Find your next tech and IT Job or contract role.

Our job search is powered by Technojobs , part of the Free-Work group.

Your search returns 7 results.
Permanent

Job Vacancy
Security Analyst

Nexus Jobs Limited
Published on

£65k-75k
London, England, United Kingdom

Job Description Security Analyst Our Client is recognised brand in London. They are looking to recruit a Security Analyst with at least 5 to 7 years proven track record as a Security Analyst. Main Accountabilities • Technical leadership for all the Clients security solutions, including all the 3rd party managed services • Maintain the overall security of Company network, systems, and data • Monitor security access and manage IDS/IPS configurations • Establishing and implementing security best-practice standards as well as departmental policies and procedures • Responsible for Security scanning and the efficient remediation of vulnerabilities • Responsible for analysing all security incidents to determine root cause • Determine, recommend, and implement upgrade security measures and controls • Delivery security responses for customer and client compliance requirements • Developing and managing security plans with vendors • Audit activities of administrators and conduct Security awareness training Must have: • Bachelors Degree in Computer Science/Information Technology or equivalent experience • Demonstrable skills and capability in Security leadership and 3rd party management experience • CISSP certification preferred. Compliance knowledge required in ISO27001, PCI and GDPR. Possibly a certified ethical hacker • Knowledge of Security technologies is essential, such as network appliances, firewall administration, AD, IAM, PAM, SIEM, UEBA, AV, IDS/IPS and MDM solutions • Understanding of common frameworks, such as ITIL or LEAN is preferred • Good exposure of user environment management, including desktops/laptops, profile management, access control methodologies • Must be very proactive in understanding and staying up to date with current security technologies and industry technology trends The Client is based in Paddington London. The salary for this role is in the range £65K - £75K plus benefits. Do send your CV to us in Word format along with your salary and availability.

Permanent

Job Vacancy
Security Analyst

Nexus Jobs Limited
Published on

£65k-75k
London, England, United Kingdom

Job Description Security Analyst Our Client is recognised brand in London. They are looking to recruit a Security Analyst with at least 5 to 7 years proven track record as a Security Analyst. Main Accountabilities • Technical leadership for all the Clients security solutions, including all the 3rd party managed services • Maintain the overall security of Company network, systems, and data • Monitor security access and manage IDS/IPS configurations • Establishing and implementing security best-practice standards as well as departmental policies and procedures • Responsible for Security scanning and the efficient remediation of vulnerabilities • Responsible for analysing all security incidents to determine root cause • Determine, recommend, and implement upgrade security measures and controls • Delivery security responses for customer and client compliance requirements • Developing and managing security plans with vendors • Audit activities of administrators and conduct Security awareness training Must have: • Bachelors Degree in Computer Science/Information Technology or equivalent experience • Demonstrable skills and capability in Security leadership and 3rd party management experience • CISSP certification preferred. Compliance knowledge required in ISO27001, PCI and GDPR. Possibly a certified ethical hacker • Knowledge of Security technologies is essential, such as network appliances, firewall administration, AD, IAM, PAM, SIEM, UEBA, AV, IDS/IPS and MDM solutions • Understanding of common frameworks, such as ITIL or LEAN is preferred • Good exposure of user environment management, including desktops/laptops, profile management, access control methodologies • Must be very proactive in understanding and staying up to date with current security technologies and industry technology trends The Client is based in Paddington London. The salary for this role is in the range £65K - £75K plus benefits. Do send your CV to us in Word format along with your salary and availability.

Permanent

Job Vacancy
Technical Security Analyst

Zellis
Published on

Bristol Business Park, England, United Kingdom

About the role Do you want to be at the forefront of cyber security, protecting people, data and systems from the evolving digital threat landscape? Are you looking to apply your technical expertise in a collaborative and forward-thinking environment? As a Technical Security Analyst, you'll be part of our Security team who are responsible for keeping our technology, processes and people safe. You'll apply an understanding of cyber security to protect the organisation, systems, information, personal data and people from attacks and unauthorised access. Particular focus will be applied to Security Assessment, analysis, and giving advice on risk mitigations to a broad range of colleagues, internally and externally, including suppliers and customers. As a Technical Security Analyst you'll be a hands on technical security resource, configuring, monitoring and assessing security tooling and alerts. You'll provide operational support to technical teams responsible for configuring and operating secure systems to prevent security breaches and monitoring systems to detect and respond to security breaches. Your key responsibilities will include: Supporting Security partners delivering our Managed Security Operations Centre Services. Providing technical input to Security engagements with internal and external customers. Assisting in ongoing investigations, with forensic and response activities, information Security Incidents, events, and issues in accordance with relevant procedures and standards. Identifying cyber threats and vulnerabilities, ensuring that findings are managed appropriately and remediated according to agreed timescales. Assisting in the creation, testing, and implementation of response and recovery plans in support of incident management threat modelling. Researching and investigating attack techniques and recommending ways to defend against them. Supporting the Security function in all aspects of Security operations and management reporting. Performing technical assessments of new and existing processing systems, identifying potential weaknesses and recommending suitable protection measures. Participating in red teaming and simulation exercises (technical & non-technical), to better understand our cyber-attack and defence posture, rehearse responses, and evaluate readiness. Assisting with the creation and delivery of security awareness collateral, promoting an effective security culture. Providing subject matter expertise as required for key projects, functions, and services as required. Practicing continuous self-learning to keep up-to-date with industry trends and developments to enhance your relevant skills. Skills & experience Essential skills / behaviours: Youll have a broad understanding of the services that the organisation provides to its customer base and be able to map this to Cyber Security policies and standards. A very good working knowledge of the procedures and tools used within the security practice and wider security ecosystem. Youll develop an in-depth knowledge of the platforms, systems, services, and products that the organisation uses and the relationships between them. A good general understanding of information and cyber security theory and the way that technical tooling can reduce the threats and risks within an organisation. Critical competencies: Degree holder in relevant information security discipline or professional qualification, or the equivalent combination of professional qualification, training, and work experience. Minimum 1 year practical cyber-security experience. Excellent communicator with the ability to interface at the highest level and exhibit good verbal, written and presentation skills. Experience of working within key Cyber Security principles and standards (ISO 27001, NIST, Cyber Essentials, MITRE). [i] Experience working in a customer-facing role desirable. You should have experience in managing team driven workloads. Demonstrable experience driving continuous improvement initiatives. Benefits & culture At Zellis we create market-leading HR & Payroll products and services, to power exceptional employee experiences so that you and your people do better. Our multi-award-winning products pay over five million employees a year, with almost half (42%) of the FTSE 100, 50% of the top retailers and 30% of the top universities in the UK & Ireland as customers, making us the largest provider of Payroll and HR software and managed services. Our vision is to be the clear leader in pay, reward, analytics, and people experiences. We're passionate about creating an environment where people want to join, belong to, and be part of a progressive organisation. Our values, which were defined with input from all of our 2,000 colleagues, we live and breathe every day: Unstoppable together. Always learning. Make it count. Think scale. Our people are critical to our ongoing success; we're proud of our inclusive culture that gives you the platform to grow, challenge the status quo and play a crucial role in further enhancing our market position as the leading provider of HR & Payroll software and services. With Zellis you'll have the chance to stretch and challenge yourself in an environment that's varied, flexible and hugely supportive. We also love to reward and recognise our brilliant colleagues. As part of your benefits package, you'll receive: A competitive base salary. 25 days annual leave, plus your birthday off and the opportunity to buy additional holiday. Private medical insurance. Life assurance 4x salary. Enhanced pension scheme with company contributions up to 8.5%. A huge range of additional flexible benefits across financial & personal wellbeing, lifestyle & leisure.

Permanent

Job Vacancy
Senior Information Security Analyst

Nexus Jobs Limited
Published on

£70k-85k
London, England, United Kingdom

Job Description Senior Information Security Analyst Our Client is a leading global company specialising in pharma products. They are looking to recruit a Senior Information Security Analyst with at least 5 to 7 years expertise in Technology Security. The Senior Information Security Analyst is responsible for maintaining information security policies, architecture, technical standards, technical controls, security solutions, guidelines, procedures, and other elements necessary to maintain security posture. Responsible for assessing information risk and facilitating remediation of identified vulnerabilities & risks across the organization. Accountable for coordinating the execution of security measures to protect our computer infrastructure, information systems and to ensure the organization maintains an acceptable risk posture. The Senior Information Security Analyst is highly engaged in risk management and mitigation, including evaluating vendor risk, examining vendor contracts for terms of service, understanding third-party risk, and data privacy issues. The analyst serves as an expert on cybersecurity protection, detection, response, and recovery. This individual is responsible for coordinating penetration testing and managing internal and external cybersecurity analysts to detect, mitigate, and analyze threats. Works closely with other teams to develop controls such as firewalls, business systems, data leakage protection systems, patching, encryption, vulnerability scanning, application code scanning, remediation as well as defining configuration for a variety of security tools. Prior experience in an international enterprise environment is essential. Responsibilities: • Collaborate with IT teams for input and operational requirements to design and implement the companys overall cybersecurity strategy. • Identify and address security gaps discovered through ongoing monitoring of all information security controls and implement enhancements to security controls. • Manage access to elevated privileges accounts and audit activities to meet business and regulatory requirements. • Evaluate and/or implement cybersecurity solutions and controls to maintain confidentiality, integrity, and availability. • Actively participate in proofs-of-concept for new security technologies by developing selection criteria to identify appropriate security solutions to support strategic, operational needs, and security requirements. • Participate in the development and testing of the security incident response plan, act as the incident response leader. • Develop security, risk, and compliance reports and alerts. • Participate in the yearly review of policies and procedures to support information security, risk, and security compliance activities. • Participates in developing, testing, and implementation of disaster recovery procedures for the cybersecurity technology in place. • Manages cybersecurity projects to ensure that the delivery is on-time, within budget, and adopted to meet the companys information protection requirements. • Performs or coordinates internal security assessments, penetration tests, vulnerability scans, and assess organization cybersecurity maturity Complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations. • Provides internal customer support via assigned tickets for security-related issues, while ensuring assignments are resolved within assigned SLAs. • Evaluate and implement CIS critical security controls where necessary. • Will provide input into cybersecurity strategic roadmap and annual budget. • Adhere to applicable change management policy and procedure. Qualifications: • Bachelors degree required; advanced degree highly desirable. Candidates must possess significant analytical skills, which evolved from early academic training in Cybersecurity, Information Systems, Computer Science, or similar discipline. • Provides a documented work history that includes a minimum of 5-years experience in Information Security. • Proficiency in security framework models such as NIST, etc., implementing and auditing security measures, security response, and incident management. • Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network security, administration of DLP, antivirusantimalware, IDS/IPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs. • Experience with identity access management solutions, such as SAMLOATH • Experience with HIDS and NIDS • The ideal candidate possesses relevant information security or cybersecurity certifications. • Requires the ability to analyze and recommend changes to the security landscape where necessary to meet the information security objectives of the organization. • Participates in change management meetings and provides expert input to ensure security is maintained. • Knowledgeable in security best practices such as encryption, hashing, vulnerability scans, event log monitoring, intrusion detection and prevention, eDiscovery, and content filtering. • Ability to manage and continuously improve upon vulnerability management program. • Ability to propose solutions for closing identified vulnerabilities in the infrastructure. Desired Qualifications: • Certified Information System Security Professional (CISSP), NIST Cybersecurity Framework (NCSF), Certified Cloud Security Professional (CCSP) andor Certified Ethical Hacker (CEH) • Knowledge and experience with Microsoft Office and Visio. • Knowledge of WAN technologies including MPLS, SD WAN. • Knowledge of cloud providers security (AWS, GCP or Azure). • Prior experience managing Cisco ELA products including DNA, Firepower, ISE Management console, Umbrella, Cisco AMP for endpoints, Stealth watch, as well as Splunk, SolarWinds, Varonis and Darktrace. • Prior experience with Azure Rights management and Information protection highly desirable. • Project management skills are highly desirable. • Previous experience in a HIPAA/FDA regulated environment. Competencies: To perform the job successfully, an individual should demonstrate the following behaviors: • Motivation/Initiative: Motivated and curious, willing to ask questions, research issues, and take on challenging projects/assignments; creative, brings new ideas to the table, exhibits self-confidence. Position requires a strong achievement motivation and tenacity. • Administrative Skills: Possesses the ability to organize and follow-through on multiple tasks recognizes and attends to important details with accuracy and efficiency. Works to complete goals, tasks, and plans, anticipate potential problems and analyze alternative solutions. • Interpersonal Style: (Interpersonal Skills, Communication, Teamwork); develops/ maintains effective working relationships; listens attentively to others; communicates ideas clearly (written & verbal); relates to people in an open/ sincere manner; participates effectively in meetings; assists in finding solutions as well as identifying problems; communicates appropriately with supervisor, and co-workers. Able to influence other individuals and maintain calm and reliable demeanor in the face of challenges. • Self-Management: (Adaptability/Flexibility, Stress Tolerance, Autonomy); adapts readily to changes in routine; works effectively in stressful situations; needs limited guidance and direction; is comfortable working in a fast-paced environment; is reliable and dependable; is results-oriented; maintains productivity and composure under pressure; views problems as opportunities to create solutions. • Thinking Skills: Diagnoses problems efficiently; gathers sufficient input before making decisions or plans; makes timely decisions, quickly determines sources of the problem, identifies information needed to solve a problem and analyzes alternative solutions, communicates issues and decisions effectively to the team. • Customer Orientation: Sensitive & responsive to internal customer needs; demonstrates skills in customer services and satisfaction; maintains a positive attitude, willing to listen to customer problems and seeks solutions; stays in tune with changing needs of customers. • The analyst will adapt readily to change, work effectively in stressful situations, need limited guidance and direction, and is comfortable working in a fast-paced environment. • Diagnoses problems efficiently gather sufficient input before making changes, quickly determines sources of issues, identifies information needed to solve the problems, and analyzes and communicates issues with effective alternative solutions to the team. This a UK based role at the Central London offices of the Client, although for the foreseeable future you will be based at home and work remotely. The salary for this role will be in the range £70K - £85K. Please do send your CV to us in Word format along with your salary and availability.

Permanent

Job Vacancy
Senior Information Security Analyst

Nexus Jobs Limited
Published on

£70k-85k
London, England, United Kingdom

Job Description Senior Information Security Analyst Our Client is a leading global company specialising in pharma products. They are looking to recruit a Senior Information Security Analyst with at least 5 to 7 years expertise in Technology Security. The Senior Information Security Analyst is responsible for maintaining information security policies, architecture, technical standards, technical controls, security solutions, guidelines, procedures, and other elements necessary to maintain security posture. Responsible for assessing information risk and facilitating remediation of identified vulnerabilities & risks across the organization. Accountable for coordinating the execution of security measures to protect our computer infrastructure, information systems and to ensure the organization maintains an acceptable risk posture. The Senior Information Security Analyst is highly engaged in risk management and mitigation, including evaluating vendor risk, examining vendor contracts for terms of service, understanding third-party risk, and data privacy issues. The analyst serves as an expert on cybersecurity protection, detection, response, and recovery. This individual is responsible for coordinating penetration testing and managing internal and external cybersecurity analysts to detect, mitigate, and analyze threats. Works closely with other teams to develop controls such as firewalls, business systems, data leakage protection systems, patching, encryption, vulnerability scanning, application code scanning, remediation as well as defining configuration for a variety of security tools. Prior experience in an international enterprise environment is essential. Responsibilities: • Collaborate with IT teams for input and operational requirements to design and implement the companys overall cybersecurity strategy. • Identify and address security gaps discovered through ongoing monitoring of all information security controls and implement enhancements to security controls. • Manage access to elevated privileges accounts and audit activities to meet business and regulatory requirements. • Evaluate and/or implement cybersecurity solutions and controls to maintain confidentiality, integrity, and availability. • Actively participate in proofs-of-concept for new security technologies by developing selection criteria to identify appropriate security solutions to support strategic, operational needs, and security requirements. • Participate in the development and testing of the security incident response plan, act as the incident response leader. • Develop security, risk, and compliance reports and alerts. • Participate in the yearly review of policies and procedures to support information security, risk, and security compliance activities. • Participates in developing, testing, and implementation of disaster recovery procedures for the cybersecurity technology in place. • Manages cybersecurity projects to ensure that the delivery is on-time, within budget, and adopted to meet the companys information protection requirements. • Performs or coordinates internal security assessments, penetration tests, vulnerability scans, and assess organization cybersecurity maturity Complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations. • Provides internal customer support via assigned tickets for security-related issues, while ensuring assignments are resolved within assigned SLAs. • Evaluate and implement CIS critical security controls where necessary. • Will provide input into cybersecurity strategic roadmap and annual budget. • Adhere to applicable change management policy and procedure. Qualifications: • Bachelors degree required; advanced degree highly desirable. Candidates must possess significant analytical skills, which evolved from early academic training in Cybersecurity, Information Systems, Computer Science, or similar discipline. • Provides a documented work history that includes a minimum of 5-years experience in Information Security. • Proficiency in security framework models such as NIST, etc., implementing and auditing security measures, security response, and incident management. • Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network security, administration of DLP, antivirusantimalware, IDS/IPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs. • Experience with identity access management solutions, such as SAMLOATH • Experience with HIDS and NIDS • The ideal candidate possesses relevant information security or cybersecurity certifications. • Requires the ability to analyze and recommend changes to the security landscape where necessary to meet the information security objectives of the organization. • Participates in change management meetings and provides expert input to ensure security is maintained. • Knowledgeable in security best practices such as encryption, hashing, vulnerability scans, event log monitoring, intrusion detection and prevention, eDiscovery, and content filtering. • Ability to manage and continuously improve upon vulnerability management program. • Ability to propose solutions for closing identified vulnerabilities in the infrastructure. Desired Qualifications: • Certified Information System Security Professional (CISSP), NIST Cybersecurity Framework (NCSF), Certified Cloud Security Professional (CCSP) andor Certified Ethical Hacker (CEH) • Knowledge and experience with Microsoft Office and Visio. • Knowledge of WAN technologies including MPLS, SD WAN. • Knowledge of cloud providers security (AWS, GCP or Azure). • Prior experience managing Cisco ELA products including DNA, Firepower, ISE Management console, Umbrella, Cisco AMP for endpoints, Stealth watch, as well as Splunk, SolarWinds, Varonis and Darktrace. • Prior experience with Azure Rights management and Information protection highly desirable. • Project management skills are highly desirable. • Previous experience in a HIPAA/FDA regulated environment. Competencies: To perform the job successfully, an individual should demonstrate the following behaviors: • Motivation/Initiative: Motivated and curious, willing to ask questions, research issues, and take on challenging projects/assignments; creative, brings new ideas to the table, exhibits self-confidence. Position requires a strong achievement motivation and tenacity. • Administrative Skills: Possesses the ability to organize and follow-through on multiple tasks recognizes and attends to important details with accuracy and efficiency. Works to complete goals, tasks, and plans, anticipate potential problems and analyze alternative solutions. • Interpersonal Style: (Interpersonal Skills, Communication, Teamwork); develops/ maintains effective working relationships; listens attentively to others; communicates ideas clearly (written & verbal); relates to people in an open/ sincere manner; participates effectively in meetings; assists in finding solutions as well as identifying problems; communicates appropriately with supervisor, and co-workers. Able to influence other individuals and maintain calm and reliable demeanor in the face of challenges. • Self-Management: (Adaptability/Flexibility, Stress Tolerance, Autonomy); adapts readily to changes in routine; works effectively in stressful situations; needs limited guidance and direction; is comfortable working in a fast-paced environment; is reliable and dependable; is results-oriented; maintains productivity and composure under pressure; views problems as opportunities to create solutions. • Thinking Skills: Diagnoses problems efficiently; gathers sufficient input before making decisions or plans; makes timely decisions, quickly determines sources of the problem, identifies information needed to solve a problem and analyzes alternative solutions, communicates issues and decisions effectively to the team. • Customer Orientation: Sensitive & responsive to internal customer needs; demonstrates skills in customer services and satisfaction; maintains a positive attitude, willing to listen to customer problems and seeks solutions; stays in tune with changing needs of customers. • The analyst will adapt readily to change, work effectively in stressful situations, need limited guidance and direction, and is comfortable working in a fast-paced environment. • Diagnoses problems efficiently gather sufficient input before making changes, quickly determines sources of issues, identifies information needed to solve the problems, and analyzes and communicates issues with effective alternative solutions to the team. This a UK based role at the Central London offices of the Client, although for the foreseeable future you will be based at home and work remotely. The salary for this role will be in the range £70K - £85K. Please do send your CV to us in Word format along with your salary and availability.

Permanent

Job Vacancy
Senior Information Security Analyst

Nexus Jobs Limited
Published on

£70k-85k
London, England, United Kingdom

Job Description Senior Information Security Analyst Our Client is a leading global company specialising in pharma products. They are looking to recruit a Senior Information Security Analyst with at least 5 to 7 years expertise in Technology Security. The Senior Information Security Analyst is responsible for maintaining information security policies, architecture, technical standards, technical controls, security solutions, guidelines, procedures, and other elements necessary to maintain security posture. Responsible for assessing information risk and facilitating remediation of identified vulnerabilities & risks across the organization. Accountable for coordinating the execution of security measures to protect our computer infrastructure, information systems and to ensure the organization maintains an acceptable risk posture. The Senior Information Security Analyst is highly engaged in risk management and mitigation, including evaluating vendor risk, examining vendor contracts for terms of service, understanding third-party risk, and data privacy issues. The analyst serves as an expert on cybersecurity protection, detection, response, and recovery. This individual is responsible for coordinating penetration testing and managing internal and external cybersecurity analysts to detect, mitigate, and analyze threats. Works closely with other teams to develop controls such as firewalls, business systems, data leakage protection systems, patching, encryption, vulnerability scanning, application code scanning, remediation as well as defining configuration for a variety of security tools. Prior experience in an international enterprise environment is essential. Responsibilities: • Collaborate with IT teams for input and operational requirements to design and implement the companys overall cybersecurity strategy. • Identify and address security gaps discovered through ongoing monitoring of all information security controls and implement enhancements to security controls. • Manage access to elevated privileges accounts and audit activities to meet business and regulatory requirements. • Evaluate and/or implement cybersecurity solutions and controls to maintain confidentiality, integrity, and availability. • Actively participate in proofs-of-concept for new security technologies by developing selection criteria to identify appropriate security solutions to support strategic, operational needs, and security requirements. • Participate in the development and testing of the security incident response plan, act as the incident response leader. • Develop security, risk, and compliance reports and alerts. • Participate in the yearly review of policies and procedures to support information security, risk, and security compliance activities. • Participates in developing, testing, and implementation of disaster recovery procedures for the cybersecurity technology in place. • Manages cybersecurity projects to ensure that the delivery is on-time, within budget, and adopted to meet the companys information protection requirements. • Performs or coordinates internal security assessments, penetration tests, vulnerability scans, and assess organization cybersecurity maturity Complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations. • Provides internal customer support via assigned tickets for security-related issues, while ensuring assignments are resolved within assigned SLAs. • Evaluate and implement CIS critical security controls where necessary. • Will provide input into cybersecurity strategic roadmap and annual budget. • Adhere to applicable change management policy and procedure. Qualifications: • Bachelors degree required; advanced degree highly desirable. Candidates must possess significant analytical skills, which evolved from early academic training in Cybersecurity, Information Systems, Computer Science, or similar discipline. • Provides a documented work history that includes a minimum of 5-years experience in Information Security. • Proficiency in security framework models such as NIST, etc., implementing and auditing security measures, security response, and incident management. • Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network security, administration of DLP, antivirusantimalware, IDS/IPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs. • Experience with identity access management solutions, such as SAMLOATH • Experience with HIDS and NIDS • The ideal candidate possesses relevant information security or cybersecurity certifications. • Requires the ability to analyze and recommend changes to the security landscape where necessary to meet the information security objectives of the organization. • Participates in change management meetings and provides expert input to ensure security is maintained. • Knowledgeable in security best practices such as encryption, hashing, vulnerability scans, event log monitoring, intrusion detection and prevention, eDiscovery, and content filtering. • Ability to manage and continuously improve upon vulnerability management program. • Ability to propose solutions for closing identified vulnerabilities in the infrastructure. Desired Qualifications: • Certified Information System Security Professional (CISSP), NIST Cybersecurity Framework (NCSF), Certified Cloud Security Professional (CCSP) andor Certified Ethical Hacker (CEH) • Knowledge and experience with Microsoft Office and Visio. • Knowledge of WAN technologies including MPLS, SD WAN. • Knowledge of cloud providers security (AWS, GCP or Azure). • Prior experience managing Cisco ELA products including DNA, Firepower, ISE Management console, Umbrella, Cisco AMP for endpoints, Stealth watch, as well as Splunk, SolarWinds, Varonis and Darktrace. • Prior experience with Azure Rights management and Information protection highly desirable. • Project management skills are highly desirable. • Previous experience in a HIPAA/FDA regulated environment. Competencies: To perform the job successfully, an individual should demonstrate the following behaviors: • Motivation/Initiative: Motivated and curious, willing to ask questions, research issues, and take on challenging projects/assignments; creative, brings new ideas to the table, exhibits self-confidence. Position requires a strong achievement motivation and tenacity. • Administrative Skills: Possesses the ability to organize and follow-through on multiple tasks recognizes and attends to important details with accuracy and efficiency. Works to complete goals, tasks, and plans, anticipate potential problems and analyze alternative solutions. • Interpersonal Style: (Interpersonal Skills, Communication, Teamwork); develops/ maintains effective working relationships; listens attentively to others; communicates ideas clearly (written & verbal); relates to people in an open/ sincere manner; participates effectively in meetings; assists in finding solutions as well as identifying problems; communicates appropriately with supervisor, and co-workers. Able to influence other individuals and maintain calm and reliable demeanor in the face of challenges. • Self-Management: (Adaptability/Flexibility, Stress Tolerance, Autonomy); adapts readily to changes in routine; works effectively in stressful situations; needs limited guidance and direction; is comfortable working in a fast-paced environment; is reliable and dependable; is results-oriented; maintains productivity and composure under pressure; views problems as opportunities to create solutions. • Thinking Skills: Diagnoses problems efficiently; gathers sufficient input before making decisions or plans; makes timely decisions, quickly determines sources of the problem, identifies information needed to solve a problem and analyzes alternative solutions, communicates issues and decisions effectively to the team. • Customer Orientation: Sensitive & responsive to internal customer needs; demonstrates skills in customer services and satisfaction; maintains a positive attitude, willing to listen to customer problems and seeks solutions; stays in tune with changing needs of customers. • The analyst will adapt readily to change, work effectively in stressful situations, need limited guidance and direction, and is comfortable working in a fast-paced environment. • Diagnoses problems efficiently gather sufficient input before making changes, quickly determines sources of issues, identifies information needed to solve the problems, and analyzes and communicates issues with effective alternative solutions to the team. This a UK based role at the Central London offices of the Client, although for the foreseeable future you will be based at home and work remotely. The salary for this role will be in the range £70K - £85K. Please do send your CV to us in Word format along with your salary and availability.

Permanent

Job Vacancy
Senior Information Security Analyst

Nexus Jobs Limited
Published on

£70k-85k
London, England, United Kingdom

Job Description Senior Information Security Analyst Our Client is a leading global company specialising in pharma products. They are looking to recruit a Senior Information Security Analyst with at least 5 to 7 years expertise in Technology Security. The Senior Information Security Analyst is responsible for maintaining information security policies, architecture, technical standards, technical controls, security solutions, guidelines, procedures, and other elements necessary to maintain security posture. Responsible for assessing information risk and facilitating remediation of identified vulnerabilities & risks across the organization. Accountable for coordinating the execution of security measures to protect our computer infrastructure, information systems and to ensure the organization maintains an acceptable risk posture. The Senior Information Security Analyst is highly engaged in risk management and mitigation, including evaluating vendor risk, examining vendor contracts for terms of service, understanding third-party risk, and data privacy issues. The analyst serves as an expert on cybersecurity protection, detection, response, and recovery. This individual is responsible for coordinating penetration testing and managing internal and external cybersecurity analysts to detect, mitigate, and analyze threats. Works closely with other teams to develop controls such as firewalls, business systems, data leakage protection systems, patching, encryption, vulnerability scanning, application code scanning, remediation as well as defining configuration for a variety of security tools. Prior experience in an international enterprise environment is essential. Responsibilities: • Collaborate with IT teams for input and operational requirements to design and implement the companys overall cybersecurity strategy. • Identify and address security gaps discovered through ongoing monitoring of all information security controls and implement enhancements to security controls. • Manage access to elevated privileges accounts and audit activities to meet business and regulatory requirements. • Evaluate and/or implement cybersecurity solutions and controls to maintain confidentiality, integrity, and availability. • Actively participate in proofs-of-concept for new security technologies by developing selection criteria to identify appropriate security solutions to support strategic, operational needs, and security requirements. • Participate in the development and testing of the security incident response plan, act as the incident response leader. • Develop security, risk, and compliance reports and alerts. • Participate in the yearly review of policies and procedures to support information security, risk, and security compliance activities. • Participates in developing, testing, and implementation of disaster recovery procedures for the cybersecurity technology in place. • Manages cybersecurity projects to ensure that the delivery is on-time, within budget, and adopted to meet the companys information protection requirements. • Performs or coordinates internal security assessments, penetration tests, vulnerability scans, and assess organization cybersecurity maturity Complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations. • Provides internal customer support via assigned tickets for security-related issues, while ensuring assignments are resolved within assigned SLAs. • Evaluate and implement CIS critical security controls where necessary. • Will provide input into cybersecurity strategic roadmap and annual budget. • Adhere to applicable change management policy and procedure. Qualifications: • Bachelors degree required; advanced degree highly desirable. Candidates must possess significant analytical skills, which evolved from early academic training in Cybersecurity, Information Systems, Computer Science, or similar discipline. • Provides a documented work history that includes a minimum of 5-years experience in Information Security. • Proficiency in security framework models such as NIST, etc., implementing and auditing security measures, security response, and incident management. • Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network security, administration of DLP, antivirusantimalware, IDS/IPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs. • Experience with identity access management solutions, such as SAMLOATH • Experience with HIDS and NIDS • The ideal candidate possesses relevant information security or cybersecurity certifications. • Requires the ability to analyze and recommend changes to the security landscape where necessary to meet the information security objectives of the organization. • Participates in change management meetings and provides expert input to ensure security is maintained. • Knowledgeable in security best practices such as encryption, hashing, vulnerability scans, event log monitoring, intrusion detection and prevention, eDiscovery, and content filtering. • Ability to manage and continuously improve upon vulnerability management program. • Ability to propose solutions for closing identified vulnerabilities in the infrastructure. Desired Qualifications: • Certified Information System Security Professional (CISSP), NIST Cybersecurity Framework (NCSF), Certified Cloud Security Professional (CCSP) andor Certified Ethical Hacker (CEH) • Knowledge and experience with Microsoft Office and Visio. • Knowledge of WAN technologies including MPLS, SD WAN. • Knowledge of cloud providers security (AWS, GCP or Azure). • Prior experience managing Cisco ELA products including DNA, Firepower, ISE Management console, Umbrella, Cisco AMP for endpoints, Stealth watch, as well as Splunk, SolarWinds, Varonis and Darktrace. • Prior experience with Azure Rights management and Information protection highly desirable. • Project management skills are highly desirable. • Previous experience in a HIPAA/FDA regulated environment. Competencies: To perform the job successfully, an individual should demonstrate the following behaviors: • Motivation/Initiative: Motivated and curious, willing to ask questions, research issues, and take on challenging projects/assignments; creative, brings new ideas to the table, exhibits self-confidence. Position requires a strong achievement motivation and tenacity. • Administrative Skills: Possesses the ability to organize and follow-through on multiple tasks recognizes and attends to important details with accuracy and efficiency. Works to complete goals, tasks, and plans, anticipate potential problems and analyze alternative solutions. • Interpersonal Style: (Interpersonal Skills, Communication, Teamwork); develops/ maintains effective working relationships; listens attentively to others; communicates ideas clearly (written & verbal); relates to people in an open/ sincere manner; participates effectively in meetings; assists in finding solutions as well as identifying problems; communicates appropriately with supervisor, and co-workers. Able to influence other individuals and maintain calm and reliable demeanor in the face of challenges. • Self-Management: (Adaptability/Flexibility, Stress Tolerance, Autonomy); adapts readily to changes in routine; works effectively in stressful situations; needs limited guidance and direction; is comfortable working in a fast-paced environment; is reliable and dependable; is results-oriented; maintains productivity and composure under pressure; views problems as opportunities to create solutions. • Thinking Skills: Diagnoses problems efficiently; gathers sufficient input before making decisions or plans; makes timely decisions, quickly determines sources of the problem, identifies information needed to solve a problem and analyzes alternative solutions, communicates issues and decisions effectively to the team. • Customer Orientation: Sensitive & responsive to internal customer needs; demonstrates skills in customer services and satisfaction; maintains a positive attitude, willing to listen to customer problems and seeks solutions; stays in tune with changing needs of customers. • The analyst will adapt readily to change, work effectively in stressful situations, need limited guidance and direction, and is comfortable working in a fast-paced environment. • Diagnoses problems efficiently gather sufficient input before making changes, quickly determines sources of issues, identifies information needed to solve the problems, and analyzes and communicates issues with effective alternative solutions to the team. This a UK based role at the Central London offices of the Client, although for the foreseeable future you will be based at home and work remotely. The salary for this role will be in the range £70K - £85K. Please do send your CV to us in Word format along with your salary and availability.

Submit your CV

  • Manage your visibility

    Salary, remote work... Define all the criteria that are important to you.

  • Get discovered

    Recruiters come directly to look for their future hires in our CV library.

  • Join a community

    Connect with like-minded tech and IT professionals on a daily basis through our forum.

7 results

Contracts

Contractor Permanent

Location

Remote type

Hybrid Remote On-site

Rate minimum.

£150 £1300 and more

Salary minimum

£20k £250k

Experience

≤ 2 years experience 3 to 5 years experience 6 to 10 years experience > 10 years experience

Date posted

Connecting Tech-Talent

Free-Work, THE platform for all IT professionals.

Free-workers
Resources
About
Recruiters area
2025 © Free-Work / AGSI SAS
Follow us