve in scale and sophistication, organisations must strengthen their ability to detect, analyse and respond to potential incidents in real time. Ofgem plays a vital role in the UK’s energy system, protecting consumers and enabling a more secure, fair and sustainable energy future, and effective cyber security operations are essential to ensuring resilience and continuity of services.

Ofgem is on a significant transformation journey. Within the Digital, Data and Security Services (DDSS) directorate, we are strengthening our cyber security capability to support a modern, digitally enabled organisation. This includes enhancing monitoring, threat intelligence and incident response processes to ensure that risks are identified early and managed effectively.

As a Lead Cyber Security Analyst, you will play a critical role in protecting Ofgem’s systems and services. You will lead the monitoring and analysis of security events, drive improvements to detection capabilities and support the effective investigation and response to incidents. You will work across security operations, threat intelligence and vulnerability management, ensuring that the organisation remains resilient against a dynamic threat landscape.

This is a technically demanding and high-impact role, requiring strong analytical capability, experience in security operations and the ability to lead activity across complex environments. You will act as both a subject matter expert and a leader, supporting the development of capability and driving continuous improvement across cyber security operations.

Reasons to use Rodeo

I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?

Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.

Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.

Start with a chat, not a search bar

Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.

P

Graduate Consultant — 2026 Scheme

PwC·London, UK
£35,000/yr

Why you're a good match

Strong

Your economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.

See breakdown
Save jobNot relevant
View details

It searches the market for you

Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.

Why you're a good match

You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.

See breakdown
Strong

Experience fit

Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.

See breakdown
Strong

Only hits

No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.

Job description

You will be responsible for:

  • Leading the monitoring and analysis of security events, ensuring threats are identified, investigated and responded to effectively.
  • Managing the development and implementation of the monitoring roadmap, enhancing detection capabilities across the organisation.
  • Overseeing the triage and investigation of security alerts using SIEM and other monitoring tools, ensuring appropriate escalation and response.
  • Leading the development of automated monitoring and detection processes, improving efficiency and accuracy of threat detection.
  • Managing vulnerability assessment and remediation activities, ensuring risks are prioritised and addressed using a risk-based approach.
  • Leveraging threat intelligence to inform security operations, identify risks and enhance preventative controls.
  • Leading incident response activities, including investigation, containment and recovery, and contributing to continuous improvement through lessons learned.
  • Providing expert advice to stakeholders on security risks, mitigations and best practice.
  • Supporting resilience through preparedness exercises, red teaming and continuous capability development.
  • Producing reporting and insight on security posture, risks and trends for senior stakeholders.

We are looking for:

A skilled and experienced cyber security professional who can operate effectively in a complex, fast-moving environment. You will bring strong technical expertise in security operations, along with the ability to lead and influence across teams.

You may come from a security operations, threat intelligence or cyber defence background, but you will demonstrate:

  • Experience working within a Security Operations environment
  • Strong experience in incident detection, analysis and response across complex systems
  • Expertise in intrusion detection, threat intelligence and vulnerability management
  • Experience working with security tools, including SIEM and monitoring platforms
  • The ability to communicate complex security issues clearly to technical and non-technical stakeholders

Get help with your application

Your very own career expert that helps elevate your application to the next level.

Get help applying for this job

Relevant certifications such as SANS, GIAC or CISSP are expected (or willingness to achieve). Experience working in government or regulated environments, and familiarity with threat landscapes relevant to energy or critical infrastructure, would be beneficial.

This is an opportunity to play a key role in safeguarding Ofgem’s digital environment. You will help ensure that systems and services are secure, resilient and capable of responding effectively to cyber threats, supporting the organisation’s mission at a time when cyber security has never been more critical.

Person specification

Essential Criteria

  • Demonstrable experience in analysing incidents across a complex environment. (Lead Criteria)
  • Experience in intrusion detection and analysis. (Lead Criteria)
  • Experience in a Security Operations environment.
  • Previous exposure to IT and network security and networking technologies and with system, security, and network monitoring tools.
  • Either holds, or can achieve, SC clearance.
  • SANS or GIAC Security Operations Modules or CISSP.

Desirable Criteria

  • Sound awareness of the threat environment faced by government, regulatory departments and the energy industry.
  • Experience with M365 and Azure-related Security tooling.

Interested in this opportunity? You can register your interest via LinkedIn now. We’ll be in touch with suitable candidates to encourage you to apply when the role launches on Civil Service Jobs in the coming weeks, where you’ll need to submit your full application.

Trusted by 25,000+ job seekers

“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”

Jessica, London

Get help applying for this job

Location

England, United Kingdom

Sign up to applySee more jobs like this