Minimum Qualifications:
1. One or more of the following certifications: CompTIA Security+, CompTIA Cybersecurity Analyst (CySA), GIAC Information Security Fundamentals, Microsoft Certified Systems Administrator: Security (Qualified or working towards certification), Associate of (ISC)2.
2. Extensive experience with Infrastructure Administration.
3. Experience with build/configuration guidelines for hardening of systems.
4. Working technical knowledge of operational security procedures.
5. Strong understanding of IP, TCP/IP, and other network administration protocols.
6. Experience with IPSec, SSL technologies.
7. Familiarity with ISO 27001 Cyber Security Essentials, Gov functional standards 005,007.
8. Familiar with working practice and guidelines of NCSC, CAF, GovAssure for good principles in information security.
Main Aims:
1. Uphold the Company Corporate Technology security standards as established in policies, procedures, and guidelines, while continuously analysing and acting upon findings to reduce cybersecurity risks to the Company.
2. Manage day-to-day operations of the in-place security solutions.
3. Identify, investigate and swiftly remediate security breaches detected by those systems, and security incidents reported to the IT service desk.
4. Implement new security solutions, participating in the creation and or maintenance of policies, standards, baselines, guidelines, and procedures as well as conducting vulnerability audits and assessments.
5. Use a blend of structured and flexible best practices for providing excellent technology services that meet users' needs, including the ITIL framework, working collaboratively with our teams from across the T&DT department.
Key Responsibilities:
* Participate in the planning and design of Company Corporate Technology security architecture.
* Participate in the creation of Company Corporate Technology security documents (policies, standards, baselines, guidelines, and procedures).
* Participate in the planning and design of Corporate Technology business continuity plan and disaster recovery plan.
Acquisition & Deployment:
* Maintain up-to-date detailed knowledge of the IT security industry.
* Recommend additional security solutions or enhancements to existing security solutions.
* Perform the deployment, integration, and initial configuration of all new security solutions.
Operational Management:
* Maintain up-to-date baselines for the secure configuration and operations of all in-place devices.
* Deploy, manage, and maintain all security systems and their corresponding or associated software.
* Maintain operational configurations of all in-place security solutions.
* Monitor all in-place security solutions for efficient and appropriate operations.
* Review logs and reports of all in-place devices and devise plans for appropriate resolution.
* Participate in investigations into problematic activity.
* Participate in vulnerability assessments, penetration tests, and security audits.
* Provide support via the IT Service Desk to end users for all in-place security solutions.
* Provide training to the Corporate Technology Team on Company Corporate Technology Security Solutions.
* Provide Security Build guidelines for Endpoints, Servers, and Network Devices.
* Work closely with Corporate Technology teams to ensure security and Vendor security guidelines are adhered to.
Skills & Approach:
* Proven analytical and problem-solving abilities.
* Good communication skills, written and oral.
* Ability to conduct research into IT security issues and products.
* Highly self-motivated with keen attention to detail.
* Team-oriented and skilled in working within a collaborative environment.
* Good organisational skills with the ability to prioritise and meet deadlines.
* A commitment to continual professional development.
Working Conditions: 2/3 days on site in London, 2/3 days remote (per week).
Working for a well-established organization.
Flexible start date: immediate to 3 months notice.
#J-18808-Ljbffr