Cyber Security Analyst
Hybrid working - 3 days in London office
The main purpose of this role is to strengthen the protection of the company’s IT assets through the implementation and execution of the Group’s Cyber Security Reference Framework and methodology. You will demonstrate an overall understanding of the group’s security requirements, supports the business lines as their systems mature to ensure they follow the standard security practice and comply with corresponding security requirements.
You will act as a subject matter expert and a trusted advisor by providing authoritative IT cyber security advice and guidance to internal IT teams, ensuring secure by design principles are met by relevant IT teams. Working as part of a wider cyber security team, you will be dedicated to the cyber security environment of the UK business.
Essential experience            Â
•            Proven experience in IT Risk and Cyber Security
•            Strong working knowledge and thorough understanding of Data Security, Network and Infrastructure Security, Application Security, Vulnerability Monitoring, Cyber threats, security operation control mechanisms and solution (such as Firewall, SIEM, WAF, Malware Defences and IAM)
•            Good understanding of Cyber Security management and IT risk management processes
•            Broad knowledge of IT process, methodology, IT infrastructure, application development as well as latest technologies (e.g. Cloud, AI)
•            Experience in assessing and supporting compliance of security standards – such as PCI-DSS, Cyber Essentials, ISO 27001, NIST and those published by the NCSC
Key skills/competencies
•            Excellent communication skills including written and spoken English
•            Experience of and ability to liaise with senior stakeholders
•            Risk anticipation, risk articulation and constructive opinion
•            Understanding of corporate governance and compliance procedure
•            Motivated and driven
Desirable Qualifications
•            Formal IT/Cyber security certification – CISSP, SSCP, CISM, CSIRC
Due to the volume of applications received for positions, it will not be possible to respond to all applications and only applicants who are considered suitable for interview will be contacted.Â
Proactive Appointments Limited operates as an employment agency and employment business and is an equal opportunities organisation
We take our obligations to protect your personal data very seriously. Any information provided to us will be processed as detailed in our Privacy Notice, a copy of which can be found on our website http://proactive.it/privacy-notice/