Cyber Security GRC Analyst in Exeter

Cyber Security GRC Analyst in Exeter

Exeter Full-Time 45000 - 55000 £ / year (est.) No working from home possible
SES Water Limited

At a Glance

  • Tasks: Join our Cyber Security team to protect vital services through governance and compliance.
  • Company: Be part of South West Water, a leader in the UK water sector with a green vision.
  • Benefits: Enjoy generous holidays, health benefits, and a supportive work environment.
  • Other info: Diversity is our strength; we celebrate uniqueness and foster an inclusive culture.
  • Why this job: Make a real impact in cyber security while developing your career in a dynamic field.
  • Qualifications: Experience with Microsoft Purview and a passion for data governance and compliance.

The predicted salary is between 45000 - 55000 £ per year.

South West Water keeps the South West flowing with safe, reliable drinking water and wastewater services across some of the UK’s most stunning landscapes. We’re proud to be part of Pennon Group, a leader in the UK water sector, working towards a greener future.

Help protect critical services through effective cyber security governance. Are you passionate about cyber security, data governance and compliance? Do you enjoy translating complex security requirements into practical controls that make a real difference? We're looking for a Cyber Security GRC Analyst to join our growing Cyber Security team. In this role, you'll play a key part in strengthening our cyber security posture through governance, risk management and compliance activities, while helping to ensure our information assets remain protected.

A significant focus of the role will be the administration and continual improvement of Microsoft Purview, ensuring effective data protection, information governance, data classification and compliance capabilities are embedded across the organisation. Working closely with stakeholders across IT, Legal, Audit, Procurement and the wider business, you'll help shape security practices, drive compliance initiatives and support a positive security culture.

What you'll be doing:

  • Administer, maintain and continuously improve Microsoft Purview capabilities, including:
    • Data Loss Prevention (DLP)
    • Information Protection
    • Data Lifecycle Management
    • Insider Risk Management
    • Communication Compliance
    • eDiscovery
    • Compliance Manager
  • Support the implementation and adoption of data classification and sensitivity labelling.
  • Monitor security and compliance alerts, investigate findings and coordinate remediation activities.
  • Develop and maintain security policies, controls and standards.
  • Produce management reporting, dashboards and compliance metrics.
  • Plan, conduct and document internal ISO 27001 audits.
  • Support third-party risk management and supplier security assurance activities.
  • Help maintain compliance with frameworks and regulations such as ISO 27001, NIS Regulations and Cyber Essentials.
  • Support information security awareness initiatives and promote a strong security culture.
  • Assist in security incident investigations and remediation activities.
  • Work with business stakeholders to improve information governance practices and data ownership accountability.

What we're looking for:

  • Experience administering or supporting Microsoft Purview and Microsoft 365 security and compliance solutions.
  • Knowledge of Microsoft Purview capabilities, including DLP, Information Protection, Sensitivity Labels, Insider Risk Management, eDiscovery and Compliance Manager.
  • Experience supporting data governance, information protection and compliance activities within a Microsoft 365 environment.
  • An understanding of cyber security risk management, governance and control frameworks.
  • Knowledge of information security standards such as ISO 27001, NIS Regulations and Cyber Essentials.
  • Experience producing reports, managing stakeholders and supporting audit activities.
  • Strong communication skills with the ability to influence and build relationships across diverse teams.

Essential:

  • 5 GCSEs (or equivalent), including Maths and English.
  • Educated to degree level or able to demonstrate equivalent professional experience.

Desirable:

  • Hands-on experience of Microsoft Purview administration and optimisation.
  • Experience within information security, governance, risk or compliance functions.
  • Knowledge of recognised security frameworks such as ISO 27001, NIST or Cyber Essentials.
  • Ability to successfully obtain UK Government Security Clearance (SC).

Why join us?

This is an excellent opportunity to develop your cyber security governance and compliance career within a supportive environment. You'll gain exposure to enterprise-scale Microsoft security technologies, contribute to critical compliance programmes and play a meaningful role in protecting services, systems and data that matter.

Generous holiday allowance plus bank holidays, a discretionary Bonus, Competitive Contributory Pension, Share-save Scheme, Various health benefits, Wellbeing support programmes, A range of Group Discounts, Cycle to Work Scheme.

Please note that the successful candidate will be subject to a mandatory DBS check as part of the onboarding process.

Be yourself, we like it that way. Together, we will build a culture of belonging, where inclusion is instinctive. Diversity is our strength and a reflection of our communities. We care, we value everyone, we celebrate uniqueness.

Our core values, which are essential to our success, are:

  • Be Rock Solid - Build trust and be trusted. Be the one we all look to and can depend on.
  • Be You - We want you to bring your best every day. Be yourself and make your mark in your individual way.
  • Be the Future - Embrace change. Drive Progress. Own the challenge.

Cyber Security GRC Analyst in Exeter employer: SES Water Limited

At South West Water, we pride ourselves on being an exceptional employer, offering a supportive environment where you can thrive as a Cyber Security GRC Analyst. With generous benefits including a competitive pension scheme, wellbeing support, and opportunities for professional growth, you'll be part of a team dedicated to protecting vital services while contributing to a greener future in one of the UK's most beautiful regions. Join us to make a meaningful impact and shape your career in cyber security governance and compliance.

SES Water Limited

Contact Details:

SES Water Limited Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Cyber Security GRC Analyst in Exeter

Get Involved in the Cybersecurity Community

Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!

Show Off Your Skills with Capture the Flag Competitions

Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including SES Water Limited, love seeing candidates who actively engage in these challenges.

Tailor Your Online Presence

Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!

Apply Directly Through SES Water Limited

Don’t forget to head straight to our website and check out any openings for cybersecurity roles at SES Water Limited. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.

We think you need these skills to ace Cyber Security GRC Analyst in Exeter

Microsoft Purview Administration
Data Loss Prevention (DLP)
Information Protection
Data Lifecycle Management
Insider Risk Management
eDiscovery
Compliance Manager

Some tips for your application 🫡

Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!

Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!

Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at SES Water Limited insight into your practical problem-solving abilities and makes your application memorable.

Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to SES Water Limited that you’re committed to staying ahead in the game.

How to prepare for a job interview at SES Water Limited

Sharpen Your Technical Skills

For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.

Prepare for Scenario-Based Questions

Expect the interviewers at SES Water Limited to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.

Highlight Your Certifications

Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at SES Water Limited.

Show Your Passion for Cybersecurity

Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.