At a Glance
- Tasks: Join our team to manage and operate the University’s Security Operations Centre, tackling cyber threats daily.
- Company: Be part of the University of Bath, a diverse institution with a global reputation for excellence.
- Benefits: Enjoy perks like free counselling, discounts, generous leave, and professional development opportunities.
- Why this job: Make a real impact in cyber security while working in an inclusive and supportive environment.
- Qualifications: Bring your knowledge of security frameworks and compliance, plus experience with security tools.
- Other info: This full-time role offers a chance to grow in a vibrant, autism-friendly workplace.
The predicted salary is between 38249 - 45413 £ per year.
The Security Operations Analyst is part of a team responsible for a broad range of cyber security tasks and activities, including management and operation of the University’s Security Operations Centre (SOC), operating and applying security controls in line with standard frameworks ISO 27001, NIST CSF, Cyber Essentials and facilitating risk-based decision making to ensure maintenance of security posture.
You will be responsible for undertaking all aspects of security operations, including:
- Responding to and resolving security events and incidents
- Identifying vulnerabilities
- Deploying mitigation tactics and escalating where appropriate
- Safeguarding sensitive information from unauthorised access
- Maintaining security posture in line with the University’s risk appetite
Additionally, you will undertake risk assessments and perform horizon scanning, ensuring that the University control environment is optimally configured to respond to the latest threats to maintain resilience and continuity of service across key systems, services, and infrastructure. You will be expected to review security processes, systems, and capabilities that affect the security of our most critical assets. You will proactively work with colleagues to identify areas of weakness and exposures and create recommendations for continual improvement. As appropriate, you will take part in change approval boards, oversee the security elements of delivering new products and services into live University environments and work closely with vendors.
This role is offered on a full-time, (36.5 hours per week) permanent basis.
Our ideal candidate will have:
- A broad knowledge of security risk and assurance practices, including detailed knowledge of security controls frameworks: ISO 27001/Cyber Essentials/NIST CSF/NIS/CIS Top 20/OWASP.
- Experience of regulatory and compliance responsibilities for universities, including GDPR, DPA, PCI DSS, and Ofsted.
- Broad technical knowledge of various tools, including Security Information and Event Management, Vulnerability Management and Endpoint Detection and Response systems, how to operate and maintain them, interpret the output and apply the recommendations.
- Excellent practical experience and knowledge of measuring performance and effectiveness of security controls to reduce incidents, safeguard sensitive data, and improve overall security posture.
- Knowledge and understanding of reducing risk and exposure across third parties and throughout the supply chain.
We consider ourselves to be a university where difference is celebrated, respected and encouraged. We have an excellent international reputation with staff from over 60 different nations and have made a positive commitment towards gender equality and intersectionality receiving a Silver Athena SWAN award. We truly believe that diversity of experience, perspectives, and backgrounds will lead to a better environment for our employees and students, so we encourage applications from all genders, backgrounds, and communities, particularly from under-represented groups, and value the positive impact that will have on the university.
We are committed to maintaining a safe and secure environment for our students, staff, and community by reinforcing our Safer Recruitment commitment. We are very proud to be an autism friendly university and are an accredited Disability Confident Leader; committed to building disability confidence and supporting disabled staff.
What we can offer you:
- Free counselling services through Health Assured.
- Cycle to work scheme.
- Electric vehicle salary sacrifice scheme.
- Staff discount at Team Bath gym.
- Staff discounts on postgraduate tuition fees.
- Staff discount on language courses.
- Generous employer contributory pension schemes.
- Generous annual leave allowance with an additional 5 discretionary days, so that you can enjoy a positive work-life balance.
- A wide range of personal and professional development opportunities including Apprenticeships, online learning, and more.
- Free entry to the Holburne Museum in Bath.
- Local discounts and more.
- A family-friendly workplace.
- An excellent reward package that recognises the talents of our diverse workforce.
- Relocation allowance.
- Visa reimbursement and Interest-Free Loan to help with the cost of some immigration expenses.
We are committed to continually expanding our benefits to better support you and enhance your experience with us.
We are constantly seeking to reduce the unconscious bias that enters any assessment process, with the goal of creating an inclusive and equal assessment process. To support this, personal details such as your name, may be removed from application forms at the initial shortlisting stage.
Cyber Security Operations Analyst in Bath employer: University of Bath
Contact Detail:
University of Bath Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Operations Analyst in Bath
✨Tip Number 1
Familiarise yourself with the specific security frameworks mentioned in the job description, such as ISO 27001 and NIST CSF. Being able to discuss these frameworks in detail during your interview will demonstrate your knowledge and commitment to the role.
✨Tip Number 2
Network with professionals in the cyber security field, especially those who work in academic environments. Attend relevant conferences or webinars to gain insights and make connections that could help you stand out as a candidate.
✨Tip Number 3
Stay updated on the latest trends and threats in cyber security. Being able to discuss recent incidents or emerging vulnerabilities during your interview can showcase your proactive approach and passion for the field.
✨Tip Number 4
Prepare to discuss your experience with security tools like SIEM and EDR systems. Highlighting your practical knowledge of these tools and how you've used them to improve security posture will be crucial in demonstrating your fit for the role.
We think you need these skills to ace Cyber Security Operations Analyst in Bath
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the job description. Focus on your knowledge of security controls frameworks like ISO 27001 and NIST CSF, as well as any practical experience in cyber security operations.
Craft a Strong Cover Letter: In your cover letter, express your enthusiasm for the role and the university. Mention specific experiences that demonstrate your ability to manage security incidents and your understanding of compliance responsibilities such as GDPR and PCI DSS.
Showcase Technical Skills: Clearly outline your technical skills related to security tools, such as Security Information and Event Management (SIEM) and Vulnerability Management systems. Provide examples of how you've used these tools to improve security posture in previous roles.
Highlight Continuous Improvement: Discuss any initiatives you've led or participated in that focused on improving security processes or reducing risks. This could include risk assessments or working with third parties to enhance security measures.
How to prepare for a job interview at University of Bath
✨Know Your Frameworks
Familiarise yourself with the key security frameworks mentioned in the job description, such as ISO 27001 and NIST CSF. Be prepared to discuss how you have applied these frameworks in previous roles or projects.
✨Demonstrate Technical Proficiency
Showcase your experience with security tools like Security Information and Event Management (SIEM) and Endpoint Detection and Response systems. Be ready to explain how you've used these tools to identify vulnerabilities and respond to incidents.
✨Highlight Risk Assessment Skills
Prepare examples of how you've conducted risk assessments in the past. Discuss your approach to identifying weaknesses and how you’ve implemented mitigation strategies to enhance security posture.
✨Emphasise Collaboration
The role involves working closely with colleagues and vendors. Share experiences where you've successfully collaborated on security projects or initiatives, highlighting your ability to communicate effectively and build relationships.