Cyber Security Analyst

Job Bank
Greater London, UK
6 days ago
Apply on www.collegerecruiter.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
Chinese

Tech stack

Software Applications Software System Penetration Testing Cyber Security Local Security Policy Security Information and Event Management Information Technology Vulnerability Analysis

Job description

IT Centre Europe (ITCE) oversees and manages the secure operations of IT applications and front-end systems used in all Bank of China (BOC) branches and representative offices located within Europe and Africa. The IT Risk and Compliance team within ITCE is primarily responsible for managing IT risks and compliance within the ITCE and EMEA institutions. As a Cyber Security Analyst, you will be responsible for managing daily security operations, including continuous threat monitoring, analysis and incident response. You will conduct risk assessments to identify potential security threats, discover vulnerabilities and weaknesses in security controls, and support the continuous improvement of security controls. You will also manage local security tools and promote new tools that strengthen the Bank’s cyber security. This is a full time permanent position., * Manage and operate local security devices, systems and tools in accordance with department’s policies and requirements

  • Coordinate and deliver the implementation of new security tools across the ITCE and EMEA regions
  • Conduct weekday threat monitoring shifts and participate in an on-call rota covering out-of-hours, weekends, and public holidays as and when required. Monitor, analyse, investigate, and respond to security threats and incidents, performing containment activities where required to minimise risk and support effective incident resolution
  • Participate in the security incident response process in ITCE and EMEA branches, and provide support to EMEA branches during incident response period
  • Monitor the Head Office intelligence platform, import Indicators of Compromise (IOCs) into local security tools and support EMEA branches in importing IOCs into their local security tools
  • Support the asset management process, including asset discovery, identification, registration, inventory management, and containment activities
  • Provide security training to end users
  • Prepare security operations MI data and reports for the security tools and domains
  • Organise security testing for ITCE’s infrastructure, perform security testing for EMEA branches and analyse the test findings
  • Perform vulnerability assessments and scanning activities across ITCE and EMEA branches
  • Develop cybersecurity emergency scenarios and assist to organise cybersecurity rehearsals

Requirements

  • Degree educated in Computer Science, Cybersecurity, or other relevant subject
  • Solid experience in cybersecurity operations and/or penetration testing
  • Hands-on experience with SIEM tools
  • Knowledge of IT regulations in the UK and EU
  • Knowledge of risk management, security and assurance and international standards
  • Knowledge of cybersecurity, network and wider information technology
  • Knowledge of vulnerability scanning tools
  • Excellent communication skills
  • Fluency in Mandarin is preferred
  • Team player
  • Excellent analytical and problem solving abilities
  • Attention to detail
  • Highly organised

Benefits & conditions

  • Private Healthcare
  • Pension
  • Employee Assistance Programme
  • Complimentary Lunch
  • Cycle to work scheme
  • Retail Discounts

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.collegerecruiter.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:57 min

Defining the modern application software supply chain

Niels Tanis Niels Tanis · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:41 min

Identifying Log4j vulnerabilities across internal network software applications

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2024

Videos

See all

Related articles

See all