At a Glance
- Tasks: Find and fix cybersecurity vulnerabilities to protect our systems and data.
- Company: Join Severn Trent, a top UK employer with a caring culture.
- Benefits: 28 days holiday, annual bonuses, and a leading pension scheme.
- Why this job: Make a real impact on cybersecurity while growing your skills.
- Qualifications: Experience in cybersecurity and familiarity with penetration testing tools.
- Other info: Flexible working options and a supportive team environment.
The predicted salary is between 36000 - 60000 £ per year.
LET’S CUT STRAIGHT TO IT
At Severn Trent, our people are at the heart of everything we do. We’re in the top 5% of utility companies worldwide when it comes to employee engagement and ranked as a Top 50 UK Employer on Glassdoor. Join us in making a positive impact on the environment and our communities, while being valued and supported in a truly inclusive workplace.
If you want to do more, because you care, we want you on our team.
LET’S TELL YOU MORE
We’re looking to recruit a CyberSecurity Test Analyst who will be responsible for systematically finding and validating any information security vulnerabilities Within Severn Trent Water. You’ll be attempting to penetrate a computer system, application or network on behalf of its owners for the purpose of finding security vulnerabilities that could be exploited by malicious hackers.
In a role as exciting as it sounds, you’ll plan, create, and deliver quality test scenarios, scripts, and execution of scripts to ensure the highest quality outputs using both manual and automated best practices. They will be responsible for providing timely and relevant updates to appropriate stakeholders and decision makers and communicate test findings to help improve the cybersecurity posture.
In this diverse and challenging role, you’ll need to use all your people and technical skills, to work under considerable pressure in a fast paced, regulated environment covering IT and Operational Technology systems across 300+ Severn Trent sites.
Key Accountabilities in the role will be:
- Plan, create, and deliver quality test scenarios, scripts, and execution of scripts to ensure the highest quality outputs using both manual and automated best practices.
- Be responsible for providing timely and relevant updates to appropriate stakeholders and decision makers and communicate test findings and find solutions to help improve the cybersecurity posture.
- Perform reconnaissance and information collection on the target environment or attack surface. Create hypotheses for analytics and testing of threat data. Analyse data from threat and vulnerability feeds and analyse data for applicability to the organization.
- Identify potential weaknesses and vulnerabilities on assets (i.e., end points, applications, API’s , devices, users). Validate weaknesses via exploitation and reports their findings.
- Validate IT security controls and business systems for cybersecurity best practices and recommend changes to enhance cyber resilience and reduce risks, where applicable. Conduct root cause analysis and investigations to advise on prevention mechanisms.
- Conduct computer forensic analysis, data recovery, eDiscovery, and other IT investigative work.
You’ll be based at ourSevern Trent CentreHead Officein Coventry. You’ll work within our newly formed Assurance & Testing team. With this being such a critical role, we’re looking for someone who can join us 37 hours a week, Monday to Friday.
HOW WE WORK
You’ll join a caring culture that collaborates to achieve, grow, and develop. Our employee engagement scores are among the highest globally in energy and utilities. That’s why, we value in-person moments to keep our culture alive but also understand the flexibility working from home can bring. So, you’ll usually find us in the office, but working from home is supported, when you need it.
WHAT WE’RE LOOKING FOR
We’ll be looking for you to have experience in cybersecurity, including a good familiarity with relevant penetration and intrusion techniques and attack vectors. A working knowledge of cloud security concepts and best practices, as well as the security features and capabilities of major cloud platforms such as Azure and AWS will stand you in good stead to succeed in the role.
Alongside this, we’ll want you to have experience with offensive tools such as: Metaspoit, BurpSuite, Kali Linux, Cobalt Strike, Mimikatz or a similar tools and have technical experience in system security vulnerabilities and remediation techniques, network, and web-related protocols (e.g., TCP/IP, UDP, IPSEC, HTTP, etc.).
As a test analyst within Cyber Security, you’ll be expected to have knowledge of the such things as NIST, CIS controls, OWASP Top 10, ISO 27001/2, Payment Card Industry Data Security Standard (PCI-DSS) and General Data Protection Regulation (GDPR).
Skills and experience are important, but character, positivity, and a caring attitude matter too. We welcome people from all walks of life and celebrate individuality as we know diverse minds, experiences and backgrounds help us to learn and better serve our communities. We seek people who get involved, want to be part of something bigger, and make a difference because they care.
HOW WE’LL REWARD AND CARE FOR YOU IN RETURN
It\’s not just a job; it\’s a career. We offer benefits that reward great work and award-winning training to help you reach your potential. Plus, you\’ll contribute to the environment and community too. Here are some of our favourites:
- 28 days holiday + bank holidays (and the ability to buy/ sell up to 5 days per year). Annual leave rises to 28 days after 5 years of service.
- Annual bonus scheme (of up to £2,250 per annum based on company performance)
- Leading pension scheme – we will double your contribution (up to 15% when you contribute 7.5%)
- Family friendly policies (including, a year off fully paid maternity and adoption leave)
- Sharesave – the chance to buy Severn Trent Plc shares at a discounted rate
- Dedicated training and development with our ‘Academy’
- Electric vehicle scheme and retail offers
- Two volunteering days per year
LET’S GO
We can\’t wait to hear from you! Have an updated CV ready and spare five minutes to apply. We’ll let you know the outcome after the closing date, so keep an eye on your phone and emails.
#J-18808-Ljbffr
Cyber Security Test Analyst employer: SevernTrentLife
Contact Detail:
SevernTrentLife Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Test Analyst
✨Tip Number 1
Network like a pro! Reach out to current employees at Severn Trent on LinkedIn or other platforms. Ask them about their experiences and any tips they might have for landing the Cyber Security Test Analyst role.
✨Tip Number 2
Prepare for the interview by brushing up on your technical skills and knowledge of cybersecurity best practices. Be ready to discuss tools like Metasploit and BurpSuite, and how you’ve used them in past projects.
✨Tip Number 3
Show your passion for cybersecurity! During interviews, share examples of how you've tackled security challenges or contributed to improving security measures in previous roles. Let your enthusiasm shine through!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Severn Trent team.
We think you need these skills to ace Cyber Security Test Analyst
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Test Analyst role. Highlight relevant experience, especially with penetration testing and cybersecurity tools. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cybersecurity and how you can contribute to our team. Keep it concise but impactful – we love a good story!
Showcase Your Technical Skills: Don’t forget to mention your familiarity with tools like Metasploit, BurpSuite, and Kali Linux. We’re keen on seeing how you’ve used these in real-world scenarios, so give us the details!
Apply Through Our Website: We encourage you to apply directly through our website. It’s the easiest way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re serious about joining our team!
How to prepare for a job interview at SevernTrentLife
✨Know Your Tools
Familiarise yourself with the offensive tools mentioned in the job description, like Metasploit and BurpSuite. Be ready to discuss your experience with these tools and how you've used them in past projects or scenarios.
✨Understand Cybersecurity Frameworks
Brush up on key cybersecurity frameworks such as NIST, CIS controls, and OWASP Top 10. Being able to reference these during your interview will show that you have a solid understanding of industry standards and best practices.
✨Prepare for Technical Questions
Expect technical questions related to penetration testing and vulnerability assessment. Practice explaining your thought process when identifying and validating security weaknesses, as this will demonstrate your analytical skills.
✨Show Your Passion
Severn Trent values character and positivity, so be sure to convey your enthusiasm for cybersecurity and your desire to make a positive impact. Share examples of how you've contributed to team success or improved processes in previous roles.