At a Glance
- Tasks: Conduct security assessments and identify legacy issues in a global organisation.
- Company: Fruition Group, a leader in tech security solutions.
- Benefits: Competitive daily rate, remote work, and potential for extension.
- Other info: Join a dynamic team with opportunities for professional growth.
- Why this job: Make a real impact on security posture at an enterprise scale.
- Qualifications: Experience in security auditing and knowledge of cloud platforms required.
This is a unique opportunity to contribute to a large-scale uplift of security posture across a global organisation operating at enterprise scale. Following a refresh of security policies aligned to NIST CSF v2.0, the company requires a strong Security Analyst to carry out a broad review of systems, infrastructure, and applications. This role will focus on identifying legacy security issues, performing gap analysis, and assessing how fit-for-purpose existing security controls are under the updated standards.
Key Responsibilities
- Perform end-to-end security control assessments across infrastructure, enterprise applications, SaaS platforms, and bespoke systems.
- Review current ("as-is") environments and conduct gap analyses against the organisation's new security control framework based on NIST CSF v2.0.
- Identify weaknesses or outdated practices and define clear, actionable remediation plans in partnership with other teams.
- Dig into legacy security issues and help shape the future state of security posture.
- Work across a wide stack including AWS, GitHub Enterprise, Slack, Zoom, Atlassian, and SaaS tools like Workday, Workiva, and EquatePlus.
- Partner with internal stakeholders to ensure compliance and drive down organisational risk.
What We're Looking For
- Proven experience in security auditing and assessment across a broad range of technologies.
- Strong working knowledge of cloud platforms, enterprise infrastructure, and SaaS environments.
- Ability to dig into security controls and evaluate them against formal security frameworks.
- Experience conducting risk assessments, performing gap analysis, and recommending mitigations.
- Confident working with technical and non-technical stakeholders to influence remediation strategies.
- Desirable exposure to tools such as Splunk, Crowdstrike, AWS, Kubernetes, or MITRE ATT&CK.
Security Analyst in England employer: Fruition Group
Contact Detail:
Fruition Group Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Analyst in England
✨Tip Number 1
Don't just sit back and wait for the job to come to you! Slide into the DMs of the job poster on platforms like LinkedIn. A friendly message can make you stand out and show your enthusiasm for the role.
✨Tip Number 2
Network, network, network! Reach out to current or former employees at Fruition Group. They can give you insider tips and maybe even put in a good word for you. Plus, it’s a great way to learn more about the company culture.
✨Tip Number 3
Prepare for the interview by brushing up on your knowledge of NIST CSF v2.0 and the specific technologies mentioned in the job description. Show that you’re not just a fit for the role but also genuinely interested in the company's mission.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen. Plus, we love seeing candidates who take the extra step to engage with us directly.
We think you need these skills to ace Security Analyst in England
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Security Analyst role. Highlight your experience with security auditing, risk assessments, and any relevant technologies like AWS or Splunk. We want to see how your skills align with what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about security and how your background makes you a great fit for this role. Don't forget to mention your experience with NIST CSF v2.0 if you have it!
Showcase Your Problem-Solving Skills: In your application, give examples of how you've identified and remediated security issues in the past. We love candidates who can demonstrate their analytical thinking and ability to work with both technical and non-technical stakeholders.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you don’t miss out on any important updates. Plus, we love seeing applications come in through our platform!
How to prepare for a job interview at Fruition Group
✨Know Your Security Frameworks
Make sure you’re well-versed in the NIST CSF v2.0 and other relevant security frameworks. Brush up on how they apply to the role and be ready to discuss specific examples of how you've used them in past experiences.
✨Showcase Your Technical Skills
Prepare to talk about your experience with cloud platforms, SaaS environments, and tools like Splunk or AWS. Be ready to dive into technical discussions and demonstrate your understanding of security controls and assessments.
✨Prepare for Scenario-Based Questions
Expect questions that ask you to evaluate security controls or conduct a gap analysis on hypothetical scenarios. Practise articulating your thought process and remediation strategies clearly and confidently.
✨Engage with Stakeholders
Highlight your ability to work with both technical and non-technical stakeholders. Prepare examples of how you've influenced remediation strategies in the past, as this will show your collaborative approach and communication skills.