At a Glance
- Tasks: Assess and improve cyber risk across a world-renowned arts institution.
- Company: Join a prestigious arts and cultural institution in London.
- Benefits: 28 days leave, 10% pension contribution, flexible hours, and subsidised canteen.
- Why this job: Make a real impact on cyber security and influence organisational risk assessments.
- Qualifications: 3-4 years in cyber security with relevant certifications and networking knowledge.
- Other info: Collaborative environment with opportunities for professional growth.
The predicted salary is between 50000 - 60000 Β£ per year.
A world-renowned arts and cultural institution is looking to hire a Cyber Risk Analyst to strengthen its information security capability during a period of ongoing technology and security maturity.
You will be joining a sizeable technology function operating at real scale, supporting thousands of devices, over a thousand end users, and systems critical to an organisation welcoming millions of visitors each year. This role is focused on real-world cyber risk, not box-ticking, working closely with senior security leadership to assess infrastructure, networks, systems, and third parties as they actually operate.
It's a newly shaped role with genuine scope to influence how cyber risk is understood, assessed, and improved across the organisation.
Non-Negotiables- Security qualification such as CompTIA Security+, CISSP, CISM, CEH, or equivalent.
- 3-4 years' practical experience in cyber security risk, technical assurance, or IT audit roles.
- Networking fundamentals knowledge including ports, firewalls, segmentation, and isolation.
- Ability to assess real technical risk, not just control statements or policies.
- Confidence working with non-security teams to challenge assumptions and improve outcomes.
- SIEM tooling including Microsoft Sentinel and Log360.
- Cyber risk assessments across infrastructure, networks, and systems.
- Network architecture, firewall rules, segmentation, and access controls.
- Third-party and supply chain risk reviews.
- Risk registers, remediation tracking, and maturity assessments.
- Collaboration with infrastructure, support, compliance, and security teams.
- Background in SOC, infrastructure, or technical security roles.
- Exposure to penetration testing concepts (understanding how testing works, not hands-on delivery).
- Experience improving immature or overly compliance-led risk processes.
- Familiarity with public sector or highly regulated environments.
- Security certifications (or working towards one).
- Move cyber risk away from 'tick-box' audits into meaningful technical assurance.
- Play a key role in improving how risk assessments are performed across the organisation.
- Influence security maturity during an ongoing cyber capability review.
- Work directly with senior security leadership and have genuine input into decisions.
- Join a team that values critical thinking, curiosity, and asking better questions.
- 28 days annual leave.
- 10% employer pension contribution (no employee contribution required).
- Season ticket loan.
- Cycle to Work scheme.
- Heavily subsidised staff canteen.
- 36-hour working week with flexible start and finish times.
Senior Cyber Risk Analyst in Oxford employer: Prism Digital
Contact Detail:
Prism Digital Recruiting Team
StudySmarter Expert Advice π€«
We think this is how you could land Senior Cyber Risk Analyst in Oxford
β¨Tip Number 1
Network like a pro! Reach out to people in the industry, attend events, and connect with professionals on LinkedIn. You never know who might have the inside scoop on job openings or can put in a good word for you.
β¨Tip Number 2
Prepare for those interviews by researching the company and its culture. Understand their approach to cyber risk and think about how your skills can help them move away from 'tick-box' audits to meaningful assessments.
β¨Tip Number 3
Showcase your real-world experience! Be ready to discuss specific projects where you've assessed technical risks or improved security processes. This will demonstrate your ability to influence and make a difference.
β¨Tip Number 4
Don't forget to apply through our website! Itβs the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search.
We think you need these skills to ace Senior Cyber Risk Analyst in Oxford
Some tips for your application π«‘
Tailor Your CV: Make sure your CV speaks directly to the role of Senior Cyber Risk Analyst. Highlight your relevant experience in cyber security risk and any qualifications like CompTIA Security+ or CISSP. We want to see how your background aligns with our needs!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber risk and how you can contribute to our mission. Be sure to mention specific projects or experiences that demonstrate your ability to assess real technical risks.
Showcase Your Technical Skills: Donβt forget to highlight your knowledge of networking fundamentals and any experience with SIEM tools like Microsoft Sentinel. Weβre looking for someone who can dive deep into the technical aspects, so let us know what youβve got!
Apply Through Our Website: We encourage you to apply through our website for a smoother application process. Itβs the best way for us to receive your application and ensures you donβt miss out on any important updates from our team!
How to prepare for a job interview at Prism Digital
β¨Know Your Cyber Risk Fundamentals
Make sure you brush up on your knowledge of cyber risk assessment and technical assurance. Be ready to discuss real-world scenarios where you've assessed risks, not just theoretical concepts. This will show that you understand the practical implications of your work.
β¨Familiarise Yourself with SIEM Tools
Since the role involves working with SIEM tools like Microsoft Sentinel, itβs a good idea to get acquainted with how these tools function. You donβt need to be an expert, but having a basic understanding will help you speak confidently about your experience and how you can leverage these tools in the role.
β¨Prepare for Technical Questions
Expect questions that dive deep into networking fundamentals, such as firewalls, segmentation, and access controls. Brush up on these topics and think of examples from your past experiences where youβve applied this knowledge to solve problems or improve security measures.
β¨Show Your Collaborative Spirit
This role requires working closely with non-security teams, so be prepared to discuss how you've successfully collaborated in the past. Think of specific instances where you challenged assumptions or improved outcomes through teamwork, as this will demonstrate your ability to influence and communicate effectively.