IT Security Operations Analyst


Premium Job From Bupa

Recruiter

Bupa

Listed on

8th May 2017

Location

Staines

Salary/Rate

£Competitive salary + excellent benefits

Salary Notes

£Competitive salary + excellent benefits

Type

Permanent

This job has now expired please search on the home page to find live IT Jobs.

Bupa's purpose is helping people live longer, healthier, happier lives. Our status, as a company limited by guarantee with no shareholders, enables us to make our customers our focus, reinvesting our profits to provide more and better healthcare for current and future customers.

We employ over 84,000 people, principally in the UK, Australia, Spain, Poland, Hong Kong, Chile, Brazil, Saudi Arabia, India, New Zealand, Thailand and the US

Around 70% of our revenue is from health insurance, with the rest from health and care provision. We fund healthcare around the world and run clinics, hospitals, dental centres, care homes and retirement villages in a number of countries.

Job Summary

The IT Security Operations Analyst will have a solid IT background covering Operating Systems, IP Networking, firewalls and boundary controls, IDS/IPS, SIEM coupled with excellent troubleshooting skills. They will have experience of developing intelligence gathering systems and managing associated incident response processes. This role will suit a highly motivated individual, with keen attention to detail, who can demonstrate exceptional analytical skills and knowledge of current and evolving Cyber threats and developing strategies for their detection and mitigation. They will report directly to the Head of IT Security, UK Market Unit.

Key Responsibilities

                    This role will assist the Head of IT Security with security operation activities which include but are not limited to:

                    Understanding corporate policies and developing Market Unit specific (i.e. enforceable) policies.

                    Managing the day to day maintenance of operational controls, ownership of ISO 27001, PCI DSS compliance, including the assurance of compliance to applicable legislative and regulatory controls.

                    Facilitating audits, due diligence assessments, penetration assessments and coordinating progress of actions.

                    Evaluating information security controls and techniques to ensure they are effectively implemented.

                    In collaboration with UK Information Governance, respond to information security incidents, investigate and report on security breaches.

                    Provide specialist IT Security services and advice to meet business need; undertaking security assurance activities relating to programmes and projects and perform vulnerability assessments and carry out risk management activities.

Specific Skills

                    Educated to Degree or possesses the following qualifications: CISSP, CRISC, CISM, CGEIT, etc.

                    Knowledge of current and emerging advanced cyber threats, attack and evasion techniques, command and control infrastructures and insider threat behaviour.

                    Proven capability and experience of investigating, managing and remediating cyber security incidents with an ability to make sound decisions and judgements

                    Experience in escalating and articulating security concepts to all levels of audience.

                    Extremely good organisational, communication and documentation and administration skills with a good eye for detail.

                    A good understanding of typical malware functionality and capabilities.

                    A good understanding of the tools and techniques used by SOC and Incident Response teams.

                    Experience producing security documentation and other technical analysis reports.

                    Demonstrable experience in Intrusion Detection and analysis.

                    Knowledge and understanding of SIEM toolsets and applications.

                    Demonstrable experience with Data Leakage Prevention solutions.

                    Experience working in a team-oriented, collaborative environment.

                    Exposure to prevalent industry standards such as ISO27001, FCA, PRA, ICO, PCI-DSS, CIS, ITIL etc.

The following elements are considered as essential knowledge and one must be able to explain/demonstrate the configuration, management and maintenance of the following:

                    Vulnerability Management

                    Firewalls

                    SIEM

                    IDS/IPS

                    Endpoint Protection (including anti-malware, Application Control and Device Control)

                    Web Security

                    Email Security

                    Forward & Reverse Proxies

                    Identity & Access Management

                    PKI

In return you will be rewarded with excellent benefits - including 25 days holiday, free healthcare, an onsite gym and a subsidised canteen. You’ll also be supported in developing your skills with ongoing training and career opportunities.

Bupa is committed to an environment which will attract, retain and motivate its people. Bupa aims to ensure that every applicant to, or employee of is assessed for employment, promotion and development solely on the basis of personal merit and qualifications, regardless of gender, sexual orientation, pregnancy or maternity, marital or civil partner status, gender reassignment, race, colour, nationality, ethnic or national origin, religion or belief, disability or age

For further information on Bupa, our equal opportunities and your career with us, please visit www.bupa.co.uk

You are currently using an outdated browser.

Please consider using a modern browser such as one listed below: