At a Glance
- Tasks: Lead cyber security initiatives and protect our cloud and application infrastructure.
- Company: Join Wood Mackenzie, a global leader in energy analytics and insights.
- Benefits: Flexible remote work, competitive salary, and opportunities for professional growth.
- Other info: Collaborative environment with a focus on innovation and career development.
- Why this job: Make a real impact in cyber security while working with cutting-edge technologies.
- Qualifications: 5+ years in cyber security, with strong cloud security experience.
The predicted salary is between 60000 - 80000 £ per year.
Wood Mackenzie is the global leader in analytics, insights and proprietary data across the entire energy and natural resources landscape. For over 50 years our work has guided the decisions of the world’s most influential energy producers, utilities companies, financial institutions and governments. Now, with the world’s energy system more complex and interconnected than ever before, sector-specific views are no longer enough. That’s why we’ve redefined what’s possible with Intelligence Connected.
We are seeking an experienced Cyber Security Lead Analyst to join our cyber security team. The ideal candidate will have a minimum of 5 years cyber security experience and 3+ years in cloud security and/or application security. The candidate will be able to demonstrate a proven track record of protecting enterprise environments against evolving cyber threats. This role requires a technically proficient lead analyst who can lead security initiatives and ensure our cloud and application infrastructure maintains the highest security standards, whilst maintaining business partnerships across the group.
Key Responsibilities- Monitor and analyze security events across cloud and on-premises environments using SIEM and security analytics tools
- Conduct thorough investigations of security incidents and provide detailed incident reports
- Develop and maintain incident response playbooks and procedures
- Experience with threat intelligence platforms and threat hunting
- Experience with security orchestration, automation and response (SOAR) platforms
- Understanding of data protection and encryption technologies
- Experience in regulated industries (financial services, healthcare, energy)
- Background in offensive security or penetration testing
- Design, implement, and maintain security controls across cloud platforms (AWS, Azure, GCP)
- Conduct cloud security assessments and architecture reviews
- Ensure compliance with cloud security best practices and frameworks (CIS Benchmarks, CSA CCM, NIST)
- Manage cloud-native security tools including CSPM, CWPP, and cloud WAF solutions
- Implement and maintain identity and access management (IAM) policies and controls
- Lead cyber security programs and coordinate remediation efforts
- Collaborate with DevOps teams to integrate security into CI/CD pipelines (DevSecOps)
- Stay current with emerging threats, vulnerabilities, and security technologies
- Contribute to security awareness training and documentation
- Facilitate Supplier Management and security input into bids
- Support compliance initiatives (SOC 2, ISO 27001, PCI-DSS, GDPR, etc.)
- Develop and enforce security policies, standards, and procedures
- Conduct security audits and risk assessments
- Maintain security documentation and metrics reporting
- 5+ years of experience in cybersecurity roles
- 3+ years of hands-on experience with cloud security (AWS, Azure, or GCP)
- Proven experience leading security incidents and coordinating response efforts
- Experience with security frameworks such as NIST CSF, MITRE ATT&CK, or Zero Trust architecture
- Strong expertise in cloud security services and tools (AWS & Azure)
- Experience working with SIEM platforms (Splunk, Sentinel)
- Understanding of network security, firewalls, IDS/IPS, and VPN technologies
- Familiarity with security testing tools (vulnerability scanners, SAST/DAST, penetration testing tools)
- Experience with endpoint detection and response (EDR) solutions
- CISSP (Certified Information Systems Security Professional)
- CCSP (Certified Cloud Security Professional)
- AWS Certified Security - Specialty
- Microsoft Certified: Azure Security Engineer Associate
- Strong analytical and problem-solving abilities
- Excellent written and verbal communication skills
- Ability to explain complex security concepts to technical and non-technical audiences
- Leadership capabilities and experience mentoring team members
- Strong attention to detail and ability to work under pressure
- Collaborative mindset with cross-functional teams
- Business Partnering experience
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience)
- Some flexibility for remote work – 2 days minimum in office (Edinburgh preferred)
We are an equal opportunities employer. This means we are committed to recruiting the best people regardless of their race, colour, religion, age, sex, national origin, disability or protected veteran status.
Cyber Security Specialist employer: Wood Mackenzie Ltd
Contact Detail:
Wood Mackenzie Ltd Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cyber Security Specialist
✨Tip Number 1
Network like a pro! Reach out to current employees at Wood Mackenzie on LinkedIn. A friendly chat can give you insider info and maybe even a referral, which can really boost your chances.
✨Tip Number 2
Prepare for the interview by brushing up on your technical skills. Make sure you can talk confidently about cloud security and incident response. We want to see that you can handle real-world scenarios!
✨Tip Number 3
Show off your passion for cyber security! Share any personal projects or contributions to open-source security tools. This not only highlights your skills but also shows your commitment to the field.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re serious about joining the team at Wood Mackenzie.
We think you need these skills to ace Cyber Security Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Cyber Security Specialist role. Highlight your relevant experience, especially in cloud and application security, and don’t forget to mention any certifications you have that align with the job description.
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about cyber security and how your skills can help Wood Mackenzie tackle evolving threats. Keep it concise but impactful!
Showcase Your Technical Skills: In your application, be sure to showcase your technical expertise, especially with tools like SIEM platforms and cloud security services. Mention specific projects or experiences where you've successfully implemented security measures.
Apply Through Our Website: We encourage you to apply through our website for the best chance of being noticed. It’s straightforward and ensures your application goes directly to us, so we can review it promptly!
How to prepare for a job interview at Wood Mackenzie Ltd
✨Know Your Stuff
Make sure you brush up on your technical skills, especially around cloud security and incident response. Be ready to discuss specific tools you've used, like SIEM platforms or cloud-native security tools, and how you've applied them in real-world scenarios.
✨Showcase Your Experience
Prepare to share detailed examples of past projects or incidents you've managed. Highlight your leadership experience in coordinating security responses and how you’ve collaborated with cross-functional teams to enhance security measures.
✨Understand the Company’s Needs
Research Wood Mackenzie and their approach to cyber security. Familiarise yourself with their values and how they integrate security into their operations. This will help you tailor your answers to show that you’re a great fit for their culture and objectives.
✨Ask Smart Questions
Prepare insightful questions about their current security challenges or future initiatives. This shows your genuine interest in the role and helps you gauge if the company aligns with your career goals, especially in areas like compliance and emerging threats.