Our Team Are you passionate about cyber security and eager to make a real impact? We're looking for a dynamic Senior Cyber Project Specialist to join our Security Solutions team. We are championing being Secure by Design across all our change and delivery programmes, embarking on threat modelling and giving straight up advice for colleagues on security best practice and our regulatory requirements. If you like a fast-paced and rewarding role that exposes you to exciting technology and will challenge you, then you may have just found it! We're looking for self-motivated enthusiastic individuals, who are ready to make a real difference to a successful team and play a key role in keeping our customers and colleagues safe. What you'll be doing * Build Key Relationships: Foster strong connections, help to shift our security culture and advocate for Secure by Design principles throughout our projects. * Engage in Design Reviews: Perform design reviews, threat modelling, and risk assessments to ensure robust security measures are incorporated from the outset. * Provide Expert Guidance: Offer expert advice and consultation on our policy & standards, industry regulations, frameworks, and best practices to support our change initiatives and operational teams. * Capture Security Evidence: Ensure that security requirements and considerations are seamlessly integrated into our change solutions and evident. * Assess Security Risks & Threat Landscape: Identify and evaluate security risks, making recommendations to continuously improve Virgin Money's security posture in an ever-changing threat landscape. * Define Security Test Objectives: Set clear objectives, boundaries, and focus areas for security tests to prevent vulnerabilities in our technical ecosystem. * Remediate Risks: Ensure that any risks or findings from security scans or tests are addressed within risk appetite before changes are promoted to production. * Support and Mentoring: Assist our team lead and provide mentorship to junior team members, fostering a collaborative and growth-oriented environment. We need you to have 路 Be Cyber Security Savvy: You know your Cyber Security Frameworks inside out and can explain their significance and impact to everyone from tech teams to senior business stakeholders. 路 Information Security Guru: You've got a comprehensive understanding across a range of Information Security domains, including Identity & Access Management, Network Security, Cryptography and Public Key Infrastructure, Mobile & API security, and more 路 Analytical Ace: Your strong analytical skills help you interpret how industry trends, regulations, and the threat landscape can affect our business. 路 Penetration Testing Pro: You've got experience in scoping penetration tests, conducting risk assessments, and overseeing remediation plans. 路 Influential Communicator: You're skilled at influencing, communicating, and collaborating with senior management and stakeholders. 路 Cloud Connoisseur: You're well-versed in Cloud Service models like IaaS, PaaS, and SaaS and the security context when deploying solutions into them. 路 Proven Track Record: You've got experience in a similar role, bringing valuable insights and expertise to the table. It's a bonus if you have but not essential * Regulated Industry Rockstar: You've got experience working in a regulated industry and the financial services sector. * Threat Modelling Maestro: You've participated in threat modelling using techniques like STRIDE. * Microsoft Specialist: You have knowledge and understanding of Microsoft Azure and 365 security products like Defender, Sentinel, Azure Information Protection, and Intune. * Cyber Community Champion: Holding Information Security certifications such as CISM, CCSP, CRISC, or CompTIA Security+ and being actively involved in the cyber community through participation in working groups, forums, and facilitating knowledge-sharing sessions.
Carbon60, Lorien & SRG - The Impellam Group STEM Portfolio are acting as an Employment Business in relation to this vacancy.