At a Glance
- Tasks: Drive cyber security integration and improve incident response for critical services.
- Company: Join the UK's largest water and wastewater company, serving over 16 million customers.
- Benefits: Enjoy a competitive salary, generous leave, pension scheme, and health perks.
- Why this job: Make a real impact on communities while developing your career in a diverse environment.
- Qualifications: Deep understanding of incident response and experience in cyber resilience training required.
- Other info: Hybrid working with mandatory office attendance every Thursday.
The Cyber Resilience Analyst will report directly to the Cyber Incident Management Lead, forming part of the Information Security Team, which is at the forefront of protecting Critical National Infrastructure from evolving cyber threats. You will be driving integration of cyber security into every aspect of operations, from governance to recovery planning, and continuously improving our ability to prevent, detect, respond to and recover from cyber incidents which could disrupt critical water and waste services, or compromise information/data.
What you’ll be doing as a Cyber Resilience Analyst:
- Support the development, testing, and refinement of cyber incident response planning.
- Ensuring the delivery of best practices for responding to cyber incidents.
- Support the creation and ongoing refinement of business continuity and disaster recovery plans that incorporate cyber resilience elements.
- Develop and deliver tailored incident response training programs for staff at all levels, from frontline security teams to senior leadership.
- Maintain clear, detailed documentation of incident management plans, training sessions, exercises, and post-incident reviews.
- Foster a culture of preparedness and resilience across the organisation, emphasising the importance of proactive training and continuous improvement.
- Support teams within Resilience, Compliance and Operations with aligning incident management plans and training with industry standards, including the NIS Directive, Cyber Essentials, and ISO/IEC 27001.
- Advise on best practices for compliance with national and international resilience frameworks.
Base location – Hybrid – Clear Water Court Reading
Working pattern – Monday to Friday 36 hours
Necessary requirements for the role – MUST be able to come into the office every Thursday.
What you should bring to the role:
- Essential: Deep understanding of incident response methodologies (cyber preferred - including detection, containment, remediation, and recovery).
- Experience in coordinating the delivery of incident exercising/testing and embedding improvements.
- Proficiency in incident management tools and cybersecurity technologies.
- Ability to engage and educate stakeholders at all levels.
- Proven experience in cyber resilience training and exercises.
Desirable: Relevant qualifications within Incident Management, Business Continuity, Cyber. Experience of supporting regulatory compliance efforts in line with industry standards related to cyber security (SEMD, CAF).
What’s in it for you?
- Competitive salary from £50,000 to £58,000 per annum depending on experience.
- Annual Leave - 26 days holiday per year increasing to 30 with the length of service (plus bank holidays).
- Generous Pension Scheme through AON.
- Access to lots of benefits to help you take care of you and your family’s health and wellbeing, and your finances – from annual health MOTs and access to physiotherapy and counselling, to Cycle to Work schemes, shopping vouchers and life assurance.
Who are we? We’re the UK’s largest water and wastewater company, with more than 16 million customers relying on us every day to supply water for their taps and toilets. We want to build a better future for all, helping our customers, communities, people and the planet to thrive.
Learn more about our purpose and values. Working at Thames Water is a unique, rewarding and diverse place to work, where every day you can make a difference, yet no day is the same. As part of our family, you’ll enjoy fast-tracked career opportunities, flexible working arrangements and excellent benefits.
Our overarching aim is to ensure that Thames Water is a great, diverse and inclusive place to work. We welcome applications from everyone and offer extra support for those who need it throughout the recruitment process.
Cyber Resilience Analyst employer: Thames Water
Contact Detail:
Thames Water Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Resilience Analyst
✨Tip Number 1
Familiarise yourself with the latest incident response methodologies and frameworks relevant to cyber resilience. This knowledge will not only help you in interviews but also demonstrate your commitment to staying updated in a rapidly evolving field.
✨Tip Number 2
Network with professionals in the cybersecurity field, especially those who have experience in incident management and business continuity. Engaging with industry experts can provide valuable insights and potentially lead to referrals.
✨Tip Number 3
Consider attending workshops or webinars focused on cyber resilience and incident response training. This not only enhances your skills but also shows potential employers that you are proactive about your professional development.
✨Tip Number 4
Prepare to discuss specific examples of how you've contributed to incident response planning or training in previous roles. Being able to articulate your hands-on experience will set you apart from other candidates.
We think you need these skills to ace Cyber Resilience Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in incident response methodologies and cyber resilience. Use specific examples that demonstrate your ability to prevent, detect, respond to, and recover from cyber incidents.
Craft a Strong Cover Letter: In your cover letter, express your passion for cybersecurity and how your skills align with the role of Cyber Resilience Analyst. Mention your experience in developing incident response plans and training programmes, as well as your understanding of compliance frameworks.
Showcase Relevant Qualifications: If you have any qualifications related to Incident Management, Business Continuity, or Cybersecurity, be sure to mention them prominently in your application. This will help demonstrate your commitment to the field and your readiness for the role.
Highlight Soft Skills: The role requires engaging and educating stakeholders at all levels. Make sure to include examples of your communication and interpersonal skills in your application, showcasing how you've successfully collaborated with diverse teams in the past.
How to prepare for a job interview at Thames Water
✨Understand Incident Response Methodologies
Make sure you have a solid grasp of incident response methodologies, especially in the context of cyber security. Be prepared to discuss your experience with detection, containment, remediation, and recovery during the interview.
✨Showcase Your Training Experience
Highlight any experience you have in developing and delivering cyber resilience training programs. Be ready to provide examples of how you've engaged and educated stakeholders at various levels within an organisation.
✨Familiarise Yourself with Industry Standards
Research the relevant industry standards such as the NIS Directive, Cyber Essentials, and ISO/IEC 27001. Demonstrating knowledge of these frameworks will show that you understand the compliance landscape and can align incident management plans accordingly.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills in real-world situations. Think about past experiences where you had to coordinate incident exercises or manage a cyber incident, and be ready to discuss the outcomes and improvements made.