At a Glance
- Tasks: Monitor and enhance security for our IT infrastructure while managing incidents and vulnerabilities.
- Company: Join Pinnacle Pet UK, a leader in pet insurance dedicated to happy, healthy pets and their owners.
- Benefits: Enjoy a hybrid work model, opportunities for growth, and a supportive team culture.
- Why this job: Be part of a mission-driven company that values innovation, diversity, and collaboration in the pet care industry.
- Qualifications: Strong IT skills and experience with cybersecurity tools; relevant degree or certifications required.
- Other info: This role offers hands-on experience in a dynamic environment focused on continuous learning.
The predicted salary is between 36000 - 60000 Β£ per year.
Job Details: xSecurity Operations Officer
Full details of the job.
Vacancy Name
Vacancy Name xSecurity Operations Officer
Vacancy No
Vacancy No VN594
Employment Type
Employment Type Full-Time
Location
Location Hybrid β Borehamwood
About Us
About Us Our Mission
Happy, healthy pets, make for happy, healthy people.
We aim to strengthen the unique bond between pets and their parents through our innovative products and services, enabled by brilliant colleagues who embody our values of performance, exploration, togetherness, and sustainability.
Our Journey
In 2016 we set out to focus entirely on pet insurance with pets and families at the centre of our business strategy and in 2017 launched a new brand, EveryPaw.
To offer our customers a choice of insurance options for their pets, we also focussed on finding the right partners to support our growth ambition and our first big partnerships with Sainsbury and Argos, went live in 2019.
Many talented colleagues have joined us, and we now partner with a number of fantastic brands across the retail, charity and financial services sectors. Weβve developed new capabilities, new platforms and new services specifically for our partners to achieve the best customer experience. Over the last 6 years, the number of pet parents we support has grown five-fold to over half a million in 2023. Together weβve built the leading Pet Partnership business in the UK and are proud to support and engage pet parents every day to ensure happy and healthy pets.
Our ambition
Weβre delivering long-term success and growth through empowerment and strong collaboration focusing on our two own brands; EveryPaw and Pet Protect and building great relationships with our partners to provide market leading products, innovative new services, simplicity and a great customer experience. Our goal is to support over 1 million pet parents by the end of 2026.
Pinnacle Pet UK provides great opportunities for those who love pets, want to learn, be challenged and develop. As a team, we are focused on performance and great customer outcomes. We support each other to achieve our individual and collective goals and have a culture where everyone can be authentic, diverse and innovative and truly be the best version of themselves supporting what we do best β pets.
The Security Operations Officer is primarily responsible for maintaining and enhancing the security posture of Pinnacle Pet UK\βs IT infrastructure through vigilant monitoring, management, and remediation of security threats and vulnerabilities.
Working independently but closely with the Global Security Officer / CISO, a managed Security Operations Centre (SOC), the wider IT team, and various business units, the Security Operations Officer will:
- Monitor IT estate security compliance
- Manage vulnerabilities
- Handle security incidents
- Define and maintain security procedures
- Respond to security-related queries and requests
- Manage security alerts
- Integrate cyber threat intelligence (CTI) feeds
- Produce regular security reporting
The position is a Hybrid Role and will require some office attendance.
Key Responsibilities
- Security Compliance Monitoring: Conduct monthly assessments and reporting on IT assets\β compliance with security standards, including system patching, and antivirus measures using tools like Microsoft Defender and Intune. Produce reporting and Coordinate remediation strategies aligned with Service Level Agreements (SLAs) based on severity levels
- Vulnerability Management: Perform internal (Microsoft Defender for Vulnerability Management) and external (Qualys WAS/VM) vulnerability scans. Produce reporting and coordinate remediation strategies aligned with Service Level Agreements (SLAs) based on severity levels.
- Security Incident Management: Lead local response to security incidents and investigations, collaborating with the managed SOC service to ensure timely and effective mitigation of security breaches and threats.
- ServiceNow Security SME: Act as a security subject matter expert (SME) within ServiceNow, assisting the business with security-related incidents and requests, including social engineering reports, web-filtering, and firewall change requests.
- Policy and Procedure Maintenance: Maintain and update security policies and procedures to reflect current best practices and regulatory requirements.
- Security Assurance and Risk Management : Support internal and external security audits and assessments. Implement recommended actions to address identified risks.
- Azure Tooling Enhancement: Improve SecOps processes by adopting new tools within Pinnacle Pet UK\βs Azure environment. Oversee deployment, configuration, and optimization of security technologies.
- Cyber Threat Intelligence Integration: Enhance cybersecurity defences by integrating relevant CTI feeds and tools into existing operations.
- Security Awareness and Training: Develop and deliver security training and awareness programs to staff, addressing social engineering and other human-centric security risks
Successful Candidates Will Have
Required Skills and Work Experience;
Essential
- Strong IT skills, including knowledge of computer networks, operating systems, software, and cybersecurity principles.
- Hands-on experience with ServiceNow, Qualys WAS/VM, Zscaler, Microsoft Purview, Microsoft Defender Suite, Intune, and Azure Sentinel.
- Solid understanding of current information security vulnerabilities and countermeasures.
- Knowledge of cyber threat intelligence feeds and their integration with operational security.
- Practical understanding of incident handling, security investigation techniques, and maintaining security playbooks.
- Familiarity with OWASP Top 10, NCSC best practices, NVD (National Vulnerability Database), CVSS scoring, and CIS Controls (formerly CIS20).
- Excellent communication and documentation skills suitable for both technical and non-technical audiences.
Desirable
- Experience with attack detection, Intrusion Detection/Prevention Systems (IDS/IPS), SIEM, ATT&CK frameworks, firewalls, Identity and Access Management (IAM), anti-virus, patch management, CASB, particularly in an Azure cloud environment.
- Familiarity with cybersecurity frameworks such as NIST Cybersecurity Framework (CSF) and ISO 27001..
Required Qualifications;
Essential
- IT or security-related degree or industry-recognized certifications (e.g., CompTIA Security+).
Desirable
- Information Security qualifications such as CISSP, CISA, CISM, CIS20, or equivalent
- Microsoft Azure certifications: AZ-500, MS-500, SC-200, SC-100, or equivalent.
#J-18808-Ljbffr
Security Operations Officer employer: Pinnacle Pet Group
Contact Detail:
Pinnacle Pet Group Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Security Operations Officer
β¨Tip Number 1
Familiarise yourself with the specific tools mentioned in the job description, such as Microsoft Defender, ServiceNow, and Qualys. Having hands-on experience or even a basic understanding of these platforms can set you apart during discussions.
β¨Tip Number 2
Stay updated on the latest cybersecurity trends and threats. Being knowledgeable about current vulnerabilities and countermeasures will demonstrate your commitment to the role and your proactive approach to security.
β¨Tip Number 3
Network with professionals in the cybersecurity field, especially those who work with Azure environments. Engaging in relevant forums or LinkedIn groups can provide insights and potentially lead to referrals.
β¨Tip Number 4
Prepare to discuss real-world scenarios where you've handled security incidents or vulnerabilities. Sharing specific examples will showcase your practical experience and problem-solving skills, which are crucial for this position.
We think you need these skills to ace Security Operations Officer
Some tips for your application π«‘
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the responsibilities of a Security Operations Officer. Emphasise your knowledge of cybersecurity principles, incident handling, and any hands-on experience with tools like ServiceNow and Microsoft Defender.
Craft a Compelling Cover Letter: In your cover letter, express your passion for cybersecurity and how it relates to the mission of Pinnacle Pet UK. Mention specific examples of how you've successfully managed security incidents or improved security compliance in previous roles.
Showcase Relevant Certifications: List any IT or security-related degrees and industry-recognised certifications prominently in your application. Highlight qualifications such as CompTIA Security+, CISSP, or Microsoft Azure certifications to demonstrate your expertise.
Prepare for Technical Questions: Anticipate technical questions related to cybersecurity vulnerabilities, incident response, and security tools. Be ready to discuss your practical understanding of frameworks like NIST CSF and your experience with vulnerability management tools.
How to prepare for a job interview at Pinnacle Pet Group
β¨Know Your Cybersecurity Basics
Make sure you have a solid understanding of cybersecurity principles, including the OWASP Top 10 and NCSC best practices. Brush up on your knowledge of vulnerabilities and countermeasures, as these will likely come up during the interview.
β¨Familiarise Yourself with Relevant Tools
Since the role involves hands-on experience with tools like ServiceNow, Qualys, and Microsoft Defender, be prepared to discuss your experience with these platforms. If you haven't used them directly, research their functionalities and how they relate to security operations.
β¨Prepare for Scenario-Based Questions
Expect questions that assess your incident handling and investigation skills. Think of examples from your past experiences where you successfully managed security incidents or vulnerabilities, and be ready to explain your thought process.
β¨Showcase Your Communication Skills
As the role requires excellent communication skills for both technical and non-technical audiences, practice explaining complex security concepts in simple terms. This will demonstrate your ability to convey important information effectively.