IT Security Analyst
Role details
Job location
Tech stack
Job description
We are seeking an experienced and detail-oriented IT Security Analyst to join our team. In this role, you will play a vital part in safeguarding the organisation's information assets and infrastructure. You will be responsible for managing and enhancing security controls, responding to incidents, and ensuring compliance with regulatory requirements. Key areas include email security, incident response, threat analysis, network security, vulnerability management, auditing, mobile device management, and handling security tickets. You will also proactively monitor systems, drive security awareness initiatives, and contribute to maintaining and improving the Firm's overall security posture., * Maintain robust email security solutions to protect against phishing, malware, and other threats.
- Lead incident response activities, including identification, investigation, containment, and remediation of security incidents.
- Analyse and triage security alerts from multiple sources, assess impact, and take decisive action.
- Monitor network traffic, identify vulnerabilities, and apply appropriate security measures.
- Oversee vulnerability management processes, including scanning, risk assessment, and patch management.
- Conduct comprehensive audits of security controls, policies, and procedures; recommend and implement improvements.
- Manage mobile device security policies and configurations, ensuring compliance and protection of endpoints.
- Administer and optimise the security ticketing system to resolve issues efficiently and maintain accurate records.
- Continuously monitor security systems, logs, and events to detect and mitigate potential threats.
- Promote information security awareness through training, communication, and stakeholder engagement., We are a top 100 law firm committed to claimant-only cases, ensuring that individuals have the same access to justice as the UK Government and large corporations. We're not afraid to take on difficult and challenging cases involving medical negligence, serious personal injuries, discrimination in the workplace, defective products and human rights abuses in this country and overseas.
Requirements
- Proven experience in IT security, including email security, incident response, network security, vulnerability management, and mobile device management.
- Strong ability to triage alerts, conduct investigations, and provide actionable recommendations.
- Hands-on experience with security tools such as Mimecast, Egress, CrowdStrike, and Rapid7 (preferred).
- Solid understanding of firewalls, Active Directory, TCP/IP, and endpoint protection technologies.
- Familiarity with patch management and system hardening practices.
- Ability to work under pressure, prioritise tasks, and adapt to a dynamic environment.
- Excellent analytical and problem-solving skills with a proactive approach to threat mitigation.
- Strong communication and interpersonal skills for effective collaboration with stakeholders.
- Knowledge of security frameworks, best practices, and compliance requirements (e.g., GDPR, DPA, SRA).
- Relevant certifications such as CompTIA Security+, GCIH, CEH, or CISSP are highly desirable.
Why join us?
If you are proactive, driven, and passionate about IT security, we invite you to apply for this exciting opportunity. Join our team and help us strengthen and maintain a secure environment for the firm.
Benefits & conditions
Our comprehensive benefits package includes:
- Hybrid working (typically 2 days from home for a full time worker)
- 29 days annual leave (excluding public holidays)
- Enhanced pension contributions
- Life assurance 4 x salary
- Healthcare cash plan
- Cycle to Work scheme
- Discounted gym membership
- Enhanced maternity & paternity pay
- Free breakfasts & lunches daily
- Electric car scheme
- BUPA private health insurance