Information Security Analyst -Spalding area -HYBRID Role
Up to £50,000 DOE
(3 days a week remote)
Main Purpose of the role:
Our client a leading award-winning Legal Law firm with offices located in Alconbury, Spalding and Peterborough are looking for experienced Information Security Analyst for their branch in the Spalding area. Our
client is a top national law firm who have adopted a one-team ethos across all offices, with trusted advice being given by our recognised experts on a national spread who pride themselves on
building longstanding relationships with clients and bringing commercial know-how and lateral thinking to each case.
Our client is looking to add to their successful team which is why we are looking to recruit an Information Security Analyst. The role of the Information Security Analyst is to ensure the confidentiality, availability, and integrity of information systems and data. Acting as the focal point for the co-ordination of policy, procedure, monitoring, the effective use of controls, audit, testing, incident management, user education and maintaining awareness of current and emerging risks and provision of advice in terms of relevant controls and security standards.
The role of the Information Security Analyst is to ensure the confidentiality, availability, and integrity of information systems and data. Acting as the focal point for the co-ordination of policy, procedure, monitoring, the effective use of controls, audit, testing, incident management and user education. Maintaining awareness of current and emerging risks and provision of advice in terms of relevant controls and security standards. Working closely with in house IT, managed service providers and the business to ensure the effective operation of security the Information Security Management System without unduly impacting the efficiency of the business, reporting to the IT Director
Responsibilities
Monitor computer networks for potential security issues and carry out regular system health checks.
Fix detected vulnerabilities to maintain a high-security standard through close liaison with in-house IT and managed service provider.
Maintain records of security incidents and ensure any required investigation and agreed corrective actions / preventative measures are completed.
Implementation and ongoing management of appropriate security controls to protect information systems and data.
Ongoing monitoring of the effectiveness of the above controls.
Patch management to ensure patches are deployed in a timely manner while understanding business impact.
Work with the managed service providers to undertake regular vulnerability testing. Review findings and ensure agreed corrective actions / preventative measures are completed in a timely manner.
Monitor and review the performance of managed service providers in terms of the provision of security services.
Undertake internal audits as part of ISO27001 to evaluate the effectiveness of existing controls and make recommendation for improvement.
Carry out business continuity testing
Conduct risk assessments on a scheduled basis and as directed by QCC / Management Board, including any associated controls and their effectiveness
Undertake risk assessments in relation to business or information systems change projects
Maintain current awareness in relation to information security trends and security standards, making recommendation as appropriate.
Advise on appropriate information security training for end users to help maintain ongoing awareness of risks and preventative measures.
Skills and experience
Comprehensive understanding and technical knowledge of mainstream operating systems and security technologies.
Strong knowledge of information security principles, systems of governance and best practises including ISO27001, Cyber Essentials Plus, PCI DSS, GDPR
A practical good working knowledge of security technologies such as network and application firewalls, intrusion prevention, anti-virus, email and web security, endpoint security and security policy management
Working experience (configuration & administration) of VLANs, VPN, Mimecast, Tessian, Microsoft security solutions would be beneficial
Relevant applicable qualifications would be beneficial
Excellent written and verbal communication skills, able to work independently and as part of a team. Organised, structured with excellent attention to detail. Resilient and self-motivated. with a positive attitude
If you have the right skills and experience and want to work for a leading Law Firm and become part of their success please apply today
Simply start typing below and when you're done, click the 'Save' button at the bottom of this page.
Thank you for sending your details. One of our consultants will be in touch shortly.
Browse more jobsSorry, there has been an issue processing your job application. Please contact your local branch.