Senior Information Security Analyst
This job does not exist anymore.
Try running a new searchor browse our vacancies.
Or fill in the form below to receive job alerts.
Job Type | Permanent |
Location | London |
Area | West Midlands, UK |
Sector | Infrastructure & Cloud |
Salary | Competitive Salary |
Currency | GBP |
Start Date | ASAP |
Job Ref | INFO |
Job Views | 31 |
- Description
Senior Information Security Analyst
Competitive salary and excellent benefits available including bonus
We currently have an urgent requirement for 2 Senior Information Security Analysts to join a market leading company based in central London. My client is a household name with fantastic reputation for staff retention and employee development.
As part of the Information Security Product Assurance Team; responsible for working with Programme/Project/Product/Operations teams, including Security Architects, Solution Designers and Product Owners to provide end to end assurance of IT products across the Group, during new delivery and business as usual throughout a product’s lifespan, protecting client and employee data and ensuring compliance with Information Security policies and standards. Co-ordinate Penetration Testing and other Security Testing in support of In-House Development utilising Waterfall and Agile delivery methodologies; manage remediation of identified vulnerabilities and participate in the full risk management lifecycle
What I Need To Do- As an experienced Senior Information Security Analyst, work with limited supervision, with the responsibility for Security input to a portfolio of Products.
- Provide end to end engagement on a wide range of IT projects ensuring that security is built in, they deliver securely and client and employee data is protected.
- Attend Programme/Project meetings and represent Information Security, giving advice as required.
- Review architectural and design documents including Solution Outline Documents, Detailed Designs, Network Diagrams, Data Flow Diagrams etc.
- Define Security Non Functional Requirements for each project and ensure that they are fulfilled prior to going into service.
- Ensure the relevant technology standards are applied to specific projects.
- CISSP, CISM, CRISC, CCSP, CEH or equivalent desirable.
- Working knowledge of different delivery methodologies including Waterfall, Agile and Hybrid.
- Strong risk management knowledge and experience.
- Has a broad knowledge and understanding of IT concepts and architectures including Cloud, BYOD, Mobile Device Management etc.
- Knowledge of HTTP, SSDLC and Security Testing.
- Strong current knowledge of PCI, DPA and ISO27001.