You will develop and deliver required security processes and analysis day to day, accessing and using security tools where required, to help monitor and protect the business. You will also help provide ongoing assurance that digital systems and data are safe and secure.
Responsibilities
- Maintain an understanding of the business area and its IT and data assets, and support in adequately securing them.
- Act as technical security SME for BAU technical security queries, prioritise, co-ordinate and oversee BAU security services and support to all aligned clients / segments.
- Proactively identify and seek to address potential risks / issues / events / vulnerabilities arising and manage and report accordingly.
- Provide BAU support, where requested, to analyse and assess networks and infrastructure security management provision and provide suitable proactive security recommendations as needed.
- Carry out risk assessments and / or investigations in the business and / or research and report on cyber security related topics, such as threats and regulation.
- Understand current threat landscape and risk profiles, identifying new / relevant threats, and advise on security countermeasures whilst proactively identifying and delivering cyber security improvements including basic configuration of security tools.
- Undertake monitoring and reporting of key security metrics and relevant progress updates.
- Help develop and maintain service descriptions, processes, procedures and best practice guidelines for all technical cyber security operational services.
- Respond immediately to support the CISO and the business in the event of security threats, alerts and incidents across the businesses network(s).
- Appropriately log security incidents, risks and issues in relative registers.
Qualifications and Experience
Mandatory
Cyber security experience within a large complex corporate environment working with multiple partners, disparate multi-disciplined teams, and multiple streams of project activity.Proven knowledge and experience of IT and information security policies, practices and standards.Knowledge of current technologies in the field and the ability to learn new ones.Incident management experience including investigations and response.We are seeking a someone with a passion and propensity for Information / Cyber Security who can work under pressure, prioritise and manage their own workload where deadlines can change, whilst doing so with a high level of autonomy, integrity and assertiveness. Excellent organisation skills, attention to detail and the ability to probe and question to obtain accurate information are essential.At least 4 years of experience in InfoSec, financial services and, ideally, with Azure SentinelLiving in Portugal and available to go to Lisbon or Porto offices ocasionally (1 day per month or every two weeks)B2 / C1 level of english (oral and written)Valued
Configuration experience of ThreatLocker, Defender and E5 security stackExperiende with Sentinel Automations via Logic Apps and Analytics KQL creationKnowledge / experience with Cortex XDRKnowledge / experience with SilverfortKnowledge / experience with SenseOnKnowledge / experience with Mimecast