 
        
        Job purpose: The security analyst will join a small security team for one of our clients in Central London. You will be a subject matter expert on all aspects of security, including mail security, web security, infrastructure security, and end-user device security. The security analyst plays a key role in driving and improving technology security at the organization, providing expert advice and reliable guidance to a broad range of colleagues and stakeholders.
Key Accountabilities:
 * Proactively assess device and application logs for security vulnerabilities, investigate causes, and resolve or mitigate those vulnerabilities.
 * Lead and investigate security breaches and cyber incidents, providing timely resolution within service level agreements/expectations.
 * Install security updates/measures in line with best practices to protect against the latest cyber threats.
 * Coordinate with third parties and internal teams to schedule proactive penetration tests, ensuring vulnerabilities are addressed.
 * Support the delivery of security training to all end users.
 * Monitor potential security risks externally and internally, providing expert advice and guidance.
 * Conduct regular security assessments of key services.
 * Assess the security compliance of key third-party suppliers.
 * Collaborate with operational and delivery teams to evaluate and adopt security design principles.
 * Provide clear advice to end users on cybersecurity topics.
 * Assist with cybersecurity audits and resolve outstanding actions.
 * Manage the creation and updating of security policies.
 * Support a welcoming and respectful working environment for all colleagues.
Knowledge, skills, and experience
Essential:
 * Relevant experience as a Security Analyst.
 * Strong understanding of mail filtering technologies.
 * Knowledge of Cloud infrastructure technologies, including encryption.
 * Experience with Microsoft Sentinel, Defender, and Purview.
 * Understanding of security frameworks such as NIST and Cyber Essentials.
 * Ability to lead and manage third-party providers.
 * Strong knowledge of incident response processes and methodologies.
 * Experience with root cause analysis and documentation.
 * Experience implementing secure configurations for devices to prevent unauthorized access.
 * Proficiency with SIEM, IDS/IPS, vulnerability scanners, and Azure security tools.
 * Experience conducting vulnerability assessments and penetration testing.
 * Experience reviewing and testing new security solutions.
 * Commitment to diversity, inclusion, respect, and dignity in the workplace.
Apply For Job
#J-18808-Ljbffr