Role Title: Cyber Risk Analyst Location: Knutsford 3 days on site Duration: 30/10/2026 Rate 404 MUST BE PAYE THROUGH UMBRELLA Role Description: "Role Overview: The Cyber Risk Analysts will work under the guidance of the Lead Consultant to execute the detailed risk assessments and analysis of End-of-Life technologies. In this role, you will collect and analyze data on EOL systems, evaluate cyber risks using the defined methodology, and support the implementation of remediation plans. Key Responsibilities: Perform Risk Assessments: Conduct in-depth cyber risk assessments for identified EOL systems and technologies, following the methodology and framework established by the project. Gather necessary information on assets (software, hardware, applications that are end-of-life or end-of-support) and assess the potential cyber threats, vulnerabilities, and business impacts associated with each5. Document findings meticulously, ensuring each risk item is well-described (likelihood, impact, severity) in the risk register. Required Skills & Competencies: Analytical Skills: Strong analytical and problem-solving skills are essential. The analyst must be able to assess complex IT systems and identify risk factors, interpret vulnerability data, and quantitatively rate risks. Attention to detail is critical for reviewing large lists of EOL assets and ensuring nothing is missed. Cybersecurity Knowledge: Good understanding of foundational cybersecurity principles (confidentiality, integrity, availability) and how outdated technologies can pose threats. Familiarity with common vulnerabilities and exploits affecting older systems (legacy OS, unsupported software) is beneficial. Knowledge of cyber risk frameworks and standards (such as NIST, ISO27001) and basic concepts of risk assessment is expectedxxiv. Qualifications & Certifications: Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Equivalent experience in cyber risk or IT security roles can be considered in lieu of a formal degree. Certifications: Relevant industry certifications are not mandatory but highly valued. Certifications demonstrating knowledge of security and risk principles (e.g., CompTIA Security+, Certified Ethical Hacker (CEH), or GIAC/GSEC) would be a plus. Certifications specifically in risk management or governance (such as CRISC, Certified Information Systems Auditor (CISA), or ISO 27001 Lead Auditor/Implementer) are also advantageous for this role, as they indicate a grasp of risk and control assessment practices. Experience: Years of Experience: Approximately 3-5+ years of experience in cybersecurity or IT risk roles. This could include experience as a Cyber Risk Analyst, IT Risk Analyst, Security Analyst, Vulnerability Management Specialist, or GRC (Governance, Risk & Compliance) Analyst. Candidates with slightly more or less experience will be considered based on skill fit, but a baseline understanding from a few years in the field is expected. Risk Assessment Background: Hands-on experience conducting risk assessments or security assessments is required. For example, experience in identifying and assessing risks for IT systems, writing risk or control reports, or supporting risk treatment projects. Familiarity with creating or maintaining risk registers and tracking mitigation actions is important (e.g., experience ensuring "risks and remediation plans are regularly addressed" in previous rolesxxvii). Industry-Specific Experience (Desirable): Experience in the financial services sector or other highly-regulated industries is a plus.
13/03/2026
Contractor
Role Title: Cyber Risk Analyst Location: Knutsford 3 days on site Duration: 30/10/2026 Rate 404 MUST BE PAYE THROUGH UMBRELLA Role Description: "Role Overview: The Cyber Risk Analysts will work under the guidance of the Lead Consultant to execute the detailed risk assessments and analysis of End-of-Life technologies. In this role, you will collect and analyze data on EOL systems, evaluate cyber risks using the defined methodology, and support the implementation of remediation plans. Key Responsibilities: Perform Risk Assessments: Conduct in-depth cyber risk assessments for identified EOL systems and technologies, following the methodology and framework established by the project. Gather necessary information on assets (software, hardware, applications that are end-of-life or end-of-support) and assess the potential cyber threats, vulnerabilities, and business impacts associated with each5. Document findings meticulously, ensuring each risk item is well-described (likelihood, impact, severity) in the risk register. Required Skills & Competencies: Analytical Skills: Strong analytical and problem-solving skills are essential. The analyst must be able to assess complex IT systems and identify risk factors, interpret vulnerability data, and quantitatively rate risks. Attention to detail is critical for reviewing large lists of EOL assets and ensuring nothing is missed. Cybersecurity Knowledge: Good understanding of foundational cybersecurity principles (confidentiality, integrity, availability) and how outdated technologies can pose threats. Familiarity with common vulnerabilities and exploits affecting older systems (legacy OS, unsupported software) is beneficial. Knowledge of cyber risk frameworks and standards (such as NIST, ISO27001) and basic concepts of risk assessment is expectedxxiv. Qualifications & Certifications: Education: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Equivalent experience in cyber risk or IT security roles can be considered in lieu of a formal degree. Certifications: Relevant industry certifications are not mandatory but highly valued. Certifications demonstrating knowledge of security and risk principles (e.g., CompTIA Security+, Certified Ethical Hacker (CEH), or GIAC/GSEC) would be a plus. Certifications specifically in risk management or governance (such as CRISC, Certified Information Systems Auditor (CISA), or ISO 27001 Lead Auditor/Implementer) are also advantageous for this role, as they indicate a grasp of risk and control assessment practices. Experience: Years of Experience: Approximately 3-5+ years of experience in cybersecurity or IT risk roles. This could include experience as a Cyber Risk Analyst, IT Risk Analyst, Security Analyst, Vulnerability Management Specialist, or GRC (Governance, Risk & Compliance) Analyst. Candidates with slightly more or less experience will be considered based on skill fit, but a baseline understanding from a few years in the field is expected. Risk Assessment Background: Hands-on experience conducting risk assessments or security assessments is required. For example, experience in identifying and assessing risks for IT systems, writing risk or control reports, or supporting risk treatment projects. Familiarity with creating or maintaining risk registers and tracking mitigation actions is important (e.g., experience ensuring "risks and remediation plans are regularly addressed" in previous rolesxxvii). Industry-Specific Experience (Desirable): Experience in the financial services sector or other highly-regulated industries is a plus.
Information Security Manager £70,000 £80,000 Remote (UK) Eligible for SC/DV Clearance Protect. Enable. Lead. Join TwinStream a dynamic, engineering-led consultancy born from real-world problem solvers within UK government organisations. We bring technical excellence to complex missions, and now we re looking for someone who can elevate our security posture as we continue to grow. If you want a role where you're trusted, empowered, and hands-on with real impact this is it. Why TwinStream? In 2019, our founders united their expertise to build a business that delivers exceptional service and cutting-edge solutions across government, defence, and highly regulated sectors. Today, TwinStream teams operate both on-site with clients and remotely nationwide, supporting high-stakes, high-impact work. We're scaling rapidly and your voice will matter. The Role: Information Security Manager We re searching for a practical, proactive, mid-to-senior InfoSec practitioner who thrives on doing not just advising. This is a delivery-focused role, perfect for someone who enjoys: Crafting and updating policies Driving governance, risk, and compliance Embedding secure-by-design practices Boosting security awareness and culture Being the go-to security expert within the business You ll work independently, without line management duties, owning day-to-day information security operations. Our IT teams handle the tooling your mission is governance, risk, compliance, and enabling secure delivery. What You ll Be Doing Own and manage all information security incidents & organisational risks Maintain and evolve our Information Security Management System (ISMS) Lead policy creation, updates, and compliance tracking Drive continuous improvement of security practices and behaviours Ensure compliance with ISO 27001, Cyber Essentials Plus, UK GDPR, and MOD CSM v3/v4 Plan, coordinate, and support internal/external audits and pen tests Embed security into projects, cloud services, and software delivery Deliver engaging security training and awareness sessions Contribute to Business Continuity, Disaster Recovery, and internal audit Act as TwinStream s primary point of contact for all things InfoSec What You ll Bring Proven experience as an Information Security Manager or similar Strong experience in incident management, risk governance, and practical InfoSec delivery Ability to embed security into modern software development and cloud environments Strong knowledge of ISO 27001, Cyber Essentials Plus, and UK regulatory requirements Excellent communication skills confident translating security for all audiences Comfortable working remotely in a flexible, fast-paced environment Relevant certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer/Auditor) Eligible for UK Security Clearance (minimum SC) Why You ll Love Working With Us 8% employer pension contribution Private medical cover including dental & optical (for you and your family) Learning & development autonomy you drive your growth Flexible remote working that actually supports your life Electric vehicle salary sacrifice scheme Cycle to Work + Life Assurance 28 days holiday + bank holidays Quarterly meet-ups, summer party & Christmas celebrations We re building something special and you ll be at the heart of it. Ready to make your mark? Join a team where your expertise shapes how we protect people, systems, and missions that matter. Apply now and take the next step with TwinStream.
10/03/2026
Full time
Information Security Manager £70,000 £80,000 Remote (UK) Eligible for SC/DV Clearance Protect. Enable. Lead. Join TwinStream a dynamic, engineering-led consultancy born from real-world problem solvers within UK government organisations. We bring technical excellence to complex missions, and now we re looking for someone who can elevate our security posture as we continue to grow. If you want a role where you're trusted, empowered, and hands-on with real impact this is it. Why TwinStream? In 2019, our founders united their expertise to build a business that delivers exceptional service and cutting-edge solutions across government, defence, and highly regulated sectors. Today, TwinStream teams operate both on-site with clients and remotely nationwide, supporting high-stakes, high-impact work. We're scaling rapidly and your voice will matter. The Role: Information Security Manager We re searching for a practical, proactive, mid-to-senior InfoSec practitioner who thrives on doing not just advising. This is a delivery-focused role, perfect for someone who enjoys: Crafting and updating policies Driving governance, risk, and compliance Embedding secure-by-design practices Boosting security awareness and culture Being the go-to security expert within the business You ll work independently, without line management duties, owning day-to-day information security operations. Our IT teams handle the tooling your mission is governance, risk, compliance, and enabling secure delivery. What You ll Be Doing Own and manage all information security incidents & organisational risks Maintain and evolve our Information Security Management System (ISMS) Lead policy creation, updates, and compliance tracking Drive continuous improvement of security practices and behaviours Ensure compliance with ISO 27001, Cyber Essentials Plus, UK GDPR, and MOD CSM v3/v4 Plan, coordinate, and support internal/external audits and pen tests Embed security into projects, cloud services, and software delivery Deliver engaging security training and awareness sessions Contribute to Business Continuity, Disaster Recovery, and internal audit Act as TwinStream s primary point of contact for all things InfoSec What You ll Bring Proven experience as an Information Security Manager or similar Strong experience in incident management, risk governance, and practical InfoSec delivery Ability to embed security into modern software development and cloud environments Strong knowledge of ISO 27001, Cyber Essentials Plus, and UK regulatory requirements Excellent communication skills confident translating security for all audiences Comfortable working remotely in a flexible, fast-paced environment Relevant certifications (e.g., CISSP, CISM, ISO 27001 Lead Implementer/Auditor) Eligible for UK Security Clearance (minimum SC) Why You ll Love Working With Us 8% employer pension contribution Private medical cover including dental & optical (for you and your family) Learning & development autonomy you drive your growth Flexible remote working that actually supports your life Electric vehicle salary sacrifice scheme Cycle to Work + Life Assurance 28 days holiday + bank holidays Quarterly meet-ups, summer party & Christmas celebrations We re building something special and you ll be at the heart of it. Ready to make your mark? Join a team where your expertise shapes how we protect people, systems, and missions that matter. Apply now and take the next step with TwinStream.
Our client, a leader in the Defence & Security sector, is seeking a Principal Software & Hardware Assurance Practitioner to join their team. This is a permanent role offering a hybrid working pattern with locations in Malvern, Farnborough, Bristol or Boscombe Down. As a key contributor to national security programmes, you will impact the future of defence technology by ensuring the safety and performance of complex systems. Key Responsibilities: Leading the assurance of hardware processes in line with CEH Safety Standards (e.g., DO-254, BS EN 61508-02) at the appropriate integrity level. Assessing CEH systems in accordance with High Integrity Software safety standards. Conducting audits and reviews as lead auditor and technical reviewer. Evaluating software and hardware lifecycle artefacts against relevant standards. Mentoring project teams and supporting high-quality technical delivery. Attending customer meetings and workshops across the UK and Europe. Job Requirements: Experience as a technical assessor or strong software/aviation engineering background. Excellent communication skills and a pragmatic, solution-focused mindset. SME-level understanding of high-integrity hardware development (VHDL). Knowledge of hardware chipsets (FPGA, ASIC, PLC). Strong understanding of hardware lifecycles and engineering processes. Experience working with CEH standards (DO-254, EN 61508-2). A relevant technical degree (Computer Science, Maths, Engineering, or equivalent) or extensive technical experience demonstrating equivalent capability. Benefits: Matched-contribution pension scheme with life assurance. Generous annual leave plus the option to buy additional days. Health Cash Plan, PMI and Dental options. Employee discount portal (insurance, restaurants, cinema & more). Support for the Armed Forces community - Gold Award holder. Volunteering opportunities to support local communities. If you are a professional with experience in hardware and software assurance in the Defence & Security sector, we would love to hear from you. Apply now to join our client's innovative and supportive team.
10/03/2026
Full time
Our client, a leader in the Defence & Security sector, is seeking a Principal Software & Hardware Assurance Practitioner to join their team. This is a permanent role offering a hybrid working pattern with locations in Malvern, Farnborough, Bristol or Boscombe Down. As a key contributor to national security programmes, you will impact the future of defence technology by ensuring the safety and performance of complex systems. Key Responsibilities: Leading the assurance of hardware processes in line with CEH Safety Standards (e.g., DO-254, BS EN 61508-02) at the appropriate integrity level. Assessing CEH systems in accordance with High Integrity Software safety standards. Conducting audits and reviews as lead auditor and technical reviewer. Evaluating software and hardware lifecycle artefacts against relevant standards. Mentoring project teams and supporting high-quality technical delivery. Attending customer meetings and workshops across the UK and Europe. Job Requirements: Experience as a technical assessor or strong software/aviation engineering background. Excellent communication skills and a pragmatic, solution-focused mindset. SME-level understanding of high-integrity hardware development (VHDL). Knowledge of hardware chipsets (FPGA, ASIC, PLC). Strong understanding of hardware lifecycles and engineering processes. Experience working with CEH standards (DO-254, EN 61508-2). A relevant technical degree (Computer Science, Maths, Engineering, or equivalent) or extensive technical experience demonstrating equivalent capability. Benefits: Matched-contribution pension scheme with life assurance. Generous annual leave plus the option to buy additional days. Health Cash Plan, PMI and Dental options. Employee discount portal (insurance, restaurants, cinema & more). Support for the Armed Forces community - Gold Award holder. Volunteering opportunities to support local communities. If you are a professional with experience in hardware and software assurance in the Defence & Security sector, we would love to hear from you. Apply now to join our client's innovative and supportive team.
AV Event & Break Fix Technician We are recruiting for a hybrid AV Event & Break Fix Technician to deliver AV and Event technical support for a medical science client s meeting rooms and event spaces in the client s global headquarters in Cambridge. The object of this role is to ensure that various AV spaces and event spaces are maintained across the campus, that the equipment is in optimal working condition, and end users (where applicable) are conversant with the equipment they are using to ensure we provide an exceptional service to our clients. Whilst there are regular duties to be undertaken, the demands upon the function can be unpredictable, often with tight deadlines, and the individual must have proven skills in dealing with such environments. Flexibility in working hours is essential, especially when helping with client events; preparation for which may start in the early hours or potentially extend into the evening. Working as part of an events team as well as a service support team, playing a key part in all aspects of AV in relation to clients' events from pre-planning, identifying technical requirements, attending meetings in an advisory capacity, and event execution. You will also be required to provide support for client meetings Role and Responsibilities Experience in events is essential to this role. It is preferred that you hold Industry qualifications, including Barco Certified Operator, Dante Certified, YCATS Product Training (including Mixing & Networking), Q-SYS Level 2 & Control & UCI Fundamentals. Previous experience with such products is essential, as well as Control Systems, Wireless Audio, Lighting Controllers, VC Equipment, and PTZ Camera Equipment. You will be required to operate events from a smaller local scale up to full auditorium events, where the system will be dialled into a global call and broadcast out across the company. Conducting pre-event checks and post-event breakdowns. On-site support for larger-scale events where external event agencies will be utilising the already in-place equipment on-site. Ability to work closely with our client's Events Team, both coordinating the event before and during. Maintenance of the event's equipment as well as liaising with Break Fix resources for incidents. Coordinating your own time to ensure event requests and standards are met. Technical Skill Requirements Highly skilled in event management, event scheduling, and resource management. Expert user of analogue and digital sound mixing desks (Yamaha CL, QL series, M7CL, LS9, etc); Proficient in sound reinforcement (lapel and handheld microphones, headsets, etc) for corporate events Experienced in Live Event Streaming Experienced in Audio networking (Dante, Blu link, Sonos). Experienced in Video switchers (Analog Way, Extron). Experienced in projector setup, diagnostics, and maintenance. Working knowledge of video matrices, scalers (Extron, Kramer), and HDBaseT extenders (Extron, Kramer, Lightware). Very good knowledge of VC systems (Logitech, Poly, Cisco, Zoom, Microsoft Teams, etc ) and use of AV bridges and interfaces Knowledge of IPTV systems Good IT knowledge Knowledge of lighting and related systems Experience in the use of ticketing systems, specifically Service Now Education/Certifications: Preferences will be given to those applicants possessing any of the following: Client relations-related training/certifications AVIXA CTS-related certifications Audio software: Ableton Live; Isotope; Logic Pro; Pro Tools; Reaper; Waves Mixing consoles: AMS Neve DFC, Custom Series 75, Genesys, VR; Avid Digidesign Icon, C24; SSL AWS 900, Duality, G+ Video editing software: Da Vinci Resolve; Luma Fusion Audio DSP-related certifications Crestron-related certifications QSC-related certifications Networking/IT-related certifications Training will be given on-site whilst onboarding. Site and Shifts 5-days a week on site, initially working an 08:00-16:00 shift, long term, there is a shift pattern in place which covers 07:00-19:00 - shift will be 8hrs within this window. Working within a team of 4 in this building, reporting to the Senior Break Fix engineer and working alongside a head event engineer and a second hybrid events/breakfix engineer on the opposite shift. Day-to-day reporting is to our Cambridge-based Team Lead. The candidate will be dedicated to this specific building. There is no parking on site, but there are good bus routes and also lots of cycle storage.
07/03/2026
Full time
AV Event & Break Fix Technician We are recruiting for a hybrid AV Event & Break Fix Technician to deliver AV and Event technical support for a medical science client s meeting rooms and event spaces in the client s global headquarters in Cambridge. The object of this role is to ensure that various AV spaces and event spaces are maintained across the campus, that the equipment is in optimal working condition, and end users (where applicable) are conversant with the equipment they are using to ensure we provide an exceptional service to our clients. Whilst there are regular duties to be undertaken, the demands upon the function can be unpredictable, often with tight deadlines, and the individual must have proven skills in dealing with such environments. Flexibility in working hours is essential, especially when helping with client events; preparation for which may start in the early hours or potentially extend into the evening. Working as part of an events team as well as a service support team, playing a key part in all aspects of AV in relation to clients' events from pre-planning, identifying technical requirements, attending meetings in an advisory capacity, and event execution. You will also be required to provide support for client meetings Role and Responsibilities Experience in events is essential to this role. It is preferred that you hold Industry qualifications, including Barco Certified Operator, Dante Certified, YCATS Product Training (including Mixing & Networking), Q-SYS Level 2 & Control & UCI Fundamentals. Previous experience with such products is essential, as well as Control Systems, Wireless Audio, Lighting Controllers, VC Equipment, and PTZ Camera Equipment. You will be required to operate events from a smaller local scale up to full auditorium events, where the system will be dialled into a global call and broadcast out across the company. Conducting pre-event checks and post-event breakdowns. On-site support for larger-scale events where external event agencies will be utilising the already in-place equipment on-site. Ability to work closely with our client's Events Team, both coordinating the event before and during. Maintenance of the event's equipment as well as liaising with Break Fix resources for incidents. Coordinating your own time to ensure event requests and standards are met. Technical Skill Requirements Highly skilled in event management, event scheduling, and resource management. Expert user of analogue and digital sound mixing desks (Yamaha CL, QL series, M7CL, LS9, etc); Proficient in sound reinforcement (lapel and handheld microphones, headsets, etc) for corporate events Experienced in Live Event Streaming Experienced in Audio networking (Dante, Blu link, Sonos). Experienced in Video switchers (Analog Way, Extron). Experienced in projector setup, diagnostics, and maintenance. Working knowledge of video matrices, scalers (Extron, Kramer), and HDBaseT extenders (Extron, Kramer, Lightware). Very good knowledge of VC systems (Logitech, Poly, Cisco, Zoom, Microsoft Teams, etc ) and use of AV bridges and interfaces Knowledge of IPTV systems Good IT knowledge Knowledge of lighting and related systems Experience in the use of ticketing systems, specifically Service Now Education/Certifications: Preferences will be given to those applicants possessing any of the following: Client relations-related training/certifications AVIXA CTS-related certifications Audio software: Ableton Live; Isotope; Logic Pro; Pro Tools; Reaper; Waves Mixing consoles: AMS Neve DFC, Custom Series 75, Genesys, VR; Avid Digidesign Icon, C24; SSL AWS 900, Duality, G+ Video editing software: Da Vinci Resolve; Luma Fusion Audio DSP-related certifications Crestron-related certifications QSC-related certifications Networking/IT-related certifications Training will be given on-site whilst onboarding. Site and Shifts 5-days a week on site, initially working an 08:00-16:00 shift, long term, there is a shift pattern in place which covers 07:00-19:00 - shift will be 8hrs within this window. Working within a team of 4 in this building, reporting to the Senior Break Fix engineer and working alongside a head event engineer and a second hybrid events/breakfix engineer on the opposite shift. Day-to-day reporting is to our Cambridge-based Team Lead. The candidate will be dedicated to this specific building. There is no parking on site, but there are good bus routes and also lots of cycle storage.
IT Security Analyst Location: Hybrid - Middlesbrough Salary: 50,000 - 60,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT Security Analyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS Controls. Manage the third-party due diligence programme, including onboarding and periodic reviews. Track and publish key security metrics such as risk severity, SLA adherence, and turnaround times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate technical risk to non-technical stakeholders. Eligible to work in the UK and able to pass background checks. Desirable: Certifications such as CRISC, CISSP, CISA, or ISO 27001 Lead Auditor. Familiarity with SaaS/cloud platforms (AWS, Azure, GCP). Understanding of secure software supply chains (SBOM, SLSA). What's on Offer 50,000 - 55,000 base salary 25 days annual leave + public holidays (increasing with service) Matched pension scheme Private medical insurance & life assurance Fitness allowance Paid study leave & volunteering days Flexible hybrid working Excellent career development and training opportunities
03/10/2025
Full time
IT Security Analyst Location: Hybrid - Middlesbrough Salary: 50,000 - 60,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT Security Analyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS Controls. Manage the third-party due diligence programme, including onboarding and periodic reviews. Track and publish key security metrics such as risk severity, SLA adherence, and turnaround times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate technical risk to non-technical stakeholders. Eligible to work in the UK and able to pass background checks. Desirable: Certifications such as CRISC, CISSP, CISA, or ISO 27001 Lead Auditor. Familiarity with SaaS/cloud platforms (AWS, Azure, GCP). Understanding of secure software supply chains (SBOM, SLSA). What's on Offer 50,000 - 55,000 base salary 25 days annual leave + public holidays (increasing with service) Matched pension scheme Private medical insurance & life assurance Fitness allowance Paid study leave & volunteering days Flexible hybrid working Excellent career development and training opportunities
Rev & Regs are recruiting for a Surveillance Monitoring Officer role for a large multinational financial services company in Liverpool. This is a 6-month fixed term contract. To act as a Surveillance Monitoring Officer and support with the execution of the 2LOD 'surveillance' monitoring programme including but not limited to daily review of trade activity and weekly assessment of best execution. Responsibilities: Supports the delivery of the surveillance monitoring programme across the Group, in line with regulatory requirements and ensures the smooth delivery of said plan to a high standard of quality. Ensures that the quality and tenacity of review work completed is to a high standard, accurate and well documented. Assess trades on a daily basis for potential market abuse utilising the automated analysis software, LiquidMetrix and the business enhanced monitoring activities. Assesses best execution on a weekly basis and provides challenge to 1LoD Dealing teams on the outliers identified by the trade monitoring software. Attends and provides input to weekly best execution meetings between the Dealing team and Compliance. Supports the maintenance and development of the trade monitoring software, LiquidMetrix. Performs routine monitoring programme across the Group's communication mediums. Produces regulatory submissions including TR-1 reports and Takeover Panel reporting. Develops insightful and meaningful management information to help governing Committees understand themes and trends arising. Drives the continuing professional development of oneself. Experience: Demonstrates a solid understanding of the investment management industry. Demonstrable experience in compliance monitoring and a strong understanding of the regulatory requirements of this. Confident communicator, skilled at developing internal relationships and external where necessary (e.g. regulators, external auditors and potentially clients) Keeps up to date with developments in both the Group and wider industry, including new products, legislation and regulation. Knowledge and good understanding of COBs, MAR, CASS and general FCA and PRA requirements. Strong IT literacy and ability to adapt to new systems Background in compliance roles and experience of compliance monitoring Demonstrable experience in trade monitoring including Best Execution and Market Abuse Location: hybrid (3 days per week in Liverpool office) Duration: 6-month FTC Salary - £30,000
03/10/2025
Full time
Rev & Regs are recruiting for a Surveillance Monitoring Officer role for a large multinational financial services company in Liverpool. This is a 6-month fixed term contract. To act as a Surveillance Monitoring Officer and support with the execution of the 2LOD 'surveillance' monitoring programme including but not limited to daily review of trade activity and weekly assessment of best execution. Responsibilities: Supports the delivery of the surveillance monitoring programme across the Group, in line with regulatory requirements and ensures the smooth delivery of said plan to a high standard of quality. Ensures that the quality and tenacity of review work completed is to a high standard, accurate and well documented. Assess trades on a daily basis for potential market abuse utilising the automated analysis software, LiquidMetrix and the business enhanced monitoring activities. Assesses best execution on a weekly basis and provides challenge to 1LoD Dealing teams on the outliers identified by the trade monitoring software. Attends and provides input to weekly best execution meetings between the Dealing team and Compliance. Supports the maintenance and development of the trade monitoring software, LiquidMetrix. Performs routine monitoring programme across the Group's communication mediums. Produces regulatory submissions including TR-1 reports and Takeover Panel reporting. Develops insightful and meaningful management information to help governing Committees understand themes and trends arising. Drives the continuing professional development of oneself. Experience: Demonstrates a solid understanding of the investment management industry. Demonstrable experience in compliance monitoring and a strong understanding of the regulatory requirements of this. Confident communicator, skilled at developing internal relationships and external where necessary (e.g. regulators, external auditors and potentially clients) Keeps up to date with developments in both the Group and wider industry, including new products, legislation and regulation. Knowledge and good understanding of COBs, MAR, CASS and general FCA and PRA requirements. Strong IT literacy and ability to adapt to new systems Background in compliance roles and experience of compliance monitoring Demonstrable experience in trade monitoring including Best Execution and Market Abuse Location: hybrid (3 days per week in Liverpool office) Duration: 6-month FTC Salary - £30,000
IT Security Analyst Location: Hybrid - Buckinghamshire Salary: 50,000 - 55,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT Security Analyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS Controls. Manage the third-party due diligence programme, including onboarding and periodic reviews. Track and publish key security metrics such as risk severity, SLA adherence, and turnaround times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate technical risk to non-technical stakeholders. Eligible to work in the UK and able to pass background checks. Desirable: Certifications such as CRISC, CISSP, CISA, or ISO 27001 Lead Auditor. Familiarity with SaaS/cloud platforms (AWS, Azure, GCP). Understanding of secure software supply chains (SBOM, SLSA). What's on Offer 50,000 - 55,000 base salary 25 days annual leave + public holidays (increasing with service) Matched pension scheme Private medical insurance & life assurance Fitness allowance Paid study leave & volunteering days Flexible hybrid working Excellent career development and training opportunities
03/10/2025
Full time
IT Security Analyst Location: Hybrid - Buckinghamshire Salary: 50,000 - 55,000 + Benefits 83zero are partnered with a market-leading software company who are on a mission to transform the construction and related industries through their end-to-end digital solutions. With teams across the UK, Europe, USA and India, they are delivering large-scale transformation projects on a global scale and are continuing to expand. We are now looking for a highly organised and detail-driven IT Security Analyst to join their growing security function. This role plays a key part in securing customer trust and supplier integrity, ensuring compliance with recognised frameworks, and supporting wider security initiatives. The Role Own and manage responses to customer security questionnaires (SIG, CAIQ, bespoke). Work cross-functionally with Legal, Compliance, Procurement, Product and Security teams. Maintain the security assurance matrix in line with ISO 27001, Cyber Essentials, and SOC 2. Act as the key point of contact for security assurance queries. Conduct vendor risk assessments against ISO 27001, NIST, and CIS Controls. Manage the third-party due diligence programme, including onboarding and periodic reviews. Track and publish key security metrics such as risk severity, SLA adherence, and turnaround times. Provide audit artefacts and support internal/external audits. Contribute to broader security initiatives and continuous improvement within the organisation. About You 3+ years' experience in Information Security, GRC, or Vendor Risk Management. Strong experience issuing or responding to security questionnaires. Knowledge of ISO 27001 Annex A, SOC 2, and GDPR/CCPA. Excellent communication skills, able to translate technical risk to non-technical stakeholders. Eligible to work in the UK and able to pass background checks. Desirable: Certifications such as CRISC, CISSP, CISA, or ISO 27001 Lead Auditor. Familiarity with SaaS/cloud platforms (AWS, Azure, GCP). Understanding of secure software supply chains (SBOM, SLSA). What's on Offer 50,000 - 55,000 base salary 25 days annual leave + public holidays (increasing with service) Matched pension scheme Private medical insurance & life assurance Fitness allowance Paid study leave & volunteering days Flexible hybrid working Excellent career development and training opportunities
Location Client Site in Barrow-in-Furness The job on offer Are you passionate about cybersecurity? Are you an excellent communicator with demonstrable experience of security analysts activities within organisations? Would you relish putting these skills into practice by taking on a role within Capgemini to protect our clients from cyber threats? As the Senior Security Analyst, you will be the lead Security Analyst within the a client account IT Security Operations Team. You will be joining a fantastic team of more than 400 UK based security professionals that deliver world-class security services day in and day out. Your role • Manage escalated Security Incidents from a people and process perspective • Identify and prioritise Security Incidents, Security Tickets and Security Service Requests • Bring incidents to successful conclusions with thorough remediation plans • Prioritising and differentiating between potential intrusion activity and false alarms • Conduct vulnerability analysis and create impact assessments • Assess current technology architecture for vulnerabilities, weaknesses and for possible upgrades or improvement • Work closely together with technical architects to produce design specifications according to information security policies, while fulfilling business needs Your profile • A good knowledge of Cyber Security and Information Assurance - an ability to demonstrate understanding of governance, compliance and risk from different perspectives i.e. across people, processes and technology • Someone who is an advocate for security good practice, with the ability to influence others • Hold, or be working towards, ISO27001 Lead Auditor • A working knowledge of ISO27001 required, and desirable to have knowledge of ISO33052, ISO33072 and METSec • Current NPPV3/SC clearance or the ability to be cleared to that level • Have been resident in the United Kingdom for at least five (5) years • Experience in the public sector preferred but not required • Due to the security classification of the work you will be involved in, you must be a UK national and must hold or be eligible to hold a SC security clearance. Why Capgemini is unique We aim to build an environment where employees can enjoy a positive work-life balance. Through our New Normal campaign, we are looking to embed hybrid working in all that we do and make flexible working arrangements the day-to-day reality for our people. All UK employees are eligible to request flexible working arrangements. We work with a range of clients all with a unique set of business, technological and societal ambitions. Working for Capgemini you get to be at the forefront of designing future experiences, which truly impact our clients and wider society for the better. We realise a Total Reward package should be move than just compensation. At Capgemini we offer range of core and flexible benefits and have a Peer Recognition Portal called Applaud Get the future you want Growing clients' businesses while building a more sustainable, more inclusive future is a tough ask. But when you join Capgemini, you join a thriving company and become part of a diverse collective of free-thinkers, entrepreneurs and industry experts. A powerful source of energy that drives us all to find new ways technology can help us reimagine what's possible. It's why, together, we seek out opportunities that will transform the world's leading businesses. And it's how you'll gain the experiences and connections you need to shape your future. By learning from each other every day, sharing knowledge and always pushing yourself to do better, you'll build the skills you want. And you'll use them to help our clients leverage technology to grow their business and give innovation that human touch the world needs. So, it might not always be easy, but making the world a better place rarely is. Capgemini. Get The Future You Want. About Capgemini Capgemini is a global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of over 340,000 team members in more than 50 countries. With its strong 55-year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fueled by the fast evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms. The Group reported in 2021 global revenues of €18 billion. Get the Future You Want
24/09/2022
Full time
Location Client Site in Barrow-in-Furness The job on offer Are you passionate about cybersecurity? Are you an excellent communicator with demonstrable experience of security analysts activities within organisations? Would you relish putting these skills into practice by taking on a role within Capgemini to protect our clients from cyber threats? As the Senior Security Analyst, you will be the lead Security Analyst within the a client account IT Security Operations Team. You will be joining a fantastic team of more than 400 UK based security professionals that deliver world-class security services day in and day out. Your role • Manage escalated Security Incidents from a people and process perspective • Identify and prioritise Security Incidents, Security Tickets and Security Service Requests • Bring incidents to successful conclusions with thorough remediation plans • Prioritising and differentiating between potential intrusion activity and false alarms • Conduct vulnerability analysis and create impact assessments • Assess current technology architecture for vulnerabilities, weaknesses and for possible upgrades or improvement • Work closely together with technical architects to produce design specifications according to information security policies, while fulfilling business needs Your profile • A good knowledge of Cyber Security and Information Assurance - an ability to demonstrate understanding of governance, compliance and risk from different perspectives i.e. across people, processes and technology • Someone who is an advocate for security good practice, with the ability to influence others • Hold, or be working towards, ISO27001 Lead Auditor • A working knowledge of ISO27001 required, and desirable to have knowledge of ISO33052, ISO33072 and METSec • Current NPPV3/SC clearance or the ability to be cleared to that level • Have been resident in the United Kingdom for at least five (5) years • Experience in the public sector preferred but not required • Due to the security classification of the work you will be involved in, you must be a UK national and must hold or be eligible to hold a SC security clearance. Why Capgemini is unique We aim to build an environment where employees can enjoy a positive work-life balance. Through our New Normal campaign, we are looking to embed hybrid working in all that we do and make flexible working arrangements the day-to-day reality for our people. All UK employees are eligible to request flexible working arrangements. We work with a range of clients all with a unique set of business, technological and societal ambitions. Working for Capgemini you get to be at the forefront of designing future experiences, which truly impact our clients and wider society for the better. We realise a Total Reward package should be move than just compensation. At Capgemini we offer range of core and flexible benefits and have a Peer Recognition Portal called Applaud Get the future you want Growing clients' businesses while building a more sustainable, more inclusive future is a tough ask. But when you join Capgemini, you join a thriving company and become part of a diverse collective of free-thinkers, entrepreneurs and industry experts. A powerful source of energy that drives us all to find new ways technology can help us reimagine what's possible. It's why, together, we seek out opportunities that will transform the world's leading businesses. And it's how you'll gain the experiences and connections you need to shape your future. By learning from each other every day, sharing knowledge and always pushing yourself to do better, you'll build the skills you want. And you'll use them to help our clients leverage technology to grow their business and give innovation that human touch the world needs. So, it might not always be easy, but making the world a better place rarely is. Capgemini. Get The Future You Want. About Capgemini Capgemini is a global leader in partnering with companies to transform and manage their business by harnessing the power of technology. The Group is guided everyday by its purpose of unleashing human energy through technology for an inclusive and sustainable future. It is a responsible and diverse organization of over 340,000 team members in more than 50 countries. With its strong 55-year heritage and deep industry expertise, Capgemini is trusted by its clients to address the entire breadth of their business needs, from strategy and design to operations, fueled by the fast evolving and innovative world of cloud, data, AI, connectivity, software, digital engineering and platforms. The Group reported in 2021 global revenues of €18 billion. Get the Future You Want
EY's Forensic Data Analytics (FDA) practice is a global, data-focused team within the Forensic & Integrity Services (FIS) department. Our team supports clients in dealing with the complex issues of fraud, regulatory compliance and business disputes. The FDA team practices the full life cycle of data analysis from the early stages of data discovery and capture, to its management, analysis and reporting. Our engagements typically require working with large datasets from disparate sources to support investigations, disputes and proactive risk detection. Our projects primarily involve FTSE100 clients covering a wide range of industries such as Life sciences, Oil & Gas, Government and Telecoms. Your key responsibilities Work with blue chip clients, fraud investigators, internal and external auditors, lawyers and regulatory authorities in sensitive situations Communicate with clients to scope projects and gather requirements Highlight and explain the outputs of our analytics to clients in the context of their business Be responsible for end to end delivery of projects across the full lifecycle - Data extraction, transformation, loading (ETL), analysis, visualisation, deployment and client delivery Handle a large amount of structured and unstructured data from a variety of data sources Carry out reactive and proactive data analysis of large datasets using a wide range of technologies, database management systems, Business Information reporting and visualisation software Supervise the work of junior team members and be responsible for quality control of work products from the team Develop algorithms and solutions to detect, respond, prevent, continually monitor and investigate areas of fraud, bribery & corruption, misconduct and financial crime Apply analytic techniques to prevent, detect, monitor or investigate potentially improper transactions, events or patterns of behaviour related to misconduct, fraud and non-compliance issues Develop supporting material using a suite of visualisation software to clearly present the benefits of the analysis to clients Align to various strategic teams in the areas of technology, innovation and business development To qualify for the role, you must have: Strong academic qualifications with a degree in a STEM discipline (Computer Science, Engineering, Statistics, Mathematics, etc.) or equivalent work experience Demonstrable proficiency in Java, Scala, SQL, Python and Visualization techniques and awareness across other programming languages such as R, C#, JavaScript Ability to work independently, manage work products and mentor junior team members Strong critical thinking, problem-solving skills, understanding of algorithms and appreciation of working with data Excellent communication skills and ability to explain complex analytical concepts to stakeholders from different backgrounds Ideally, you'll also have: Domain knowledge of accounting, fraud, bribery and corruption or sector specific knowledge or experience Organisational ability, people skills and project management potential Previous consulting experience and experience with: Relational databases, e.g. SQL Server, PostgreSQL, Oracle, MySQL; Data visualisation software: Spotfire, Tableau, or Power BI; Azure / GCP cloud computing platform; Big data technologies such as Spark, Elasticsearch, Hadoop; Statistical techniques (regression, clustering etc.); Machine learning and pattern recognition; Front-end web development e.g. HTML, JavaScript; We are looking for tenacious and curious individuals with a desire to 'get to the bottom' of things. You will be intellectually rigorous, with extremely strong analytical skills, have a passion for data, be adaptable and show an ability to build strong relationships. What working at EY offers: We offer a competitive remuneration package where you'll be rewarded for your individual and team performance. Our comprehensive Total Rewards package includes support for flexible working and career development, and with FlexEY you can select benefits that suit your needs, covering holidays, health and well-being, insurance, savings and a wide range of discounts, offers and promotions. Plus, we offer: Support and coaching from some of the most engaging colleagues around Opportunities to develop new skills and progress your career The freedom and flexibility to handle your role in a way that's right for you About EY: As a global leader in assurance, tax, transaction and advisory services, we're using the finance products, expertise and systems we've developed to build a better working world. That starts with a culture that believes in giving you the training, opportunities and creative freedom to make things better. Whenever you join, however long you stay, the exceptional EY experience lasts a lifetime. And with a commitment to hiring and developing the most passionate people, we are dedicated to making EY the best employer. If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible. Make your mark. Who we are: EY is committed to being an inclusive employer and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.
04/02/2022
Full time
EY's Forensic Data Analytics (FDA) practice is a global, data-focused team within the Forensic & Integrity Services (FIS) department. Our team supports clients in dealing with the complex issues of fraud, regulatory compliance and business disputes. The FDA team practices the full life cycle of data analysis from the early stages of data discovery and capture, to its management, analysis and reporting. Our engagements typically require working with large datasets from disparate sources to support investigations, disputes and proactive risk detection. Our projects primarily involve FTSE100 clients covering a wide range of industries such as Life sciences, Oil & Gas, Government and Telecoms. Your key responsibilities Work with blue chip clients, fraud investigators, internal and external auditors, lawyers and regulatory authorities in sensitive situations Communicate with clients to scope projects and gather requirements Highlight and explain the outputs of our analytics to clients in the context of their business Be responsible for end to end delivery of projects across the full lifecycle - Data extraction, transformation, loading (ETL), analysis, visualisation, deployment and client delivery Handle a large amount of structured and unstructured data from a variety of data sources Carry out reactive and proactive data analysis of large datasets using a wide range of technologies, database management systems, Business Information reporting and visualisation software Supervise the work of junior team members and be responsible for quality control of work products from the team Develop algorithms and solutions to detect, respond, prevent, continually monitor and investigate areas of fraud, bribery & corruption, misconduct and financial crime Apply analytic techniques to prevent, detect, monitor or investigate potentially improper transactions, events or patterns of behaviour related to misconduct, fraud and non-compliance issues Develop supporting material using a suite of visualisation software to clearly present the benefits of the analysis to clients Align to various strategic teams in the areas of technology, innovation and business development To qualify for the role, you must have: Strong academic qualifications with a degree in a STEM discipline (Computer Science, Engineering, Statistics, Mathematics, etc.) or equivalent work experience Demonstrable proficiency in Java, Scala, SQL, Python and Visualization techniques and awareness across other programming languages such as R, C#, JavaScript Ability to work independently, manage work products and mentor junior team members Strong critical thinking, problem-solving skills, understanding of algorithms and appreciation of working with data Excellent communication skills and ability to explain complex analytical concepts to stakeholders from different backgrounds Ideally, you'll also have: Domain knowledge of accounting, fraud, bribery and corruption or sector specific knowledge or experience Organisational ability, people skills and project management potential Previous consulting experience and experience with: Relational databases, e.g. SQL Server, PostgreSQL, Oracle, MySQL; Data visualisation software: Spotfire, Tableau, or Power BI; Azure / GCP cloud computing platform; Big data technologies such as Spark, Elasticsearch, Hadoop; Statistical techniques (regression, clustering etc.); Machine learning and pattern recognition; Front-end web development e.g. HTML, JavaScript; We are looking for tenacious and curious individuals with a desire to 'get to the bottom' of things. You will be intellectually rigorous, with extremely strong analytical skills, have a passion for data, be adaptable and show an ability to build strong relationships. What working at EY offers: We offer a competitive remuneration package where you'll be rewarded for your individual and team performance. Our comprehensive Total Rewards package includes support for flexible working and career development, and with FlexEY you can select benefits that suit your needs, covering holidays, health and well-being, insurance, savings and a wide range of discounts, offers and promotions. Plus, we offer: Support and coaching from some of the most engaging colleagues around Opportunities to develop new skills and progress your career The freedom and flexibility to handle your role in a way that's right for you About EY: As a global leader in assurance, tax, transaction and advisory services, we're using the finance products, expertise and systems we've developed to build a better working world. That starts with a culture that believes in giving you the training, opportunities and creative freedom to make things better. Whenever you join, however long you stay, the exceptional EY experience lasts a lifetime. And with a commitment to hiring and developing the most passionate people, we are dedicated to making EY the best employer. If you can confidently demonstrate that you meet the criteria above, please contact us as soon as possible. Make your mark. Who we are: EY is committed to being an inclusive employer and we are happy to consider flexible working arrangements. We strive to achieve the right balance for our people, enabling us to deliver excellent client service whilst allowing you to build your career without sacrificing your personal priorities. While our client-facing professionals can be required to travel regularly, and at times be based at client sites, our flexible working arrangements can help you to achieve a lifestyle balance.
At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. EY's Forensic Data Analytics practice is a global, data-focused team within the Forensic & Integrity Services (FIS) department. Our team supports clients in dealing with the complex issues of fraud, regulatory compliance and business disputes. The opportunity The FDA team practices the full life cycle of data analysis from the early stages of data discovery and capture, to its management, analysis and reporting. Our engagements typically require working with large datasets from disparate sources to support investigations, disputes and proactive risk detection. Our projects primarily involve FTSE100 clients covering a wide range of industries such as Life sciences, Oil & Gas, Government and Telecoms. Your key responsibilities Work with blue chip clients, fraud investigators, internal and external auditors, lawyers and regulatory authorities in sensitive situations Communicate with clients to scope projects and gather requirements Highlight and explain the outputs of our analytics to clients in the context of their business Be responsible for end to end delivery of projects across the full lifecycle - Data extraction, transformation, loading (ETL), analysis, visualisation, deployment and client delivery Handle a large amount of structured and unstructured data from a variety of data sources Carry out reactive and proactive data analysis of large datasets using a wide range of technologies, database management systems, Business Information reporting and visualisation software Supervise the work of junior team members and be responsible for quality control of work products from the team Develop algorithms and solutions to detect, respond, prevent, continually monitor and investigate areas of fraud, bribery & corruption, misconduct and financial crime Apply analytic techniques to prevent, detect, monitor or investigate potentially improper transactions, events or patterns of behaviour related to misconduct, fraud and non-compliance issues Develop supporting material using a suite of visualisation software to clearly present the benefits of the analysis to clients Align to various strategic teams in the areas of technology, innovation and business development Skills and attributes for success Strong critical thinking, problem-solving skills, understanding of algorithms and appreciation of working with data Excellent communication skills and ability to explain complex analytical concepts to stakeholders from different backgrounds To qualify for the role you must have Strong academic qualifications with a degree in a STEM discipline (Computer Science, Engineering, Statistics, Mathematics, etc.) or equivalent work experience Demonstrable proficiency in SQL, Python and Visualization techniques and awareness across other programming languages such as R, C#, JavaScript Ability to work independently, manage work products and mentor junior team members Ideally, you'll also have Domain knowledge of accounting, fraud, bribery and corruption or sector specific knowledge or experience Organisational ability, people skills and project management potential Previous consulting experience and experience with: Relational databases, e.g. SQL Server, PostgreSQL, Oracle, MySQL; Data visualisation software: Spotfire, Tableau, or Power BI; Azure cloud computing platform; Big data technologies such as Spark, Elasticsearch, Hadoop; Statistical techniques (regression, clustering etc.); Machine learning and pattern recognition; Front-end web development e.g. HTML, JavaScript; What we look for We are looking for tenacious and curious individuals with a desire to 'get to the bottom' of things. You will be intellectually rigorous, with extremely strong analytical skills, have a passion for data, be adaptable and show an ability to build strong relationships. What we offer Continuous learning: You'll develop the mindset and skills to navigate whatever comes next. Success as defined by you: We'll provide the tools and flexibility, so you can make a meaningful impact, your way. Transformative leadership: We'll give you the insights, coaching and confidence to be the leader the world needs. Diverse and inclusive culture: You'll be embraced for who you are and empowered to use your voice to help others find theirs. If you can demonstrate that you meet the criteria above, please contact us as soon as possible. The exceptional EY experience. It's yours to build. Apply now. Please note:Prior to finalizing your application, you will be asked to provide personal information across several dimensions of diversity and inclusiveness. The information you provide is kept entirely confidential and will not be used to evaluate your candidacy. We collect this data to help us analyse our recruitment process holistically and implement actions that promote diversity and inclusiveness. While optional, we encourage you to provide this information to hold us accountable towards our goal of building a better working world. Read more about our commitment to diversity& inclusiveness here . We ask because it matters! EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
01/02/2022
Full time
At EY, you'll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we're counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. EY's Forensic Data Analytics practice is a global, data-focused team within the Forensic & Integrity Services (FIS) department. Our team supports clients in dealing with the complex issues of fraud, regulatory compliance and business disputes. The opportunity The FDA team practices the full life cycle of data analysis from the early stages of data discovery and capture, to its management, analysis and reporting. Our engagements typically require working with large datasets from disparate sources to support investigations, disputes and proactive risk detection. Our projects primarily involve FTSE100 clients covering a wide range of industries such as Life sciences, Oil & Gas, Government and Telecoms. Your key responsibilities Work with blue chip clients, fraud investigators, internal and external auditors, lawyers and regulatory authorities in sensitive situations Communicate with clients to scope projects and gather requirements Highlight and explain the outputs of our analytics to clients in the context of their business Be responsible for end to end delivery of projects across the full lifecycle - Data extraction, transformation, loading (ETL), analysis, visualisation, deployment and client delivery Handle a large amount of structured and unstructured data from a variety of data sources Carry out reactive and proactive data analysis of large datasets using a wide range of technologies, database management systems, Business Information reporting and visualisation software Supervise the work of junior team members and be responsible for quality control of work products from the team Develop algorithms and solutions to detect, respond, prevent, continually monitor and investigate areas of fraud, bribery & corruption, misconduct and financial crime Apply analytic techniques to prevent, detect, monitor or investigate potentially improper transactions, events or patterns of behaviour related to misconduct, fraud and non-compliance issues Develop supporting material using a suite of visualisation software to clearly present the benefits of the analysis to clients Align to various strategic teams in the areas of technology, innovation and business development Skills and attributes for success Strong critical thinking, problem-solving skills, understanding of algorithms and appreciation of working with data Excellent communication skills and ability to explain complex analytical concepts to stakeholders from different backgrounds To qualify for the role you must have Strong academic qualifications with a degree in a STEM discipline (Computer Science, Engineering, Statistics, Mathematics, etc.) or equivalent work experience Demonstrable proficiency in SQL, Python and Visualization techniques and awareness across other programming languages such as R, C#, JavaScript Ability to work independently, manage work products and mentor junior team members Ideally, you'll also have Domain knowledge of accounting, fraud, bribery and corruption or sector specific knowledge or experience Organisational ability, people skills and project management potential Previous consulting experience and experience with: Relational databases, e.g. SQL Server, PostgreSQL, Oracle, MySQL; Data visualisation software: Spotfire, Tableau, or Power BI; Azure cloud computing platform; Big data technologies such as Spark, Elasticsearch, Hadoop; Statistical techniques (regression, clustering etc.); Machine learning and pattern recognition; Front-end web development e.g. HTML, JavaScript; What we look for We are looking for tenacious and curious individuals with a desire to 'get to the bottom' of things. You will be intellectually rigorous, with extremely strong analytical skills, have a passion for data, be adaptable and show an ability to build strong relationships. What we offer Continuous learning: You'll develop the mindset and skills to navigate whatever comes next. Success as defined by you: We'll provide the tools and flexibility, so you can make a meaningful impact, your way. Transformative leadership: We'll give you the insights, coaching and confidence to be the leader the world needs. Diverse and inclusive culture: You'll be embraced for who you are and empowered to use your voice to help others find theirs. If you can demonstrate that you meet the criteria above, please contact us as soon as possible. The exceptional EY experience. It's yours to build. Apply now. Please note:Prior to finalizing your application, you will be asked to provide personal information across several dimensions of diversity and inclusiveness. The information you provide is kept entirely confidential and will not be used to evaluate your candidacy. We collect this data to help us analyse our recruitment process holistically and implement actions that promote diversity and inclusiveness. While optional, we encourage you to provide this information to hold us accountable towards our goal of building a better working world. Read more about our commitment to diversity& inclusiveness here . We ask because it matters! EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.
Senior Solutions Architect Department overview IHS Markit provides innovative products and services that enhance transparency, reduce risk and improve operational efficiency. Our customers include banks, hedge funds, asset managers, central banks, regulators, auditors, fund administrators and insurance companies. We develop large scale technology platforms and enterprise software to produce global financial data with focus on analysis and regulatory requirements. Position summary This Solution Architect position provides technical design within the Financial Service Solution division responsible for the end to end design and delivery of IHS Markit's Enterprise Data Management (EDM) software focused on financial data management. The role is responsible for working with the CTO and a global team of Engineers in support of this mission, with additional support from the wider technology organization. The ideal applicant will have an organized and creative mind-set (thought leader) that drives him or her to find innovative solutions to common problems with the right toolset. They will be passionate about technology and have a self-driven interest to keep up with the latest technology developments and relate them to the current product landscape. Duties & accountabilities Assist the CTO in defining the strategic architectural for Financial Services Solutions group Facilitate system design and changes in system architecture to meet Maintain current knowledge of technology landscape and developments Focus on cloud enablement to increase ROI and create new business opportunities Track, analyze and monitor technology performance metrics of managed products Take the initiative in thought leadership, innovation, and creativity Mentor team on technology and other work-related aspects. Responsibility for quality of all deployed applications and services Drive innovation and adaption of best practices. Education and experience Degree in Computer Science or relevant real world experience 12+ years of development experience building enterprise software or platforms in a financial environment (still hands on) At least 10+ years of experience leading technology teams Ability to deliver products in a dynamic, fast-paced environment. Should have excellent architecture and design skills Strong understanding of and ability to apply architectural patterns Deep and practical understanding of modern distributed architecture design Expert on DBMS technologies (RMDBS, NoSQL, etc) Strong background on leveraging cloud technologies (AWS, Azure, GCP) Focus on Microsoft stack, but knowledgeable on cross-platform tech Can handle both front-end and backend architectural design Personal impact Passionate technologist Thought leader with focus on delivery Displays energy, drive and stamina Analytical and can work with the business stakeholder's daily Open minded, flexible and willing to adapt to changing situations. Comfortable working with global teams operating across different time zones. Inclusion and diversity are critical to the success of IHS Markit, and we actively encourage applications from people of all backgrounds. We are committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, status as a protected veteran, or any other protected category. For more information on the many ways in which we enthusiastically support inclusion and diversity efforts for both candidates and employees, please access our Inclusion & Diversity Statement here . We are proud to provide reasonable accommodations to applicants with disabilities. If you are interested in applying for employment with IHS Markit and need special assistance or an accommodation to use our website or to apply for a position, please click apply now. Determination on requests for reasonable accommodation are considered on a case-by-case basis. We are unable to accept resumes or provide information about application status through the phone number or email address above. Resumes are only accepted through the online application process, and only qualified candidates will receive consideration and follow-up. IHS Markit maintains a substance-free workplace; employees may be asked to submit to a drug test (where permitted by law). In addition, as a federal contractor in the United States, the company participates in the E-Verify Program to confirm eligibility to work.
17/03/2021
Full time
Senior Solutions Architect Department overview IHS Markit provides innovative products and services that enhance transparency, reduce risk and improve operational efficiency. Our customers include banks, hedge funds, asset managers, central banks, regulators, auditors, fund administrators and insurance companies. We develop large scale technology platforms and enterprise software to produce global financial data with focus on analysis and regulatory requirements. Position summary This Solution Architect position provides technical design within the Financial Service Solution division responsible for the end to end design and delivery of IHS Markit's Enterprise Data Management (EDM) software focused on financial data management. The role is responsible for working with the CTO and a global team of Engineers in support of this mission, with additional support from the wider technology organization. The ideal applicant will have an organized and creative mind-set (thought leader) that drives him or her to find innovative solutions to common problems with the right toolset. They will be passionate about technology and have a self-driven interest to keep up with the latest technology developments and relate them to the current product landscape. Duties & accountabilities Assist the CTO in defining the strategic architectural for Financial Services Solutions group Facilitate system design and changes in system architecture to meet Maintain current knowledge of technology landscape and developments Focus on cloud enablement to increase ROI and create new business opportunities Track, analyze and monitor technology performance metrics of managed products Take the initiative in thought leadership, innovation, and creativity Mentor team on technology and other work-related aspects. Responsibility for quality of all deployed applications and services Drive innovation and adaption of best practices. Education and experience Degree in Computer Science or relevant real world experience 12+ years of development experience building enterprise software or platforms in a financial environment (still hands on) At least 10+ years of experience leading technology teams Ability to deliver products in a dynamic, fast-paced environment. Should have excellent architecture and design skills Strong understanding of and ability to apply architectural patterns Deep and practical understanding of modern distributed architecture design Expert on DBMS technologies (RMDBS, NoSQL, etc) Strong background on leveraging cloud technologies (AWS, Azure, GCP) Focus on Microsoft stack, but knowledgeable on cross-platform tech Can handle both front-end and backend architectural design Personal impact Passionate technologist Thought leader with focus on delivery Displays energy, drive and stamina Analytical and can work with the business stakeholder's daily Open minded, flexible and willing to adapt to changing situations. Comfortable working with global teams operating across different time zones. Inclusion and diversity are critical to the success of IHS Markit, and we actively encourage applications from people of all backgrounds. We are committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, status as a protected veteran, or any other protected category. For more information on the many ways in which we enthusiastically support inclusion and diversity efforts for both candidates and employees, please access our Inclusion & Diversity Statement here . We are proud to provide reasonable accommodations to applicants with disabilities. If you are interested in applying for employment with IHS Markit and need special assistance or an accommodation to use our website or to apply for a position, please click apply now. Determination on requests for reasonable accommodation are considered on a case-by-case basis. We are unable to accept resumes or provide information about application status through the phone number or email address above. Resumes are only accepted through the online application process, and only qualified candidates will receive consideration and follow-up. IHS Markit maintains a substance-free workplace; employees may be asked to submit to a drug test (where permitted by law). In addition, as a federal contractor in the United States, the company participates in the E-Verify Program to confirm eligibility to work.
Job Description:
The Senior IT Systems Support Engineer will primarily support both hardware and software related needs for an end user community of approximately 200 users in a manufacturing environment. This role will be the main escalation point onsite for all end user computing needs at 3 sites in the UK. This hands-on role requires supporting the Infrastructure as well as direct interaction with a diverse user base including shop floor employees, engineers, office workers, etc.
Specific Responsibilities: Below highlights key responsibilities, but is not all inclusive:
Primary escalation point for all client hardware and software related needs
Support client related operational tasks
New client hardware imaging and deployments
Application deployments and upgrades
Windows XP/7/10 operating system support
Business productivity and manufacturing application support
Microsoft Office 2007/2010/2013/2016 etc
ProE
Site level Active Directory object management
User, group and computer object management
Support of Office 365 / Exchange Online related tasks
Support of remote users
Basic Windows server support
Javalin ERP (currently running)
Oracle EBS r12 ERP (future)
Knowledge, Skills, Experience, Characteristics • Passion for providing world class service to your end user community • Proven analytical and technical skills • Exceptional oral and written communication skills and the capability to work with customers at all levels • Proven ability to identify process improvement opportunities, develop recommendations and document processes • Proven ability to work as a team player in a cross-functional team environment • Exceptional work ethic • Be customer centric and have the interpersonal skills necessary to manage business and technology relationships with internal and external clients • Must be able to follow defined processes and develop processes where lacking • Must be able to multi-task, as the support environment requires attention across multiple areas. • Flexibility to work outside normal business hours as required by position and assignments (The company employs IT resources across the globe, and many projects are done after hours and/or on weekends) • Must be detail-oriented and self-motivated and be able to work independently. Good analytical, organizational, problem solving and follow-up skills with the ability to meet time sensitive deadlines.
Technical requirements: • Prior experience supporting an Engineering organization • Prior experience supporting a high tech manufacturing organization • Experience working with VMWare • Extensive experience working with Windows 7 • Extensive experience working with O365 • Prior experience working with Oracle ERP (getting users setup, basic troubleshooting, etc.) • Understanding of networking technologies • Experience with Help Desk software (KACE preferably) • Experience working with client imaging and software deployment products • Experience working in an IT environment that leverages both external and internal resources • Experience working with Active Directory • Experience using SQL Server a plus • Experience working with Dell client and server hardware Other Requirements • A minimum of 7 years hands on experience • Bachelor’s degree or equivalent in Business, IT or related field preferred • Prior hands on SOX experience interfacing with external auditors would be a bonus • Travel up to 40% primarily within the UK
After hours support as required Physical Requirements: • Mobility to work in a standard office setting and to use standard office equipment, including a computer. • Ability to use vison to read computer screen and read printed materials.
30/04/2019
Full time
Job Description:
The Senior IT Systems Support Engineer will primarily support both hardware and software related needs for an end user community of approximately 200 users in a manufacturing environment. This role will be the main escalation point onsite for all end user computing needs at 3 sites in the UK. This hands-on role requires supporting the Infrastructure as well as direct interaction with a diverse user base including shop floor employees, engineers, office workers, etc.
Specific Responsibilities: Below highlights key responsibilities, but is not all inclusive:
Primary escalation point for all client hardware and software related needs
Support client related operational tasks
New client hardware imaging and deployments
Application deployments and upgrades
Windows XP/7/10 operating system support
Business productivity and manufacturing application support
Microsoft Office 2007/2010/2013/2016 etc
ProE
Site level Active Directory object management
User, group and computer object management
Support of Office 365 / Exchange Online related tasks
Support of remote users
Basic Windows server support
Javalin ERP (currently running)
Oracle EBS r12 ERP (future)
Knowledge, Skills, Experience, Characteristics • Passion for providing world class service to your end user community • Proven analytical and technical skills • Exceptional oral and written communication skills and the capability to work with customers at all levels • Proven ability to identify process improvement opportunities, develop recommendations and document processes • Proven ability to work as a team player in a cross-functional team environment • Exceptional work ethic • Be customer centric and have the interpersonal skills necessary to manage business and technology relationships with internal and external clients • Must be able to follow defined processes and develop processes where lacking • Must be able to multi-task, as the support environment requires attention across multiple areas. • Flexibility to work outside normal business hours as required by position and assignments (The company employs IT resources across the globe, and many projects are done after hours and/or on weekends) • Must be detail-oriented and self-motivated and be able to work independently. Good analytical, organizational, problem solving and follow-up skills with the ability to meet time sensitive deadlines.
Technical requirements: • Prior experience supporting an Engineering organization • Prior experience supporting a high tech manufacturing organization • Experience working with VMWare • Extensive experience working with Windows 7 • Extensive experience working with O365 • Prior experience working with Oracle ERP (getting users setup, basic troubleshooting, etc.) • Understanding of networking technologies • Experience with Help Desk software (KACE preferably) • Experience working with client imaging and software deployment products • Experience working in an IT environment that leverages both external and internal resources • Experience working with Active Directory • Experience using SQL Server a plus • Experience working with Dell client and server hardware Other Requirements • A minimum of 7 years hands on experience • Bachelor’s degree or equivalent in Business, IT or related field preferred • Prior hands on SOX experience interfacing with external auditors would be a bonus • Travel up to 40% primarily within the UK
After hours support as required Physical Requirements: • Mobility to work in a standard office setting and to use standard office equipment, including a computer. • Ability to use vison to read computer screen and read printed materials.
Prism Digital
Information Security Analyst - SIEM - Famous Arts Institution A world-renowned arts institution based in South Kensington is looking for a Cyber Security Analyst You will be joining an IT department of circa 20 staff. Your role will be as a very hands on IT Security specialist to maintain the internal and external security of the business at a large scale; 3,000 devices and 1,200 end users. You will be responsible for the day-to-day actions that will ensure the established information security policies are adhered to by all staff and all systems. You will monitor all security and compliance systems regularly taking action where required or ensuring that others who are responsible for those systems are taking appropriate action. Main tasks: * Lead the development, documentation and maintenance of information security policies, procedures, and standards across the organisation * Proactively initiate, facilitate, and promote activities to create awareness of information security * Assist in system and software architecture and design to ensure that data and assets remain secure at all times * Perform Information Security Risk Assessments of all new systems implemented * Perform regular risk assessments and work closely with auditors to pre-empt, mitigate, and swiftly respond to any audit findings * To investigate suspected and actual security incidents in accordance with the security incident management standard, produce reports with recommendations and ensure any remedial action is taken * Work with the IT Security Manager to implement and maintain the Information Security Management System (ISMS) * Manage the Security Information and Event Management system (SIEM) and other security systems ensuring appropriate actions are taken for all issues flagged for action by the system * Monitor all security compliance reporting ensuring appropriate actions are taken in response to the report details and escalating issues as required * Monitor security risks using data from security vendors, application vendors, government security organisations and other appropriate information sources and highlight areas of concern to the IT Security Manager * Monitor all security systems for potential security breaches and recommend remedial actions to be taken * Manage regular penetration tests (internal and external) Monitor the SIEM for issues arising Check compliance reports daily and get others to make appropriate updates Work with the Programme Manager on developing further compliance reports for regular review Verify Windows patches are applied by performing random checks Implement Nessus scanner with Cyber Essentials rules for internal systems to verify compliance levels Follow up on any phishing attacks or other security events to ensure proper process and documentation is followed Assist in putting together an Information Security Risk Assessment template and then conducting those for each of our systems. Follow up on penetration test results liaising with internal teams and external vendors to deliver required remediation Essential requirements: * Formal Information Security qualification (CISM, CISSP/CISA or equivalent) * At least 3 years of experience in Information Security Management or IT Audit related role * Understanding of ISO27001, Cyber Essentials, business continuity and compliance and audit frameworks * Understanding of IT infrastructure, networking systems and information management systems * Experienced in the selection and implementation of appropriate security controls * Ability to produce clear written material for Senior Management * Ability to communicate technical information in a clear and understandable manner to non-technical stakeholders * Ability to direct, interact and effectively share technical issues with IT staff and end users Desirable requirements: * Familiar with the configuration and operation of Nessus * Working within an ISO27001 or Cyber Essentials compliant environment * Strong understanding of GDPR and PCIDSS * Excellent analytical and problem-solving skills * Experience establishing an ISMS and SIEM Benefits: 28 days holiday 10% Co. Pension - no personal contrib needed Season Ticket Loan Cycle to Work Scheme Heavily subsidised Staff Canteen 36 Working Hour Week with a degree of flex Information Security Analyst - SIEM - Famous Arts Institution This is an amazing company to work for and they are looking for someone to start ASAP!
15/02/2019
Prism Digital
Information Security Analyst - SIEM - Famous Arts Institution A world-renowned arts institution based in South Kensington is looking for a Cyber Security Analyst You will be joining an IT department of circa 20 staff. Your role will be as a very hands on IT Security specialist to maintain the internal and external security of the business at a large scale; 3,000 devices and 1,200 end users. You will be responsible for the day-to-day actions that will ensure the established information security policies are adhered to by all staff and all systems. You will monitor all security and compliance systems regularly taking action where required or ensuring that others who are responsible for those systems are taking appropriate action. Main tasks: * Lead the development, documentation and maintenance of information security policies, procedures, and standards across the organisation * Proactively initiate, facilitate, and promote activities to create awareness of information security * Assist in system and software architecture and design to ensure that data and assets remain secure at all times * Perform Information Security Risk Assessments of all new systems implemented * Perform regular risk assessments and work closely with auditors to pre-empt, mitigate, and swiftly respond to any audit findings * To investigate suspected and actual security incidents in accordance with the security incident management standard, produce reports with recommendations and ensure any remedial action is taken * Work with the IT Security Manager to implement and maintain the Information Security Management System (ISMS) * Manage the Security Information and Event Management system (SIEM) and other security systems ensuring appropriate actions are taken for all issues flagged for action by the system * Monitor all security compliance reporting ensuring appropriate actions are taken in response to the report details and escalating issues as required * Monitor security risks using data from security vendors, application vendors, government security organisations and other appropriate information sources and highlight areas of concern to the IT Security Manager * Monitor all security systems for potential security breaches and recommend remedial actions to be taken * Manage regular penetration tests (internal and external) Monitor the SIEM for issues arising Check compliance reports daily and get others to make appropriate updates Work with the Programme Manager on developing further compliance reports for regular review Verify Windows patches are applied by performing random checks Implement Nessus scanner with Cyber Essentials rules for internal systems to verify compliance levels Follow up on any phishing attacks or other security events to ensure proper process and documentation is followed Assist in putting together an Information Security Risk Assessment template and then conducting those for each of our systems. Follow up on penetration test results liaising with internal teams and external vendors to deliver required remediation Essential requirements: * Formal Information Security qualification (CISM, CISSP/CISA or equivalent) * At least 3 years of experience in Information Security Management or IT Audit related role * Understanding of ISO27001, Cyber Essentials, business continuity and compliance and audit frameworks * Understanding of IT infrastructure, networking systems and information management systems * Experienced in the selection and implementation of appropriate security controls * Ability to produce clear written material for Senior Management * Ability to communicate technical information in a clear and understandable manner to non-technical stakeholders * Ability to direct, interact and effectively share technical issues with IT staff and end users Desirable requirements: * Familiar with the configuration and operation of Nessus * Working within an ISO27001 or Cyber Essentials compliant environment * Strong understanding of GDPR and PCIDSS * Excellent analytical and problem-solving skills * Experience establishing an ISMS and SIEM Benefits: 28 days holiday 10% Co. Pension - no personal contrib needed Season Ticket Loan Cycle to Work Scheme Heavily subsidised Staff Canteen 36 Working Hour Week with a degree of flex Information Security Analyst - SIEM - Famous Arts Institution This is an amazing company to work for and they are looking for someone to start ASAP!
Information Security Analyst - Risk & Assurance - up to £55k + Bonus + Bens
Information Security Analyst with a blend of technical skills and risk assurance experience required by leading retailer.
This exciting Information Security Analyst role will see you work closely with teams across the business and you will primarily be responsible for providing information security and risk assurance for projects. There is a large portfolio of both small projects and large complex programmes so this will be a varied and challenging Information Security role which will really test your skills.
Day-to-day you will provide Information Assurance and consultative advice to the project teams on principles and technologies in security engineering designs and implementation. You will review and assess architecture designs and network/data diagrams then propose controls, highlight risks and mitigate these risks, making solutions more secure. You will also scope, arrange and support penetration and vulnerability testing and track remediation and will apply security risk assessment methodology to system development, including assessing and auditing network penetration testing, risk analysis and risk treatment. This role will see you provide risk management to multiple projects from both a business and technology perspective so the ability to flip between both sides is essential and you will also contribute towards documenting and improving processes within the growing infosec team.
This role requires a strong technical background coupled with an in-depth knowledge of security systems and relevant regulations and legislation to assist in maintaining the confidentiality, integrity and availability of the company's information, products and systems. To be considered you must have strong Information Assurance experience, end-to-end security project management experience and a good level of PCI & Data Protection knowledge. You will have posses a good understanding of Information Security and IT Security frameworks, standards and application of best practice. You should bring a good understanding of security architecture and security tools including: vulnerability scanning, SIEM monitoring, physical security tools, DDoS Protection, failover testing, pattern matching scanners, remote access technologies, authentication and authorisation techniques, network sniffing, forensic/disk management utilities and procedures and understanding of Data Loss Prevention. Certifications such as the CISSP or ISO27001 Lead Auditor or Lead Implementer are desirable and you must have good communication and team working skills.
This is a fantastic chance to join a growing infosec team with a busy pipeline of exciting projects. An excellent salary up to £55k + 30% Bonus + Benefits including contributory pension, life assurance and 25 days holiday is on offer. If you are a an Information Security Analyst or Information Security Authority with strong risk & assurance experience then apply NOW
.
The People Network is acting as an Employment Business in relation to this vacancy.
The company is an equal opportunities employer and positively encourages applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, gender reassignment, religion or belief, marital status, or pregnancy and maternity
The People Network is part of the Pertemps Network Group of companies and is a specialist IT and technical recruitment consultancy with offices in London, Birmingham and Wiltshire. Experienced in placing permanent, interim and contract IT and technical staff at all levels across a range of sectors including Banking, Financial Services, Telecoms, Consultancy and Software Houses across the UK and Mainland Europe.
If you would like a confidential and informal chat regarding your career please call and speak with one of our consultants.
For more information and latest vacancies please visit us on our website at (url removed)
09/09/2016
Information Security Analyst - Risk & Assurance - up to £55k + Bonus + Bens
Information Security Analyst with a blend of technical skills and risk assurance experience required by leading retailer.
This exciting Information Security Analyst role will see you work closely with teams across the business and you will primarily be responsible for providing information security and risk assurance for projects. There is a large portfolio of both small projects and large complex programmes so this will be a varied and challenging Information Security role which will really test your skills.
Day-to-day you will provide Information Assurance and consultative advice to the project teams on principles and technologies in security engineering designs and implementation. You will review and assess architecture designs and network/data diagrams then propose controls, highlight risks and mitigate these risks, making solutions more secure. You will also scope, arrange and support penetration and vulnerability testing and track remediation and will apply security risk assessment methodology to system development, including assessing and auditing network penetration testing, risk analysis and risk treatment. This role will see you provide risk management to multiple projects from both a business and technology perspective so the ability to flip between both sides is essential and you will also contribute towards documenting and improving processes within the growing infosec team.
This role requires a strong technical background coupled with an in-depth knowledge of security systems and relevant regulations and legislation to assist in maintaining the confidentiality, integrity and availability of the company's information, products and systems. To be considered you must have strong Information Assurance experience, end-to-end security project management experience and a good level of PCI & Data Protection knowledge. You will have posses a good understanding of Information Security and IT Security frameworks, standards and application of best practice. You should bring a good understanding of security architecture and security tools including: vulnerability scanning, SIEM monitoring, physical security tools, DDoS Protection, failover testing, pattern matching scanners, remote access technologies, authentication and authorisation techniques, network sniffing, forensic/disk management utilities and procedures and understanding of Data Loss Prevention. Certifications such as the CISSP or ISO27001 Lead Auditor or Lead Implementer are desirable and you must have good communication and team working skills.
This is a fantastic chance to join a growing infosec team with a busy pipeline of exciting projects. An excellent salary up to £55k + 30% Bonus + Benefits including contributory pension, life assurance and 25 days holiday is on offer. If you are a an Information Security Analyst or Information Security Authority with strong risk & assurance experience then apply NOW
.
The People Network is acting as an Employment Business in relation to this vacancy.
The company is an equal opportunities employer and positively encourages applications from suitably qualified and eligible candidates regardless of sex, race, disability, age, sexual orientation, gender reassignment, religion or belief, marital status, or pregnancy and maternity
The People Network is part of the Pertemps Network Group of companies and is a specialist IT and technical recruitment consultancy with offices in London, Birmingham and Wiltshire. Experienced in placing permanent, interim and contract IT and technical staff at all levels across a range of sectors including Banking, Financial Services, Telecoms, Consultancy and Software Houses across the UK and Mainland Europe.
If you would like a confidential and informal chat regarding your career please call and speak with one of our consultants.
For more information and latest vacancies please visit us on our website at (url removed)