Senior Information Security Analyst (IT)
Job Description Senior Information Security Analyst Our Client is a leading global company specialising in pharma products. They are looking to recruit a Senior Information Security Analyst with at least 5 to 7 years expertise in Technology Security. The Senior Information Security Analyst is responsible for maintaining information security policies, architecture, technical standards, technical controls, security solutions, guidelines, procedures, and other elements necessary to maintain security posture. Responsible for assessing information risk and facilitating remediation of identified vulnerabilities & risks across the organization. Accountable for coordinating the execution of security measures to protect our computer infrastructure, information systems and to ensure the organization maintains an acceptable risk posture. The Senior Information Security Analyst is highly engaged in risk management and mitigation, including evaluating vendor risk, examining vendor contracts for terms of service, understanding third-party risk, and data privacy issues. The analyst serves as an expert on cybersecurity protection, detection, response, and recovery. This individual is responsible for coordinating penetration testing and managing internal and external cybersecurity analysts to detect, mitigate, and analyze threats. Works closely with other teams to develop controls such as firewalls, business systems, data leakage protection systems, patching, encryption, vulnerability scanning, application code scanning, remediation as well as defining configuration for a variety of security tools. Prior experience in an international enterprise environment is essential. Responsibilities:
- Collaborate with IT teams for input and operational requirements to design and implement the companys overall cybersecurity strategy.
- Identify and address security gaps discovered through ongoing monitoring of all information security controls and implement enhancements to security controls.
- Manage access to elevated privileges accounts and audit activities to meet business and regulatory requirements.
- Evaluate and/or implement cybersecurity solutions and controls to maintain confidentiality, integrity, and availability.
- Actively participate in proofs-of-concept for new security technologies by developing selection criteria to identify appropriate security solutions to support strategic, operational needs, and security requirements.
- Participate in the development and testing of the security incident response plan, act as the incident response leader.
- Develop security, risk, and compliance reports and alerts.
- Participate in the yearly review of policies and procedures to support information security, risk, and security compliance activities.
- Participates in developing, testing, and implementation of disaster recovery procedures for the cybersecurity technology in place.
- Manages cybersecurity projects to ensure that the delivery is on-time, within budget, and adopted to meet the companys information protection requirements.
- Performs or coordinates internal security assessments, penetration tests, vulnerability scans, and assess organization cybersecurity maturity Complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations.
- Provides internal customer support via assigned tickets for security-related issues, while ensuring assignments are resolved within assigned SLAs.
- Evaluate and implement CIS critical security controls where necessary.
- Will provide input into cybersecurity strategic roadmap and annual budget.
- Adhere to applicable change management policy and procedure.
- Bachelors degree required; advanced degree highly desirable. Candidates must possess significant analytical skills, which evolved from early academic training in Cybersecurity, Information Systems, Computer Science, or similar discipline.
- Provides a documented work history that includes a minimum of 5-years experience in Information Security.
- Proficiency in security framework models such as NIST, etc., implementing and auditing security measures, security response, and incident management.
- Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network security, administration of DLP, antivirusantimalware, IDS/IPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs.
- Experience with identity access management solutions, such as SAMLOATH
- Experience with HIDS and NIDS
- The ideal candidate possesses relevant information security or cybersecurity certifications.
- Requires the ability to analyze and recommend changes to the security landscape where necessary to meet the information security objectives of the organization.
- Participates in change management meetings and provides expert input to ensure security is maintained.
- Knowledgeable in security best practices such as encryption, hashing, vulnerability scans, event log monitoring, intrusion detection and prevention, eDiscovery, and content filtering.
- Ability to manage and continuously improve upon vulnerability management program.
- Ability to propose solutions for closing identified vulnerabilities in the infrastructure.
- Certified Information System Security Professional (CISSP), NIST Cybersecurity Framework (NCSF), Certified Cloud Security Professional (CCSP) andor Certified Ethical Hacker (CEH)
- Knowledge and experience with Microsoft Office and Visio.
- Knowledge of WAN technologies including MPLS, SD WAN.
- Knowledge of cloud providers security (AWS, GCP or Azure).
- Prior experience managing Cisco ELA products including DNA, Firepower, ISE Management console, Umbrella, Cisco AMP for endpoints, Stealth watch, as well as Splunk, SolarWinds, Varonis and Darktrace.
- Prior experience with Azure Rights management and Information protection highly desirable.
- Project management skills are highly desirable.
- Previous experience in a HIPAA/FDA regulated environment.
- Motivation/Initiative: Motivated and curious, willing to ask questions, research issues, and take on challenging projects/assignments; creative, brings new ideas to the table, exhibits self-confidence. Position requires a strong achievement motivation and tenacity.
- Administrative Skills: Possesses the ability to organize and follow-through on multiple tasks recognizes and attends to important details with accuracy and efficiency. Works to complete goals, tasks, and plans, anticipate potential problems and analyze alternative solutions.
- Interpersonal Style: (Interpersonal Skills, Communication, Teamwork); develops/ maintains effective working relationships; listens attentively to others; communicates ideas clearly (written & verbal); relates to people in an open/ sincere manner; participates effectively in meetings; assists in finding solutions as well as identifying problems; communicates appropriately with supervisor, and co-workers. Able to influence other individuals and maintain calm and reliable demeanor in the face of challenges.
- Self-Management: (Adaptability/Flexibility, Stress Tolerance, Autonomy); adapts readily to changes in routine; works effectively in stressful situations; needs limited guidance and direction; is comfortable working in a fast-paced environment; is reliable and dependable; is results-oriented; maintains productivity and composure under pressure; views problems as opportunities to create solutions.
- Thinking Skills: Diagnoses problems efficiently; gathers sufficient input before making decisions or plans; makes timely decisions, quickly determines sources of the problem, identifies information needed to solve a problem and analyzes alternative solutions, communicates issues and decisions effectively to the team.
- Customer Orientation: Sensitive & responsive to internal customer needs; demonstrates skills in customer services and satisfaction; maintains a positive attitude, willing to listen to customer problems and seeks solutions; stays in tune with changing needs of customers.
- The analyst will adapt readily to change, work effectively in stressful situations, need limited guidance and direction, and is comfortable working in a fast-paced environment.
- Diagnoses problems efficiently gather sufficient input before making changes, quickly determines sources of issues, identifies information needed to solve the problems, and analyzes and communicates issues with effective alternative solutions to the team.
Recommended Jobs
Mathematics Teacher - Amazing Northwest London School
*Mathematics Teacher required from April 2024 *Good mixed school based in Northwest London * Mathematics Teacher to join a highly successful and well-resourced department This good mixed school...
Junior Trading Operations Associate
About Green Man Gaming Green Man Gaming is a multi-award-winning global retailer, publisher, distributor and technology business in the video games industry. Working with the world’s leading gamin...
Junior Financial Planner
We are recruiting for a highly regarded financial planning organisation who are recruiting a junior adviser to join the team. The role is to manage a book of existing clients on behalf of the busines...
Software Implementation Consultant, EMEA
As an Implementation Consultant in our Professional Services team, you will play a crucial role in configuring and deploying cutting-edge software solutions for a wide array of client. This role is ta...
Content Producer (Freelance)
Role: Content Producer Type: Contractor/Freelancer Location: Remote/Flexible with days in office (Haggerston) when required Start Date: TBC End Date: TBC ABOUT WARM ST...
Postdoctoral Research Associate in Robotics & AI (1FTE, FTC)
The Royal College of Art is seeking an outstanding Senior/Postdoctoral Research Associate to join the RCA Robotics Laboratory in the School of Design. This role is part of the Circular Robot 5.0 pro...
Lead Software Developer with Dot Net SQL Server and Azure (IT)
Job Description C# .net Lead Software Developer with SQL and Azure Our Client is an international company who are looking to recruit a Lead Software Developer with Dot net technology coup...
Senior Legal Policy Manager
Morgan Hunt are currently working with a Professional Regulator , in their search for a Senior Legal Policy Manager . You should be a qualified legal policy expert who is able to deliver on strat...
Finance Senior Support Analyst
JOB DESCRIPTION This exciting role as a Finance Senior Systems Analyst within the Central Finance team offers a unique opportunity to oversee Finance systems, primarily Oracle ERP, and its interfa...
Mathematics Teacher
A dedicated and inspiring Mathematics Teacher is required for a temporary full-time position at a well-regarded Independent girls' school in Haringey, commencing as soon as possible. This is a wonderf...