At a Glance
- Tasks: Enhance cybersecurity measures and lead incident response for a global IT infrastructure.
- Company: Dynamic tech firm in London focused on innovative security solutions.
- Benefits: Competitive salary, inclusive culture, and opportunities for professional growth.
- Other info: Inclusive recruitment process with support for applicants with disabilities.
- Why this job: Join a team making a real impact on global cybersecurity and technology resilience.
- Qualifications: 10+ years in IT, with 5 years in cybersecurity; certifications like CISSP preferred.
Role overviewWe are recruiting for an experienced IT Cyber Security Specialist to join the IT Infrastructure Engineering Team, part of the Technology Department within the wider Business Services function, based at the firm's head office in London. The team is responsible for the security, and continual improvement of the firm's global IT infrastructure, systems, and cybersecurity capabilities, working closely alongside the Infrastructure Operations Team, which manages day-to-day service delivery and support. As a project, engineering, and security-focused function, the Infrastructure Engineering Team delivers technology projects and programmes, as well as driving strategic infrastructure and cybersecurity enhancements across the firm's global offices. Reporting to the IT Infrastructure Engineering Manager, the IT Cyber Security Specialist is a key technical role responsible for the ownership and continual development of the firm's cybersecurity controls and security architecture. The successful candidate will develop security policies, identify and mitigate vulnerabilities, investigate security incidents, and lead the response and resolution of major cyber incidents, helping to ensure the firm's technology environment remains secure, resilient, and aligned to business needs. The key responsibilities of this role are set out below and there may be others which are not listed. You may be required on occasion to work outside our normal working hours of 9:30am to 5:30pm.
Key responsibilities
- Cyber Security & Engineering Constantly review and improve the firm's security posture and external security rating.
- Identify vulnerabilities in hardware and software to be remediated by Engineering\Operations teams.
- Understand current and emerging security threats.
- Assist and lead in Incident Response investigations and mitigation.
- Communicate threats and deliver training and awareness programmes to other team members.
- Produces quarterly privilege access slides, suggesting ongoing improvement for monthly operational security slides, measured using secure score.
- Evaluate, test and recommend security enhancements.
- Develop business continuity plans of critical business services in the event of a disaster.
- Lead CE+ accreditation.
- Identify security risks and exposures, determine the cause of security violations and suggest procedures to halt future incidents.
- Perform targeted regular and ad-hoc scans to identify potential breaches of the firm data and security and data protection policies.
- Identify, analyse, monitor and minimise areas of risk that pertain to Information technology.
Project Delivery
Be able where relevant to participate in and lead varied IT Infrastructure lifecycle & security projects. Including HLD creation, solution costing and review. Ensure that proposed infrastructure architecture/design are aligned with Firms policies. Post project, participate in evaluating the success of the project, identifying best practices and lessons learned.
Third Level Support
Provide Major Problem\Incident Support where Operations team need steering from a subject matter expert. Liaison with 3rd party suppliers on system issues. Ensuring that all members of 3rd level teams have the relevant skills sharing, procedures and documentation. This role requires the ability to communicate complex ideas clearly and effectively. Strong soft skills, including active listening, presentation, and communication skills, are therefore essential.
Candidate profile
- 10+ years of experience as a full time IT professional, 5 years in a similar role.
- Demonstrable experience in a Cyber Security position with a focus on incident response, threat monitoring, and vulnerability management
- Hold at least one security related certifications such as CISSP, CEH, CCNA Security
- Experience with threat prevention techniques and tools
- Knowledge of best practices in modern security architectures and incident responses
- Experience of Infrastructure Business Continuity or Disaster Recovery planning.
- Experience designing, integrating and managing complex infrastructure solutions.
- Excellent problem-solving ability including leading multi-disciplinary teams to identify, research and coordinate resource to diagnose & troubleshoot complex issues.
- Excellent skills with Windows Server 2016/##########2 (Active Directory multi-site, DHCP, DNS, Intune, Group Policy, AGPM, PKI, ABDA, DFS, Entra, Azure SSO).
- Strong written and oral communication skills, and the ability
- to effectively communicate with technical and non-technical audiences at all levels.
- Be able to work with 3rd parties to manage on premise and cloud services.
- Strong planning skills.
- Experienced in Information Technology Infrastructure Library (ITIL) processes, procedures, and roles.
We are committed to ensuring that our recruitment processes are barrier-free and as inclusive as possible for everyone. This includes making adjustments for people who have a disability or long-term condition. If you have any questions or require any adjustments to be made to one or both of the application or interview processes, please contact the Recruitment Team.
We are a Disability Confident Committed employer and will offer an interview to applicants with a disability or long-term condition who best meet the minimum or essential criteria for our Business Services roles.
For more information about the Disability Confident scheme, please see the government website here.
We welcome applications irrespective of race, colour, ethnic or national origin, disability, sex, gender identity, sexual orientation, age, religion, belief or marital status.
#J-18808-Ljbffr
IT Cyber Security Specialist employer: Slaughter & May
As an IT Cyber Security Specialist at our London head office, you will be part of a dynamic team dedicated to enhancing the security and resilience of our global IT infrastructure. We pride ourselves on fostering a collaborative work culture that encourages continuous learning and professional growth, offering opportunities to lead impactful projects while ensuring a supportive environment for all employees. With a commitment to inclusivity and employee well-being, we provide a range of benefits and resources to help you thrive both personally and professionally.
StudySmarter Expert Advice🤫
We think this is how you could land IT Cyber Security Specialist
✨Get Involved in the Cybersecurity Community
Diving into the cybersecurity community is key for landing that full-time gig. Join forums like Reddit's r/cybersecurity or attend local meetups to connect with industry veterans and other job seekers. Networking is everything in this field—don’t just be a passive lurker!
✨Show Off Your Skills with Capture the Flag Competitions
Participate in Capture the Flag (CTF) competitions; these are not just a fun way to boost your skills but also a chance to showcase your talent to potential employers. Many companies, including Slaughter & May, love seeing candidates who actively engage in these challenges.
✨Tailor Your Online Presence
Make sure your LinkedIn and any professional profiles reflect your cybersecurity expertise. Share your projects, whether they’re personal or from a previous role, to catch the eye of hiring managers. This is how they’ll find your passion and commitment to the field!
✨Apply Directly Through Slaughter & May
Don’t forget to head straight to our website and check out any openings for cybersecurity roles at Slaughter & May. Applying directly can sometimes give you an edge, especially if you can mention that you've been following our work or engaging in the community.
We think you need these skills to ace IT Cyber Security Specialist
Some tips for your application 🫡
Show off your technical skills:In cybersecurity, it's crucial to highlight your technical prowess. Make sure your CV showcases specific skills like network security, penetration testing, or threat analysis. If you have relevant certifications (like CEH or CISSP), pop those on the front page to grab attention!
Tailor your portfolio for the role:Even for a full-time role, a portfolio can set you apart. If you've worked on any cybersecurity projects—be it CTF challenges, security assessments, or research papers—include these in your application. This demonstrates not just your skills, but also your hands-on experience!
Use real-world examples:When writing your cover letter, don’t just stick to your qualifications. Share real-world examples of how you’ve tackled security issues or vulnerabilities. This gives the hiring team at Slaughter & May insight into your practical problem-solving abilities and makes your application memorable.
Demonstrate your passion for cybersecurity:Cybersecurity is an ever-evolving field, so show us that you’re always learning! Mention any recent courses, webinars, or industry events you’ve attended. This not only exhibits your enthusiasm but also signals to Slaughter & May that you’re committed to staying ahead in the game.
How to prepare for a job interview at Slaughter & May
✨Sharpen Your Technical Skills
For a role in cybersecurity, it’s essential to be up-to-date with the latest tools and techniques. Brush up on your knowledge of firewalls, intrusion detection systems, and vulnerability assessment tools. Be ready to discuss specific scenarios where you’ve applied these skills, as hands-on experience can really set us apart in interviews.
✨Prepare for Scenario-Based Questions
Expect the interviewers at Slaughter & May to throw in some hypothetical situations to see how you’d handle them. Think about common security breaches or incidents and be prepared to explain how you would respond. This not only shows your problem-solving skills but also your understanding of real-world cybersecurity challenges.
✨Highlight Your Certifications
Certifications like CompTIA Security+, CISSP, or CEH can give you a significant edge in a full-time role in cybersecurity. Make sure to mention these during your interview and be prepared to discuss what you learned through those certifications and how they relate to the position at Slaughter & May.
✨Show Your Passion for Cybersecurity
Since you’re going for a full-time gig, showing genuine enthusiasm for the field can make all the difference. Share any personal projects, blogs, or communities you’re part of that relate to cybersecurity. This not only showcases your passion but also your commitment to staying engaged in this ever-evolving field.