At a Glance
- Tasks: Support the Group Information Security Team in maintaining security standards and managing incidents.
- Company: Join Collinson, a global leader in travel experiences and customer engagement solutions.
- Benefits: Enjoy a diverse workplace, opportunities for growth, and a focus on community impact.
- Why this job: Be part of a mission-driven team that values innovation and collaboration in cybersecurity.
- Qualifications: Relevant experience in security analysis, knowledge of security tools, and strong analytical skills required.
- Other info: Collinson embraces diversity and offers support throughout the application process.
The predicted salary is between 36000 - 60000 £ per year.
Collinson is the global, privately-owned company dedicated to helping the world to travel with ease and confidence. The group offers a unique blend of industry and sector specialists who together provide market-leading airport experiences, loyalty and customer engagement, and insurance solutions for over 400 million consumers. Collinson is the operator of Priority Pass, the world’s original and leading airport experiences programme. Travellers can access a network of 1,500+ lounges and travel experiences, including dining, retail, sleep and spa, in over 650 airports in 148 countries, helping to elevate the journey into something special.
We work with the world’s leading payment networks, over 1,400 banks, 90 airlines and 20 hotel groups worldwide. We have been bringing innovation to the market since inception – from launching the first independent global VIP lounge access Programme, Priority Pass to being the first to sell direct travel insurance in the UK through Columbus Direct and creating the first loyalty agency of its kind in the travel sector with ICLP. Today we still invest heavily in innovation to ensure that we continue to deliver superior customer experiences.
Key clients include Mastercard, American Express, Cathay Pacific, British Airways, LATAM, Flying Blue, Accor, EasyJet, HSBC, Chase, HDFC. Our mission is focused on doing good beyond profit, which for us means we seek out opportunities for our people to share in our success and that we give back to the communities and people within which we work. Never short of ambition, the success of our business is delivered through the diverse and talented team of over 2,200 global colleagues.
Purpose of the job
As a Group Information Security Analyst, you will support the Group Information Security Team to:
- Maintain the Collinson Group Information Security Management System and Certification against ISO27001.
- Monitor operating company compliance with Group Protection Level Agreements.
- Gain assurance operating companies are meeting material client and regulatory security requirements.
- Ensure operating companies maintain and can demonstrate an information security posture which adequately meets the expectations of the markets they operate in.
- Define, design and deliver strategic Collinson Group information security programmes to efficiently reduce risk and protect Group interests in line with commercial objectives.
- Minimise the impact on information security incidents on Collinson’s operations and profitability by ensuring we can detect, respond and contain incidents efficiently and promptly.
- Reduce likelihood and impact of information security incidents by proactively identifying potential vulnerabilities and implementing safeguards and controls.
Key Responsibilities
Information Security Posture
- Demonstrating security tooling, creation of dashboards/reports/alerts, migrating from legacy security tooling, contributing to monthly reports, maintaining a tagging system to identify owners of assets, analysing environments to confirm ownership and usage, creating queries within tooling, conducting security sessions with engineers and stakeholders, automating processes, and documenting activities.
Incident Management
- Using security tools to investigate compromises, communicating findings, ensuring platform functionality, monitoring and analysing cybersecurity events, responding to threats, supporting assessments, maintaining analytics reporting, supporting assurance activities, and documenting security issues.
Governance & Assurance
- Coordination and documentation of security governance activities, compiling data for reporting, and general security governance support as required, such as through answering policy queries, supporting third-party reviews or compiling security assurance evidence.
General duties
- Provide administrative support for the Group CISO Team and promoting security awareness.
Knowledge, skills and experience required:
- Relevant experience in security incident analysis, incident response, or a similar role.
- You have knowledge of security tools and technologies, such as SIEM, IDS/IPS, firewalls, antivirus, and cloud security.
- Be familiar with SOAR tools and their benefits.
- You have experience with security frameworks and standards, such as ISO 27001, NIST, PCI-DSS, GDPR.
- A good understanding of industry attack trends and defences.
- Understanding of core operating system concepts in Windows, MacOS, and Linux.
- A fundamental understanding of how threat actors use tactics such as lateral movement, privilege escalation, defence evasion, persistence, command and control, and exfiltration.
- You have excellent analytical, problem-solving, and communication skills.
- You can collaborate with technology and commercial stakeholders effectively to establish relationships and become a trusted advisor.
- You are initiative-taking and with a desire to continually learn and progress in an information security career.
- Relevant years of experience in relevant roles which can demonstrate the requirements listed in this JD.
- Foundational education proving knowledge of the above.
Collinson is an equal opportunity employer and welcomes differences in all their forms including: colour, race, ethnicity, gender identity, sexual orientation, neurodivergence, family status, age, individuals with disabilities and people from all backgrounds, cultures and experiences as we strongly believe this contributes to our on-going success. We are focused on continually evolving our purpose driven, high performing culture, providing an environment where our people have the opportunity to achieve their full potential and do interesting and meaningful work. Our company values are: Take Action, Do the right thing, One team and Be insight led. These help guide everything we do internally in terms of how we think, act and interact, right through to how we deliver value to our customers and clients.
In your application, please feel free to note which pronouns you use (For example - she/her/hers, he/him/his, they/them/theirs, etc). If you need any extra support throughout the interview process, then please email us at ukrecruitment@collinsongroup.com.
Group Information Security Analyst employer: Collinson
Contact Detail:
Collinson Recruiting Team
ukrecruitment@collinsongroup.com
StudySmarter Expert Advice 🤫
We think this is how you could land Group Information Security Analyst
✨Tip Number 1
Familiarise yourself with ISO 27001 and other relevant security frameworks. Understanding these standards will not only help you in interviews but also demonstrate your commitment to maintaining high security standards, which is crucial for the Group Information Security Analyst role.
✨Tip Number 2
Network with professionals in the information security field, especially those who work at Collinson or similar companies. Engaging with them on platforms like LinkedIn can provide insights into the company culture and expectations, giving you an edge during the application process.
✨Tip Number 3
Stay updated on the latest cybersecurity trends and threats. Being knowledgeable about current events in the industry will allow you to speak confidently about how you can contribute to Collinson's mission of reducing risks and enhancing security.
✨Tip Number 4
Prepare to discuss specific tools and technologies you've used in previous roles, such as SIEM or IDS/IPS. Highlighting your hands-on experience with these tools will show that you're ready to hit the ground running as a Group Information Security Analyst.
We think you need these skills to ace Group Information Security Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience in security incident analysis and incident response. Use keywords from the job description, such as ISO 27001, SIEM, and cybersecurity events, to demonstrate your fit for the role.
Craft a Compelling Cover Letter: In your cover letter, express your passion for information security and how your skills align with Collinson's mission. Mention specific experiences that showcase your analytical and problem-solving abilities, as well as your initiative in learning and progressing in the field.
Showcase Relevant Skills: Highlight your knowledge of security tools and technologies, as well as your familiarity with security frameworks like NIST and PCI-DSS. Provide examples of how you've used these skills in previous roles to enhance security postures or respond to incidents.
Demonstrate Cultural Fit: Collinson values diversity and teamwork. In your application, mention how you embody their values of taking action, doing the right thing, and being insight-led. Share experiences where you've collaborated effectively with others to achieve common goals.
How to prepare for a job interview at Collinson
✨Understand the Company and Its Values
Before your interview, take some time to research Collinson and its mission. Familiarise yourself with their values such as 'Take Action' and 'Do the Right Thing'. This will help you align your answers with what they stand for and demonstrate that you're a good cultural fit.
✨Showcase Your Technical Skills
As a Group Information Security Analyst, you'll need to be well-versed in security tools and frameworks like ISO 27001 and NIST. Be prepared to discuss your experience with these technologies and how you've applied them in past roles. Providing specific examples will make your expertise more tangible.
✨Prepare for Scenario-Based Questions
Expect questions that assess your problem-solving abilities in real-world scenarios. For instance, you might be asked how you would respond to a security incident. Think through your approach to incident management and be ready to explain your thought process clearly.
✨Demonstrate Your Communication Skills
Effective communication is key in this role, especially when collaborating with stakeholders. Practice articulating complex security concepts in simple terms. This will show that you can bridge the gap between technical and non-technical teams, making you a valuable asset.