Enable job alerts via email!

IT Security Analyst

Interface Recruitment UK

Leeds

On-site

GBP 40,000 - 70,000

Full time

25 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player seeks an IT Security Analyst to lead security initiatives and enhance the organization's resilience against cyber threats. This role offers the chance to shape the security landscape within a large professional services firm, ensuring the confidentiality, integrity, and availability of IT systems. The successful candidate will implement security controls, coordinate disaster recovery efforts, and work closely with management to identify vulnerabilities. Join a forward-thinking team where your expertise in IT security will not only protect the firm but also open up numerous career advancement opportunities.

Qualifications

  • Minimum 5 years of IT experience in infrastructure, system admin, or security roles.
  • Degree level education and security qualifications preferred.

Responsibilities

  • Implement and monitor security controls to protect information assets.
  • Coordinate with IT personnel to identify and plan security measures.

Skills

IT Security
Disaster Recovery
Business Continuity
Incident Investigation
Communication Skills
Vulnerability Management
Technical Documentation
Policy Drafting

Education

Degree Level Education
CompTIA Security+ or equivalent

Tools

ISO 27001
PCI-DSS
Cyber Essentials Plus
Encryption Key Management

Job description

Industry: Professional Services

Job Title: IT Security Analyst

Location: 2 Tower Works, Globe Road, Leeds, LS11 9QG

Shaping the overall Security focus of this large Professional Services firm will see the successful applicant open many more career opportunities throughout the organisation and work with autonomy that rarely exists in the market. The role is responsible for ensuring an appropriate focus is maintained on confidentiality, integrity and availability in the IT Security, Disaster Recovery and Business Continuity programs with a view to protecting the firm from risks inherent in operating a modern IT environment.

Responsibilities:
  • Implement, monitor and develop security controls to safeguard information assets.
  • Co-ordinate with Management and other IT personnel to identify and plan security controls in all aspects of data, applications, hardware, telecommunications and computer installations.
  • To continually improve the quality of the IT service delivered through proactivity and good communication.
Operational Security Coordination:
  • Monitor and coordinate with other team members to ensure that all security patches and anti-virus software is maintained to current levels on a timely basis.
  • Actively contribute to educating and raising awareness across the firm in relation to information security and cyber threats.
  • Assist with the investigation of information security incidents.
  • Maintain awareness of the threat landscape and take steps to minimise the impact this has on the IT environment.
  • Suggest and manage the implementation of controls to reduce the risks to the IT environment.
  • Coordinate the IT security testing cycle including the Penetration Testing, Cyber Essentials Plus and Phishing Susceptibility Testing.
  • Contribute to the completion of security questionnaires in accordance with requirements.
  • Create remediation plans and coordinate appropriate resources to close issues raised during security testing and audits.
  • Ensure all security updates detailed below have been applied and verified by the appropriate delivery team within the required timescales:
  1. a) all security software (e.g. operating systems and applications).
  2. b) all security hardware (e.g. firewalls, etc).
  3. c) all server applications (e.g. Exchange, SQL etc).
  4. d) all network devices such as switches and routers.
  5. e) ensure daily backups for storage and servers are taken and verified.
  • Assist the Head of IT with the management of the IT Risk Register.
  • Identify technical vulnerabilities and manage the remediation process.
Disaster recovery:
  • Ensure confidentiality, integrity and availability of IT systems during a business interruption event.
Security Support for Projects:
  • Working alongside the Information Security Manager, provide advice and guidance pertaining to the IT security and information security risk aspects of projects.
  • Identify security initiatives and work with the Information Security Manager to ensure that projects to mitigate security risks are defined and deployed.
Documentation:
  • Contribute and update documentation relating to the confidentiality, integrity and availability of the IT environment.
Education Requirements & Qualifications (preferable but not essential):
  • Educated to a degree level.
  • Qualification in CompTIA Security+ or equivalent.
Experience Requirements:
  • IT - minimum 5 years – experienced probably gained through working in an infrastructure, system administration or security role.
  • Working with security standards such as ISO 27001, PCI-DSS, Cyber Essentials Plus.
  • Encryption Key Management.
  • Writing technical documentation.
  • Drafting policy documents.
  • Presenting to Teams and Senior Management.
  • Experience of creating, adapting and following Best Practice procedures (such as ITIL) would be advantageous.
Work Hours:
  • 9:00 am until 5:30 pm.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.