This is a fulltime role for a Level 3 Information Security Analyst to join a mature managed services Cyber team who manage the security posture of critical infrastructure and services under an ISO27001 and Cyber Essentials certified managed service environment.
You will be responsible for conducting diverse cyber security tasks to make sure that our clients are secure and compliant to various EU/UK security regulations.
This is a technical handson role and the successful candidate will be responsible for (but not limited to) following:
- Conducting Cyber Threat Modelling (CTM) exercises
- NIS/NIS2 assessments and Remediation
- Security Gap assessments and Remediation
- Cyber Risk Management
- Third Party Risk Management
- Threat and Vulnerability Management
- Incident Response and Management
Qualifications :
Skills & Experience:
- Extensive experience in planning and executing CTM exercises for onprem as well cloudhosted applications or environments.
- Experience with CTM frameworks like STRIDE PASTA MITRE ATT&CK etc.
- Experience in conducting assessments against common security standards like ISO27001 NIST CSF NIST 80053 CIS benchmarks etc.
- Experience in assessing documenting and managing cyber risk including thirdparty risk.
- Experience in driving remediation efforts and implementing technical controls to address security gaps from various audits and penetration tests.
- In depth understanding of security requirements around EU as well as UK NIS/NIS2 directives and other relevant security regulations.
- Indepth understanding of general security principles.
- Indepth understand of how security technologies like firewalls EDR SIEM TVM operate in a coherent manner.
- Excellent communication reporting and presentation skills.
- Ability to plan prioritise be proactive and manage own workload.
- Understand uptodate security threats and common exploits.
- Have an open attitude to sharing knowledge and information.
- Excellent analytical and problemsolving skills.
- Desire to learn new technologies.
- A motivated attitude to learn and challenge comfort zone.
- To keep up to date with the latest security and technology developments.
Desirable
- Cyber Security certification (e.g. CISSP CISM CRISC etc.) or equivalent.
Additional Information :
- Must have the right to live and work in the UK or Ireland.
- Must meet Security Clearance requirements if this is a requirement of the role. All employees working on secure or sensitive contracts may be required to undergo additional vetting such as SC or NPPV clearance depending on business requirements. Any offer would be conditional upon the successful candidate passing BPSS which includes a criminal record check.
- Due to our location access to own transport is essential.
We dont believe hiring is a tick box exercise so if you feel that you dont match the job description 100% but would still be a great fit for role please get in touch.
Remote Work :
No
Employment Type :
Fulltime