We are looking to recruit an Information Security Analyst to join our existing IT team.
Working with the Head of Information Services to provide advice and guidance on info security and further develop security policies and processes across the entire infrastructure estate.
This greenfield role shall be responsible for supporting and maintaining information driven solutions within a fast-paced and challenging environment. As a member of the IT team, you will review all aspects of the information systems environment and its components. The successful candidate will be required to proactively improve and provide advice and guidance on information security matters. You will feel comfortable in a role with autonomy, being the sole information security employee within the group. You enjoy responsibility and work closely with the IT team.
We believe this is an excellent opportunity for candidates who have a strong understanding of IT infrastructure and information security (primary skill) and enjoy fast-paced environments.
Key Duties and Responsibilities
Assist with info security incident management and response activities
General day-to-day support on managing and responding to security alerts from systems and end users
Perform daily, weekly, and monthly security checks, reconciliation and compliance checks and investigate exceptions
Fulfil information security requirement questionnaires and support the process
Identify security risks
Report security risks to the (add your title here) and the board
Create security policies, processes, procedures.
Compile a list of technical controls to strengthen the security capabilities and resilience to continued cyber threats
Be aware of information security risks, mitigations, and opportunities to strengthen resilience to cyber-attacks and info security incidents
Implementation of monitoring, reporting systems and applications
Document user requirements and technical training guides
Risk registration - management
Test information security disaster recovery and capabilities - identifying issues and work with the organisation to drive continual improvements.
Qualifications:
Technical Requirements
Hands-on experience of information security
Exposure to info sec standards including but not limited to Cyber Essentials, ISO 27001, 27002 etc., Data Protection Act and the General Data Protection Regulation
Add in here any IT infrastructure awareness you’d like
Good understanding of security testing principles, including experience of vulnerability scanning, identifying, resolving, and reporting risks
Documentation creation
Detailed knowledge of:
Information Security
Threat analysis
Reporting
Information incident management
Security Incident Response processes, procedures, and best practices
Disaster Recovery and Business Continuity principles
Event and log analysis
Core Behavioural Skills:
Confident individual with good interpersonal skills, able to deal with people at all levels and communicate to users in a clear, non-technical language
Team-player
Analytically minded, able to break down and understand information
Must be comfortable with working in a fast-moving, dynamic environment
Strongly customer-focused, used to providing support to demanding users
Good organisational skills, used to managing and prioritising own workload
Ability to report on progress, timescales, outstanding and completed activities