You're interested in

Information Security Analyst -Spalding area Hybrid role

In or around this area

Spalding

Job Reference

265155/001

Salary

up to £50000 per annum

Job Description

Information Security Analyst -Spalding area Hybrid role

Job posted by: Martina Goonan

Information Security Analyst -Spalding area -HYBRID Role

Up to £50,000 DOE

(3 days a week remote)

Main Purpose of the role:

Our client a leading award-winning Legal Law firm with offices located in Alconbury, Spalding and Peterborough are looking for experienced Information Security Analyst for their branch in the Spalding area. Our

client is a top national law firm who have adopted a one-team ethos across all offices, with trusted advice being given by our recognised experts on a national spread who pride themselves on

building longstanding relationships with clients and bringing commercial know-how and lateral thinking to each case.

Our client is looking to add to their successful team which is why we are looking to recruit an Information Security Analyst. The role of the Information Security Analyst is to ensure the confidentiality, availability, and integrity of information systems and data. Acting as the focal point for the co-ordination of policy, procedure, monitoring, the effective use of controls, audit, testing, incident management, user education and maintaining awareness of current and emerging risks and provision of advice in terms of relevant controls and security standards.

The role of the Information Security Analyst is to ensure the confidentiality, availability, and integrity of information systems and data. Acting as the focal point for the co-ordination of policy, procedure, monitoring, the effective use of controls, audit, testing, incident management and user education. Maintaining awareness of current and emerging risks and provision of advice in terms of relevant controls and security standards. Working closely with in house IT, managed service providers and the business to ensure the effective operation of security the Information Security Management System without unduly impacting the efficiency of the business, reporting to the IT Director

Responsibilities

Monitor computer networks for potential security issues and carry out regular system health checks.

Fix detected vulnerabilities to maintain a high-security standard through close liaison with in-house IT and managed service provider.

Maintain records of security incidents and ensure any required investigation and agreed corrective actions / preventative measures are completed.

Implementation and ongoing management of appropriate security controls to protect information systems and data.

Ongoing monitoring of the effectiveness of the above controls.

Patch management to ensure patches are deployed in a timely manner while understanding business impact.

Work with the managed service providers to undertake regular vulnerability testing. Review findings and ensure agreed corrective actions / preventative measures are completed in a timely manner.

Monitor and review the performance of managed service providers in terms of the provision of security services.

Undertake internal audits as part of ISO27001 to evaluate the effectiveness of existing controls and make recommendation for improvement.

Carry out business continuity testing

Conduct risk assessments on a scheduled basis and as directed by QCC / Management Board, including any associated controls and their effectiveness

Undertake risk assessments in relation to business or information systems change projects

Maintain current awareness in relation to information security trends and security standards, making recommendation as appropriate.

Advise on appropriate information security training for end users to help maintain ongoing awareness of risks and preventative measures.

Skills and experience

Comprehensive understanding and technical knowledge of mainstream operating systems and security technologies.

Strong knowledge of information security principles, systems of governance and best practises including ISO27001, Cyber Essentials Plus, PCI DSS, GDPR

A practical good working knowledge of security technologies such as network and application firewalls, intrusion prevention, anti-virus, email and web security, endpoint security and security policy management

Working experience (configuration & administration) of VLANs, VPN, Mimecast, Tessian, Microsoft security solutions would be beneficial

Relevant applicable qualifications would be beneficial

Excellent written and verbal communication skills, able to work independently and as part of a team. Organised, structured with excellent attention to detail. Resilient and self-motivated. with a positive attitude

If you have the right skills and experience and want to work for a leading Law Firm and become part of their success please apply today

Apply

*
*
*
Your Cover Letter must be a .docx or .rtf Alternatively you can type one in below.
No file chosen
Start typing your cover letter here
*
No file chosen
or import from cloud storage
Your CV must be a .doc .docx .pdf .rtf up to 10MB

In order to provide you with a recruitment service we may share your information with third parties such as employers and reference agencies, as set out in our privacy policy.

Your CV is being uploaded, please wait...
Apply for Job

Application Complete

Thank you for sending your details. One of our consultants will be in touch shortly.

Browse more jobs

Sorry, there has been an issue processing your job application. Please contact your local branch.