Cybersecurity Risk Analyst

Cybersecurity Risk Analyst

Full-Time 50000 - 60000 ÂŁ / year (est.) No home office possible
Creative Artists Agency

At a Glance

  • Tasks: Join our team to protect data and systems from cyber threats while collaborating with IT.
  • Company: Creative Artists Agency, a leading entertainment and sports agency with a collaborative culture.
  • Benefits: Competitive salary, diverse work environment, and opportunities for professional growth.
  • Other info: Diverse workplace committed to inclusion and equal opportunities.
  • Why this job: Be at the forefront of cybersecurity in a fast-paced, innovative environment.
  • Qualifications: Experience in IT and cybersecurity risk management, with strong analytical skills.

The predicted salary is between 50000 - 60000 ÂŁ per year.

THE AGENCY

Creative Artists Agency (CAA) is a leading entertainment and sports agency, with global expertise in filmed and live entertainment, digital media, publishing, sponsorship sales and endorsements, media finance, consumer investing, fashion, brand management and consumer product licensing, and philanthropy. Distinguished by its culture of collaboration and exceptional client service, CAA’s diverse workforce identifies, innovates, and amplifies opportunities for the people and organizations that shape culture and inspire the world.

The trailblazer of the agency business, CAA was the first to build a sports business, create an investment bank, launch a venture fund, found technology start-up companies, establish a philanthropic arm, build a business in China, form brand marketing services division, and launch a family office advisory practice, among other innovations. Named Most Valuable Sports Agency by Forbes for 10 consecutive years, CAA represents more than 3,000 of the world’s top athletes in football, baseball, basketball, hockey, and soccer, in addition to coaches, on-air broadcasters, and sports personalities and works in the areas of property sales and sponsorships, media advisory, brand consulting, venue development and strategic advisory, and executive search.

Founded in 1975, CAA is headquartered in Los Angeles, and has offices in New York, London, Nashville, Munich, Shanghai, Beijing, Chicago, Washington, D.C., Singapore, Toronto, Denver, Charlotte, Jacksonville, and Atlanta, among other locations globally.

OVERVIEW

This is a hands-on security position working within the Information Security group and with the internal IT department at large. This position’s core focus is to ensure consistent, measurable end-to-end delivery of security services. The successful candidate will work to develop and deploy capabilities, ensuring enterprise systems and data are protected with the security controls and tools required to meet policy and compliance requirements.

We are looking for candidates who have a passion for cybersecurity, threat detection, risk mitigation, and response. You will be a key part of our efforts to build and support a defensible environment where we are able to detect, contain and respond quickly to threats and compromises in ways that serve to enable the business needs of a highly collaborative organisation. The environment is fast-paced and commonly on the leading edge of technology, including early adoption of various cloud services along with the challenges of integrating those services into our security practice.

Responsibilities to include:

  • Support a Technology Vendor Management program, ensuring technology risk reviews across multiple disciplines, and monitoring for renewals and savings opportunities
  • Participate in risk reviews of the IT control framework (NIST CSF, CIS, ITIL, ISO 270001, etc.)
  • Conduct thorough vendor, product and application security assessments partnering with systems owners to integrate security early during the project lifecycle
  • Partner with business groups to review workflows, producing output to enhance security processes in support of those workflows
  • Coordinate, across service owners, the implementation of core security integrations (SSO, Event Logs, Secrets, Alerting, Threat Model and Backup/Recovery) with applications developed in-house and externally/SaaS hosted environments
  • Ensure the security considerations identified are implemented and solutions are configured securely
  • Coordinate with IRM leadership to develop and deliver key security metrics to ensure technical security controls meet desired objectives; ensuring the measurable effectiveness of CAA’s technical controls

QUALIFICATIONS/REQUIREMENTS

  • At least 3+ years' experience in Information Technology
  • At least 2 years’ experience in cybersecurity risk management
  • A bachelor’s or master’s Degree in a relevant field of work
  • Strong analytical skills in conducting due diligence to identify, assess and prioritise vendor risks
  • Familiarity with information security frameworks (NIST, ISO27001), data privacy regulations (GDPR, CCPA), and information security certifications/attestations (SOC, ISO, PCIDSS, FedRAMP)
  • Experience in coordinating technical integrations for security tooling and processes
  • Ability to review complex systems architectures to identify key security integration opportunities
  • Produce a comprehensive, written, security assessment of vendors security posture
  • Experience using security analytics tooling to produce operational metrics and dashboards
  • A strong understanding of the fundamental operations of servers, operating systems, cloud applications, and infrastructure
  • Core skills in Cybersecurity fundamentals and Third-Party Risk Management
  • Familiarity with using Third Party Risk Management tools/processes such as One Trust, SIG or similar GRC platforms
  • Hands-on experience in Azure, AWS Cloud environments and familiarity with core Cloud services and Cloud architecture
  • Familiarity with core security concepts of Single Sign-on (e.g PingFed, SAML), Identity and Access Administration (Active Directory, Azure AD, AWS IAM), Event Management (Splunk)
  • Expert skills in using Microsoft Office suite, JIRA

Please ensure you provide complete and legible information in your application. An incomplete application may affect your consideration for employment.

Creative Artists Agency (“CAA”) is committed to promoting equal opportunities in employment and creating a workplace culture in which diversity and inclusion is valued and everyone is treated with dignity and respect. As part of our zero-tolerance approach to discrimination in any form, you and any job applicants will receive equal treatment regardless of age, disability, gender reassignment, marital or civil partner status, pregnancy or maternity, race, colour, nationality, ethnic or national origin, religion or belief, sex or sexual orientation, or any other legally recognised protected basis under UK law.

Please inform CAA’s Recruitment Department if you need any assistance completing any forms or to otherwise participate in the application process.

CAA does not accept unsolicited resumes from third-party recruiters unless they were contractually engaged by CAA to provide candidates for a specified opening. Any such employment agency, person or entity that submits an unsolicited resume does so with the acknowledgement and agreement that CAA will have the right to hire that applicant at its discretion without any fee owed to the submitting employment agency, person or entity.

Cybersecurity Risk Analyst employer: Creative Artists Agency

Creative Artists Agency (CAA) is an exceptional employer that fosters a collaborative and innovative work culture, making it an ideal place for a Cybersecurity Risk Analyst to thrive. With a commitment to employee growth and development, CAA offers unique opportunities to work at the forefront of technology in a fast-paced environment, while also prioritising diversity and inclusion. Located in Los Angeles, employees benefit from being part of a globally recognised agency that shapes culture and inspires the world.
Creative Artists Agency

Contact Detail:

Creative Artists Agency Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Cybersecurity Risk Analyst

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend events, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Prepare for interviews by researching CAA and its culture. Understand their approach to cybersecurity and think about how your skills can contribute to their mission. Tailor your responses to show you're a perfect fit!

✨Tip Number 3

Practice makes perfect! Conduct mock interviews with friends or use online platforms to get comfortable with common questions. The more you practice, the more confident you'll feel when it’s time to shine.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen. Plus, it shows you’re serious about joining the team at CAA.

We think you need these skills to ace Cybersecurity Risk Analyst

Cybersecurity Risk Management
Information Security Frameworks (NIST, ISO 27001)
Data Privacy Regulations (GDPR, CCPA)
Vendor Risk Assessment
Technical Integrations for Security Tooling
Security Analytics Tooling
Cloud Environments (Azure, AWS)
Single Sign-On (PingFed, SAML)
Identity and Access Administration (Active Directory, Azure AD, AWS IAM)
Event Management (Splunk)
Microsoft Office Suite
Analytical Skills
Communication Skills
Collaboration Skills

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Cybersecurity Risk Analyst role. Highlight relevant experience and skills that match the job description, especially in cybersecurity and risk management.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to express your passion for cybersecurity and how your background aligns with CAA's mission. Keep it concise but impactful.

Showcase Your Analytical Skills: Since this role requires strong analytical skills, be sure to include examples of how you've successfully identified and mitigated risks in past positions. Numbers and metrics can really help here!

Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way to ensure your application gets into the right hands and shows your enthusiasm for joining our team at CAA!

How to prepare for a job interview at Creative Artists Agency

✨Know Your Cybersecurity Frameworks

Familiarise yourself with key information security frameworks like NIST, ISO 27001, and CIS. Be ready to discuss how these frameworks apply to the role and how you've used them in past experiences.

✨Showcase Your Analytical Skills

Prepare examples that highlight your analytical skills in risk assessment and vendor management. Think of specific situations where you identified risks and how you prioritised them effectively.

✨Understand the Tech Stack

Brush up on your knowledge of cloud environments like Azure and AWS, as well as security tools such as Splunk and Active Directory. Being able to discuss these technologies confidently will show your technical prowess.

✨Prepare for Scenario-Based Questions

Expect scenario-based questions that assess your problem-solving abilities in real-world situations. Practice articulating your thought process and decision-making steps when faced with potential security threats.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>