At a Glance
- Tasks: Provide expert advice on cyber security for digital transformation projects.
- Company: Join a leading public sector organisation in Edinburgh with a hybrid work model.
- Benefits: Competitive day rate, flexible working, and opportunities for professional growth.
- Other info: Collaborative environment with a focus on agile project teams and continuous learning.
- Why this job: Make a real impact by safeguarding digital services and enhancing security measures.
- Qualifications: Experience in security and risk assessment, with a strong understanding of digital services.
Harvey Nash's Client have a requirement for within their cyber security team, you will be providing advice and guidance to digital transformation projects. Activities will cover cyber security and risk throughout service lifecycle.
Key Responsibilities
- Be aware of the current cyber threat landscape and industry best practices and standards.
- Support initial scoping and risk assessment of a change project.
- Interpret security best practice and accreditation requirements to determine security requirements.
- Adapt existing cyber security standards and controls to fit specific change projects.
- Carry out threat modelling and risk assessments.
- Review high- and low-level designs drafted by solution architects.
- Maintain a security design assessment for new services.
- Carry out basic hands-on security assessments (e.g. SSL Labs config or CSP evaluator, not including full pen testing).
- Plan and co-ordinate independent pen testing.
- Provide recommendations for stage gating and go live decisions.
- Own completion and accuracy of all security related product delivery evidence.
- Provide recommendations for SecOps processes and automation for new systems.
Technical scope
- Security products (email filtering, AV, firewalls, WAFs, MS Defender).
- Security Testing (SAST, DAST).
- Virtualisation platforms and operating systems, including Hyper-V and Windows Server.
- Enterprise Systems (email, PKI, AD, GP, SCCM, Azure incl. Entra and Intune, M365).
- Application platforms (MS Dynamics, Power Platform).
- Cloud platforms (Azure).
Skills Required
- Security and Risk assessment.
- In depth understanding of and experience with enterprise scale digital service provision.
- Demonstrable recent record making security contribution during the development of a new digital service.
- Ability to work well in an agile project team with internal colleagues and suppliers.
- Ability to self-start, accept ownership and see through security aspects of project start to finish.
- Ability to share knowledge and experience with colleagues and effectively hand over to SecOps.
Desirable Skills
- Experience with MS Dynamics, Power Platform and Azure.
- Experience managing independent testing (scope, pre-test config, triage findings).
- Experience with MCSE Certified or equivalent experience.
- ITIL certification.
Please note that you must be eligible for BPSS and Standard Disclosure Clearance to commence this post.
Cyber Security Specialist in Bonnyrigg employer: Harvey Nash
Contact Detail:
Harvey Nash Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Specialist in Bonnyrigg
✨Tip Number 1
Network like a pro! Attend industry meetups, webinars, or local events related to cyber security. It's all about making connections and getting your name out there – you never know who might have the inside scoop on job openings.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your past projects, especially those related to cyber security and risk assessments. This will give potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on current cyber threats and best practices. Be ready to discuss how you've tackled security challenges in the past and how you can contribute to their digital transformation projects.
✨Tip Number 4
Don't forget to apply through our website! We make it easy for you to find roles that match your skills and interests. Plus, it shows you're serious about joining our team!
We think you need these skills to ace Cyber Security Specialist in Bonnyrigg
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Specialist role. Highlight your experience with security assessments, risk management, and any relevant certifications. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your background makes you a great fit for our team. Keep it concise but impactful – we love a good story!
Showcase Relevant Projects: If you've worked on any projects related to digital transformation or security, make sure to mention them. We’re interested in your hands-on experience, so don’t hold back on the details that show your contributions!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you’ll be able to keep track of your application status. Plus, we love seeing applications come directly from our site!
How to prepare for a job interview at Harvey Nash
✨Know Your Cyber Security Landscape
Make sure you’re up to speed with the current cyber threat landscape and industry best practices. Brush up on recent trends and be ready to discuss how they might impact the projects you'll be working on.
✨Showcase Your Risk Assessment Skills
Prepare to talk about your experience with risk assessments and how you've applied them in previous roles. Be specific about the methodologies you used and the outcomes of your assessments.
✨Familiarise Yourself with Relevant Technologies
Get comfortable with the security products and platforms mentioned in the job description, like Azure, MS Dynamics, and various security testing tools. Being able to discuss these technologies will show that you're ready to hit the ground running.
✨Demonstrate Team Collaboration
Since this role involves working in an agile project team, think of examples where you've successfully collaborated with colleagues and suppliers. Highlight your ability to share knowledge and ensure smooth handovers to SecOps.