At a Glance
- Tasks: Defend our digital assets by driving incident response and enhancing security operations.
- Company: Join Envision Pharma Group, a leader in cloud and infrastructure security.
- Benefits: Competitive salary, flexible work options, and opportunities for professional growth.
- Other info: Collaborative culture with excellent career advancement opportunities.
- Why this job: Make a real impact in a fast-paced tech environment while solving complex security challenges.
- Qualifications: 5+ years in security operations with hands-on Microsoft Security stack experience.
The predicted salary is between 50000 - 65000 £ per year.
Defend and strengthen our cloud and infrastructure security by driving incident response, detection, and operational resilience. We're looking for an IT Security Analyst to join our team and help protect Envision Pharma Group's digital assets through proactive monitoring, incident response, and operational security excellence. In this role, you will work closely with internal IT teams and external security partners to detect, investigate, and respond to security events while strengthening the organization's overall security posture. This is an excellent opportunity for an experienced IT professional who enjoys solving complex problems, improving security operations, and collaborating across teams to reduce risk in a fast-moving, global technology environment.
How will you make an impact at Envision Pharma Group?
- Provide day‑to‑day operational ownership of Envision's security platforms, collaborating closely with external SOC providers and internal IT teams.
- Lead and manage security incidents through the full lifecycle, including investigation, containment, remediation, and post‑incident review.
- Execute and continuously improve vulnerability management processes, coordinating remediation with infrastructure, application, and operations teams.
- Design, implement, and maintain technical security controls across cloud and on‑premises environments.
- Monitor, analyze, and tune security telemetry (SIEM, EDR, identity, network, and cloud signals) to improve detection quality and response time.
- Support compliance and audit activities (ISO 27001, SOC 2, customer security reviews) through evidence generation and control validation.
- Develop and maintain security operations metrics, KPIs, and KRIs to communicate risk posture and operational effectiveness.
- Create and maintain security runbooks, procedures, and operational documentation.
- Participate in incident response exercises, tabletop simulations, and continuous readiness activities.
- Provide guidance and mentorship to operational IT teams on secure practices and incident handling.
Skills & expertise
- Typically 5+ years of progressive experience in security operations, IT operations, or systems administration, with a focus on hands‑on Microsoft Security stack experience (Defender, Sentinel, Purview).
- Strong operational security experience, including incident response, vulnerability management, and alert monitoring, with the ability to lead incidents end‑to‑end.
- Experience with cloud security in Microsoft Azure and AWS, including onboarding, monitoring, and implementing controls within a SOC environment.
- Proven experience in project‑based security work, including the selection, onboarding, configuration, and rollout of new security tools and capabilities.
- Comfortable working alongside managed SOC teams, IT teams, and business stakeholders to expedite incidents, improve workflows, and strengthen security posture.
- Solid understanding of enterprise IT environments, including networking, identity systems, endpoints, and cloud infrastructure.
- Hands‑on experience with security tooling, such as SIEM, EDR/XDR, vulnerability scanners, identity security tools, and cloud security controls, including tuning and telemetry correlation.
- Knowledge of security frameworks and compliance standards (ISO 27001, SOC 2, NIST) and applying them in operational security contexts.
- Holds at least one recognized cybersecurity certification (e.g., Security+, Microsoft Security, AWS Security); CISSP is a plus.
- Ability to analyze complex technical data, correlate signals across systems, and make sound risk‑based decisions under pressure.
- Strong verbal and written English communication skills.
IT Security Analyst employer: Envision Pharma Group
Envision Pharma Group is an exceptional employer that prioritises the professional growth and well-being of its employees. With a collaborative work culture that encourages innovation and problem-solving, our IT Security Analyst role offers the chance to work with cutting-edge technology in a dynamic global environment. Employees benefit from continuous learning opportunities, mentorship, and a commitment to operational excellence, making it a rewarding place to advance your career in IT security.
StudySmarter Expert Advice🤫
We think this is how you could land IT Security Analyst
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even online forums. The more people you know, the better your chances of hearing about job openings before they hit the market.
✨Tip Number 2
Show off your skills! Create a personal project or contribute to open-source initiatives that showcase your IT security expertise. This not only builds your portfolio but also gives you something tangible to discuss during interviews.
✨Tip Number 3
Prepare for those tricky interview questions! Research common scenarios in IT security and think through how you'd handle them. Practising your responses will help you feel more confident and ready to impress.
✨Tip Number 4
Don't forget to apply through our website! We love seeing candidates who are genuinely interested in joining our team. Tailor your application to highlight how your experience aligns with our needs, and let’s make an impact together!
We think you need these skills to ace IT Security Analyst
Some tips for your application 🫡
Tailor Your CV:Make sure your CV is tailored to the IT Security Analyst role. Highlight your experience with security operations, incident response, and any relevant certifications. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter:Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how you can contribute to our mission at Envision Pharma Group. Keep it concise but impactful – we love a good story!
Showcase Your Technical Skills:Don’t forget to mention your hands-on experience with Microsoft Security tools and cloud environments like Azure and AWS. We’re keen on seeing how you’ve tackled complex problems in your previous roles, so give us the details!
Apply Through Our Website:We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates. Plus, we love seeing candidates who take that extra step!
How to prepare for a job interview at Envision Pharma Group
✨Know Your Security Tools
Familiarise yourself with the Microsoft Security stack, especially Defender and Sentinel. Be ready to discuss your hands-on experience with these tools and how you've used them in past roles to manage incidents and improve security operations.
✨Showcase Your Incident Response Skills
Prepare to share specific examples of how you've led security incidents from start to finish. Highlight your approach to investigation, containment, and remediation, as well as any post-incident reviews you've conducted to enhance future responses.
✨Understand Cloud Security
Brush up on your knowledge of cloud security, particularly in Microsoft Azure and AWS. Be prepared to discuss how you've implemented security controls in these environments and how you monitor and manage vulnerabilities effectively.
✨Communicate Clearly
Strong communication skills are key in this role. Practice explaining complex technical concepts in simple terms, as you'll need to collaborate with various teams. Prepare to discuss how you've mentored others in secure practices and incident handling.