At a Glance
- Tasks: Automate security controls testing and enhance compliance monitoring in cloud and on-prem environments.
- Company: Join Experian, a global leader in data and technology with a focus on innovation.
- Benefits: Competitive salary, bonus plan, healthcare, generous leave, and volunteering days.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
- Qualifications: Experience in automation development and knowledge of security controls essential.
- Other info: Hybrid role with opportunities for professional growth in a diverse environment.
The predicted salary is between 36000 - 60000 £ per year.
Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realize their financial goals and help them save time and money.
We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland.
Experian Global Security Office are looking for an Information Security Controls Automation Specialist. You will be part of a team responsible for evaluating and testing the effectiveness of security controls both on-premises and in the cloud, to ensure they are robustly designed and effectively implemented to safeguard Experian's assets. You will automate the review of security controls by reducing manual effort and increasing assessment efficiency.
You will blend cybersecurity governance, risk and compliance (GRC) and automation engineering to improve evidence collection and control validation crucial for supporting the security organization's control assurance program. You will collaborate with control owners, engineers, and the security control assurance team to identify automation opportunities, implementing scripts or integrations for both on-prem and cloud environment tools and validating outputs against the security controls and defined test steps.
This is a Hybrid position with 2 days a week expected in the office in Nottingham or London reporting to the Information Security Risk and Controls Director.
Summary of Primary Responsibilities- Analyze and automate existing manual test steps for assessing operating effectiveness of security controls in both cloud and on-prem environments.
- Develop automated control mechanisms (e.g. scripts, APIs, compliance dashboards), integrating validation logic into CI/CD pipelines, cloud environments, and endpoint tools.
- Enable continuous control monitoring (CCM) by developing reusable logic and ensuring automated controls produce evidence fit to support control assessments.
- Develop dashboards visualizing compliance status and resolve platform integration errors.
- Analyze false positives and drive remediation of those indicators.
- Maintain a control automation backlog and document all automated control logic, control mappings and system configurations.
- Experience in automation development, ideally specific to information security controls.
- Experience with information security control testing methodologies, information security risk assessments, auditing tools and an interest in emerging technologies.
- Security tooling (e.g. SIEM, Identity and Access Management platforms, DLP), cloud platforms (AWS, GCP, Azure), Infrastructure as Code (Terraform) and scripting languages (e.g. Python).
- Experience with workflow platform such as tines.io.
- Knowledge of cloud architecture and cybersecurity domains and principles.
- Professional certification such as AWS Solutions Architect, CCSP, CISSP, CRISC, ISO 27001 Lead Auditor, or equivalent.
- Technical skills Knowledge of security controls provided by tools such as Sailpoint, Rapid7, Wiz.io, MS Defender.
- Hands-on experience with API integrations and scripting (e.g. Python, PowerShell, JavaScript).
- Experience with IT Service Management, DevOps, Identity and access management, ERP systems (e.g., SAP, Oracle) and GRC tools.
- Experience leveraging automation, data driven testing techniques and generative AI to gain efficiency in control assurance.
Benefits package includes: Great compensation package and discretionary bonus plan. Core benefits include pension, bupa healthcare, sharesave scheme and more. 25 days annual leave with 8 bank holidays and 3 volunteering days. You can purchase additional annual leave.
Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.
Information Security Controls Automation Specialist employer: Experian Ltd
Contact Detail:
Experian Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Controls Automation Specialist
✨Tip Number 1
Network like a pro! Reach out to people in the industry, attend meetups, and connect with current Experian employees on LinkedIn. A friendly chat can open doors that a CV just can't.
✨Tip Number 2
Show off your skills! Create a portfolio or GitHub repository showcasing your automation projects or security control tests. This gives you a chance to demonstrate your expertise beyond the interview.
✨Tip Number 3
Prepare for the interview by brushing up on your knowledge of security controls and automation tools. Be ready to discuss how you've tackled challenges in past roles and how you can bring value to Experian.
✨Tip Number 4
Don't forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you're genuinely interested in joining the Experian team.
We think you need these skills to ace Information Security Controls Automation Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Controls Automation Specialist role. Highlight relevant experience in automation development and security controls, and don’t forget to mention any specific tools or languages you’ve worked with that match the job description.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your skills align with our mission at Experian. Be sure to mention any specific projects or achievements that demonstrate your expertise in automation and security.
Showcase Your Technical Skills: In your application, make sure to showcase your technical skills clearly. Mention your experience with scripting languages like Python or PowerShell, and any relevant certifications you hold. This will help us see how you can contribute to our team right away!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we love seeing candidates who take the initiative to engage directly with us!
How to prepare for a job interview at Experian Ltd
✨Know Your Stuff
Make sure you brush up on your knowledge of information security controls and automation. Familiarise yourself with the specific tools mentioned in the job description, like SIEM and cloud platforms. Being able to discuss these confidently will show that you're serious about the role.
✨Showcase Your Automation Skills
Prepare examples of how you've successfully automated processes in the past. Whether it's through scripting or integrating APIs, be ready to explain your thought process and the impact it had on efficiency. This is key for the role!
✨Understand the Company Culture
Research Experian's values and mission. They pride themselves on innovation and diversity, so think about how your personal values align with theirs. Be prepared to discuss how you can contribute to their culture during the interview.
✨Ask Smart Questions
Prepare insightful questions that demonstrate your interest in the role and the company. Inquire about their current challenges in security automation or how they envision the future of their security controls. This shows you're not just there to answer questions but are genuinely interested in contributing.