Controls Security Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
- This is an opportunity for a driven analyst to take on an exciting new career challenge
- You’ll be able to build and maintain a wide network of stakeholders of varying degrees of seniority
- It’s a chance to have a tangible effect on our function, put your existing skills to the test and advance your career
What you’ll do
As a Controls Security Analyst, you’ll play a proactive role in anticipating and identifying security events, incidents and trends that could adversely impact the bank, our customers, employees or assets.
You’ll be collaborating with internal and external colleagues, auditors, specialists and stakeholders to identify control gaps, evaluate risks, support compliance activities, and track remediation actions. In addition you’ll ensure activities relating to incident response, user access, alert monitoring, root cause analysis and scenario planning are completed in line with standard operating procedures and to a high standard.
You’ll also:
- Providing end to end security response, including triage, response, escalation, and coordination of events and incidents
- Making sure decisions made are based on robust data, return on investment and value measures that demonstrate thoughtful and intelligent cost management
- Encouraging the identification of ideas and driving the delivery of initiatives that will reduce cost and simplify the bank
- Building and leveraging relationships with colleagues across the bank, and with third parties, to make sure decisions made are commercially focused and create long term value for the organisation
- Support internal and external audit requests for information and evidence and prepare audit evidence
Requirements
To succeed in this role, you’ll need a mix of security, risk, compliance and communication skills, along with a strong understanding of cybersecurity, technology risk management, and control assurance. You should be familiar with security frameworks such as ISO 27001, NIST, and CIS Controls, as well as principles of identity and access management, vulnerability management, and cloud security, along with proven experience with cloud platforms such as Microsoft Azure or AWS.
You’ll also require strong analytical skills, attention to detail, and the ability to assess risks and interpret control effectiveness. You’ll need the ability to translate complex technical concepts in a simplified and concise manner to your peers and management level colleagues.
Additionally, you need:
- A proactive mindset, analytical skills and strong problem-solving ability and experience leading projects or managing remediation activities
- Knowledge of governance, risk, and compliance (GRC) tools, and familiarity with regulatory requirements such as GDPR can also be valuable
- An understanding of banking security controls
- A good understanding of Agile Methodologies with experience of working in an Agile team
- Incident management and security controls experience
- Ability to work under pressure and to tight deadline on occasions
- Excellent communication and stakeholder management skills, as you’ll regularly engage with technical teams, business stakeholders, and auditors to explain findings and drive improvements
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
What Are The Top Skills Required For Azure Developers?
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
9 Ways to Make Money Hacking
Understanding and Mitigating Common Web Vulnerabilities