At a Glance
- Tasks: Conduct security risk assessments and monitor security controls to protect our fintech platform.
- Company: Join Mambu, a leading SaaS cloud banking platform on a mission to revolutionise banking.
- Benefits: Enjoy competitive salary, company equity, hybrid working, and a 4-week paid sabbatical after 5 years.
- Why this job: Be part of a dynamic team shaping the future of financial services with impactful work.
- Qualifications: Extensive experience in security domains, cloud security, and knowledge of industry standards required.
- Other info: We value diversity and encourage all candidates to apply, regardless of qualifications.
The predicted salary is between 48000 - 72000 £ per year.
Join the fintech revolution with Mambu, the leading SaaS cloud banking platform. We are on a mission to make banking better for a billion people. Explore exciting career opportunities and help shape the future of financial services.
As part of the office of the CISO, the corporate security team is responsible for developing and maintaining Mambu’s security policies, standards, risks and controls frameworks, monitoring security control effectiveness, providing security risk posture views to leadership, governing ISMS implementation and leading audit preparations. The team is also responsible for supporting customer security requests, managing vendor security due diligence and delivering security training and awareness programs.
What you’ll do:
- Conduct security risk assessments, participate in (or conduct where appropriate) threat modelling exercises.
- Document and communicate identified risks and recommendations for risk mitigation.
- Track security risk actions and monitor security risks and threat environment for any changes to security risk position.
- Monitor and track control effectiveness and identify control gaps or emerging risks and propose corrective actions.
- Provide regular reporting on security risks and security risk management programme (KRIs and KPIs).
- Coordinate and track actions to address audit findings to completion.
- Support Security Governance & Compliance Lead with audit preparations.
What you’ll bring:
- Extensive experience and knowledge in various security domains and cloud security (AWS, GCP, Azure, OCI).
- Experience in conducting security reviews and security risk assessments using a structured security risk framework.
- Ability to communicate effectively at technical and strategic level with both engineers and directors.
- Ability to work independently.
- Knowledge of industry standards and regulations such as ISO27001, NIST CSF.
- Familiarity with audit preparations and compliance requirements including SSAE 18 SOC 1 and 2, DORA/NIS2.
What you’ll get:
- Competitive Base Salary
- Company Equity for All
- Learning and Development Opportunities
- Hybrid/Remote Working (Location Dependant)
- 30 Day Working Abroad
- 4 week Paid Sabbatical after 5 Years Service
- Additional Benefits based on location
At Mambu, we encourage all interested candidates to apply, even if they don’t meet every listed qualification, as we value diversity and recognize that experience doesn’t always perfectly align with job descriptions. We are committed to providing equal opportunities for applicants with disabilities; if you need assistance during the application process, please contact talent.acquisition@mambu.com.
Senior Security Analyst employer: Mambu B.V.
Contact Detail:
Mambu B.V. Recruiting Team
talent.acquisition@mambu.com
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Security Analyst
✨Tip Number 1
Familiarise yourself with the latest trends in cloud security, especially within AWS, GCP, and Azure. This knowledge will not only help you during interviews but also demonstrate your commitment to staying updated in a rapidly evolving field.
✨Tip Number 2
Engage with Mambu's online presence by following them on LinkedIn, Facebook, Instagram, and YouTube. This will give you insights into their culture and values, which can be beneficial when discussing how you align with their mission during interviews.
✨Tip Number 3
Prepare to discuss your experience with security risk assessments and compliance frameworks like ISO27001 and NIST CSF. Be ready to share specific examples of how you've successfully implemented these in previous roles.
✨Tip Number 4
Network with current or former employees of Mambu to gain insider knowledge about the team dynamics and expectations. This can provide you with valuable information that may set you apart from other candidates.
We think you need these skills to ace Senior Security Analyst
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of the Senior Security Analyst position. Familiarise yourself with Mambu's mission and values to tailor your application accordingly.
Highlight Relevant Experience: In your CV and cover letter, emphasise your extensive experience in security domains and cloud security. Provide specific examples of past projects or roles where you conducted security risk assessments or managed compliance requirements.
Showcase Communication Skills: Since the role requires effective communication at both technical and strategic levels, include examples in your application that demonstrate your ability to convey complex security concepts to diverse audiences.
Tailor Your Application: Customise your CV and cover letter to reflect the specific skills and experiences mentioned in the job description. Use keywords from the listing, such as ISO27001, NIST CSF, and audit preparations, to ensure your application stands out.
How to prepare for a job interview at Mambu B.V.
✨Understand the Security Landscape
Familiarise yourself with the latest trends and challenges in security, especially in cloud environments like AWS, GCP, and Azure. Being able to discuss current threats and how they relate to Mambu's operations will show your expertise and enthusiasm for the role.
✨Prepare for Technical Questions
Expect to be asked about specific security frameworks and standards such as ISO27001 and NIST CSF. Brush up on your knowledge of these frameworks and be ready to explain how you've applied them in past roles.
✨Showcase Your Communication Skills
As the role requires interaction with both technical teams and leadership, practice articulating complex security concepts in a clear and concise manner. Prepare examples of how you've successfully communicated risks and recommendations in previous positions.
✨Demonstrate Problem-Solving Abilities
Be ready to discuss how you've identified control gaps or emerging risks in the past and the corrective actions you proposed. Use specific examples to illustrate your analytical skills and proactive approach to security management.