Cyber Threat Analyst
@ Hong Kong Exchanges and Clearing Limited (HKEX)

London, England, United Kingdom
£50,000
On Site
Full Time
Posted 22 days ago

Your Application Journey

Personalized Resume
Apply
Email Hiring Manager
Interview

Email Hiring Manager

XXXXXXXX XXXXXXXXXXX XXXXXXX***** @hkex.com
Recommended after applying

Job Details

About the Cyber Threat Analyst Role

This entry-level position within the Information Security team at the London Metal Exchange (LME) is responsible for conducting penetration testing of LME systems and applications. The role involves scoping, performing assessments, identifying vulnerabilities, documenting exploitation steps, and providing remediation recommendations.

Key Responsibilities

Penetration Testing & Security Assessments: Participate in offensive assessments including red/blue team testing, breach and attack simulation, and bug bounty initiatives. Support incident response and threat handling, including on-call and after-hours support. Review intelligence feeds, generate advisories, support threat hunting, and optimize detection and response rules.

Security Engineering & Automation: Assist in deploying and maintaining security tools (e.g., E-Mail Security, DLP, SIEM, Endpoint Protection). Develop automation solutions using scripting languages such as Python, PowerShell, and Bash, and contribute to Infrastructure as Code efforts using tools like Terraform or Ansible.

Operational Support: Provide support for incident response, security tooling troubleshooting, and access control issues. Maintain documentation, standards, and participate in on-call and weekend support rotations as needed.

Qualifications / Skills

Desirable qualifications include a University degree in a STEM subject and entry-level certifications such as CompTIA Security+, Microsoft SC-900, or AWS Cloud Practitioner. Relevant hands-on experience through platforms like TryHackMe, HackTheBox, or OSCP-related training, as well as demonstrable activity on Github, are highly valued.

Required knowledge includes a basic understanding of ethical hacking, penetration testing, networking and security protocols, operating systems, and scripting or programming. Familiarity with CI/CD tools and cloud platforms, as well as security tooling like EDR, SIEM, and Antivirus, is also required.

Work Environment

The role reports to the UK Division Information Technology team, is based in London and follows a standard 40-hour work week within a permanent, corporate grade framework.

Key skills/competency

  • Penetration Testing
  • Security Assessments
  • Incident Response
  • Scripting
  • Automation
  • Threat Hunting
  • Red/Blue Team
  • Security Tooling
  • Cloud Platforms
  • Documentation

How to Get Hired at Hong Kong Exchanges and Clearing Limited (HKEX)

🎯 Tips for Getting Hired

  • Craft tailored resume: Highlight cybersecurity projects and certifications.
  • Emphasize practical skills: Include penetration testing and scripting expertise.
  • Research HKEX culture: Understand their global trading environment.
  • Prepare for technical interviews: Review security frameworks and automation tools.

📝 Interview Preparation Advice

Technical Preparation

Review penetration testing methodologies.
Practice Python, Bash, and PowerShell scripting.
Set up test environments using virtualization.
Study security tool configurations.

Behavioral Questions

Describe a time you solved a technical problem.
Explain your approach to teamwork during incidents.
Discuss how you manage tight deadlines.
Share an example of learning from failure.

Frequently Asked Questions