Senior Information Security Analyst
Senior Information Security Analyst

Senior Information Security Analyst

London Full-Time 70000 - 85000 £ / year (est.) Home office (partial)
Go Premium
J

At a Glance

  • Tasks: Protect vital information by managing security policies and responding to cyber threats.
  • Company: Join a leading global pharma company focused on innovation and security.
  • Benefits: Competitive salary, remote work flexibility, and opportunities for professional growth.
  • Why this job: Make a real impact in cybersecurity while working with cutting-edge technologies.
  • Qualifications: 5-7 years in Information Security and strong analytical skills required.
  • Other info: Dynamic work environment with excellent career advancement opportunities.

The predicted salary is between 70000 - 85000 £ per year.

Our Client is a leading global company specialising in pharma products. They are looking to recruit a Senior Information Security Analyst with at least 5 to 7 years expertise in Technology Security.

The Senior Information Security Analyst is responsible for maintaining information security policies, architecture, technical standards, technical controls, security solutions, guidelines, procedures, and other elements necessary to maintain security posture. Responsible for assessing information risk and facilitating remediation of identified vulnerabilities & risks across the organization. Accountable for coordinating the execution of security measures to protect our computer infrastructure, information systems and to ensure the organization maintains an acceptable risk posture.

The Senior Information Security Analyst is highly engaged in risk management and mitigation, including evaluating vendor risk, examining vendor contracts for terms of service, understanding third-party risk, and data privacy issues. The analyst serves as an expert on cybersecurity protection, detection, response, and recovery. This individual is responsible for coordinating penetration testing and managing internal and external cybersecurity analysts to detect, mitigate, and analyze threats. Works closely with other teams to develop controls such as firewalls, business systems, data leakage protection systems, patching, encryption, vulnerability scanning, application code scanning, remediation as well as defining configuration for a variety of security tools. Prior experience in an international enterprise environment is essential.

Responsibilities

  • Collaborate with IT teams for input and operational requirements to design and implement the company's overall cybersecurity strategy.
  • Identify and address security gaps discovered through ongoing monitoring of all information security controls and implement enhancements to security controls.
  • Manage access to elevated privileges accounts and audit activities to meet business and regulatory requirements.
  • Evaluate and/or implement cybersecurity solutions and controls to maintain confidentiality, integrity, and availability.
  • Actively participate in proofs-of-concept for new security technologies by developing selection criteria to identify appropriate security solutions to support strategic, operational needs, and security requirements.
  • Participate in the development and testing of the security incident response plan, act as the incident response leader.
  • Develop security, risk, and compliance reports and alerts.
  • Participate in the yearly review of policies and procedures to support information security, risk, and security compliance activities.
  • Participates in developing, testing, and implementation of disaster recovery procedures for the cybersecurity technology in place.
  • Manages cybersecurity projects to ensure that the delivery is on-time, within budget, and adopted to meet the company's information protection requirements.
  • Performs or coordinates internal security assessments, penetration tests, vulnerability scans, and assess organization cybersecurity maturity complying with frameworks and regulations such as COBIT, NIST (800-53, cybersecurity), ISO, ITIL, PCI, GLBA, GDPR, HIPAA, and other data privacy and security standards and regulations.
  • Provides internal customer support via assigned tickets for security-related issues, while ensuring assignments are resolved within assigned SLAs.
  • Evaluate and implement CIS critical security controls where necessary.
  • Will provide input into cybersecurity strategic roadmap and annual budget.
  • Adhere to applicable change management policy and procedure.

Qualifications

  • Bachelor's degree required; advanced degree highly desirable.
  • Candidates must possess significant analytical skills, which evolved from early academic training in Cybersecurity, Information Systems, Computer Science, or similar discipline.
  • Provides a documented work history that includes a minimum of 5-years experience in Information Security.
  • Proficiency in security framework models such as NIST, etc., implementing and auditing security measures, security response, and incident management.
  • Possess a working knowledge of Cisco network switches, routers, firewalls and VPN, network security, administration of DLP, antivirus/antimalware, IDS/IPS, SIEM, SMTP, Email security, AD, Group Policy, DNS, DHCP, and VLANs.
  • Experience with identity access management solutions, such as SAML/OATH.
  • Experience with HIDS and NIDS.
  • The ideal candidate possesses relevant information security or cybersecurity certifications.
  • Requires the ability to analyze and recommend changes to the security landscape where necessary to meet the information security objectives of the organization.
  • Participates in change management meetings and provides expert input to ensure security is maintained.
  • Knowledgeable in security best practices such as encryption, hashing, vulnerability scans, event log monitoring, intrusion detection and prevention, eDiscovery, and content filtering.
  • Ability to manage and continuously improve upon vulnerability management program.
  • Ability to propose solutions for closing identified vulnerabilities in the infrastructure.

Desired Qualifications

  • Certified Information System Security Professional (CISSP), NIST Cybersecurity Framework (NCSF), Certified Cloud Security Professional (CCSP) and/or Certified Ethical Hacker (CEH).
  • Knowledge and experience with Microsoft Office and Visio.
  • Knowledge of WAN technologies including MPLS, SD WAN.
  • Knowledge of cloud providers security (AWS, GCP or Azure).
  • Prior experience managing Cisco ELA products including DNA, Firepower, ISE Management console, Umbrella, Cisco AMP for endpoints, Stealth watch, as well as Splunk, SolarWinds, Varonis and Darktrace.
  • Prior experience with Azure Rights management and Information protection highly desirable.
  • Project management skills are highly desirable.
  • Previous experience in a HIPAA/FDA regulated environment.

Competencies

  • Motivation/Initiative: Motivated and curious, willing to ask questions, research issues, and take on challenging projects/assignments; creative, brings new ideas to the table, exhibits self-confidence. Position requires a strong achievement motivation and tenacity.
  • Administrative Skills: Possesses the ability to organize and follow-through on multiple tasks recognizes and attends to important details with accuracy and efficiency. Works to complete goals, tasks, and plans, anticipate potential problems and analyze alternative solutions.
  • Interpersonal Style: Develops/maintains effective working relationships; listens attentively to others; communicates ideas clearly (written & verbal); relates to people in an open/sincere manner; participates effectively in meetings; assists in finding solutions as well as identifying problems; communicates appropriately with supervisor, and co-workers. Able to influence other individuals and maintain calm and reliable demeanor in the face of challenges.
  • Self-Management: Adapts readily to changes in routine; works effectively in stressful situations; needs limited guidance and direction; is comfortable working in a fast-paced environment; is reliable and dependable; is results-oriented; maintains productivity and composure under pressure; views problems as opportunities to create solutions.
  • Thinking Skills: Diagnoses problems efficiently; gathers sufficient input before making decisions or plans; makes timely decisions, quickly determines sources of the problem, identifies information needed to solve a problem and analyzes alternative solutions, communicates issues and decisions effectively to the team.
  • Customer Orientation: Sensitive & responsive to internal customer needs; demonstrates skills in customer services and satisfaction; maintains a positive attitude, willing to listen to customer problems and seeks solutions; stays in tune with changing needs of customers.

This is a UK based role at the Central London offices of the Client, although for the foreseeable future you will be based at home and work remotely. The salary for this role will be in the range £70K - £85K.

Senior Information Security Analyst employer: Jas Gujral

Our Client is an exceptional employer, offering a dynamic work culture that prioritises innovation and collaboration in the heart of Central London. With a strong commitment to employee growth, they provide ample opportunities for professional development and training in the ever-evolving field of cybersecurity. The company also values work-life balance, allowing for remote work flexibility, making it an ideal place for those seeking meaningful and rewarding employment in the pharma sector.
J

Contact Detail:

Jas Gujral Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Senior Information Security Analyst

✨Tip Number 1

Network like a pro! Reach out to your connections in the cybersecurity field, attend industry events, and join relevant online forums. You never know who might have the inside scoop on job openings or can put in a good word for you.

✨Tip Number 2

Show off your skills! Create a personal project or contribute to open-source security tools. This not only boosts your portfolio but also demonstrates your hands-on experience and passion for information security.

✨Tip Number 3

Prepare for interviews by brushing up on common cybersecurity scenarios and challenges. Be ready to discuss how you've tackled vulnerabilities in the past and what strategies you’d implement to enhance security posture.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets noticed. Plus, we love seeing candidates who take that extra step to connect with us directly.

We think you need these skills to ace Senior Information Security Analyst

Information Security Policies
Risk Management
Vulnerability Assessment
Penetration Testing
Cybersecurity Solutions
Incident Response
Security Frameworks (NIST, ISO)
Network Security (Cisco, Firewalls, VPN)
Identity Access Management (SAML, OATH)
Data Privacy Compliance (GDPR, HIPAA)
Project Management
Analytical Skills
Communication Skills
Adaptability
Customer Orientation

Some tips for your application 🫡

Tailor Your CV: Make sure your CV is tailored to the Senior Information Security Analyst role. Highlight your relevant experience in technology security, risk management, and any specific frameworks you've worked with. We want to see how your skills align with what we're looking for!

Showcase Your Achievements: Don’t just list your responsibilities; showcase your achievements! Use metrics where possible to demonstrate how you’ve improved security postures or mitigated risks in previous roles. This helps us see the impact you've made in your past positions.

Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how your background makes you a perfect fit for our team. We love seeing genuine enthusiasm and a clear understanding of the role.

Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It streamlines the process for us and ensures your application is reviewed promptly. Plus, it’s super easy to do!

How to prepare for a job interview at Jas Gujral

✨Know Your Stuff

Make sure you brush up on your knowledge of cybersecurity frameworks like NIST and ISO. Be ready to discuss how you've implemented security measures in past roles, as well as any specific tools you've used, like firewalls or SIEM systems.

✨Showcase Your Experience

Prepare to share concrete examples from your 5-7 years of experience in technology security. Highlight your involvement in risk management, vulnerability assessments, and incident response. Use the STAR method (Situation, Task, Action, Result) to structure your answers.

✨Ask Smart Questions

Demonstrate your interest in the role by asking insightful questions about the company's current security posture, challenges they face, and their approach to vendor risk management. This shows you're not just interested in the job, but also in contributing to their success.

✨Be a Team Player

Since collaboration is key in this role, be prepared to discuss how you've worked with IT teams and other departments in the past. Share examples of how you’ve contributed to developing security strategies or incident response plans, showcasing your interpersonal skills.

Senior Information Security Analyst
Jas Gujral
Location: London
Go Premium

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

J
  • Senior Information Security Analyst

    London
    Full-Time
    70000 - 85000 £ / year (est.)
  • J

    Jas Gujral

    50-100
Similar positions in other companies
UK’s top job board for Gen Z
discover-jobs-cta
Discover now
>