The Information Security Analyst is responsible for supporting and strengthening the Company’s information security strategy, operations, compliance, risk management and security monitoring.
The Information Security Analyst is responsible for driving security-related tasks across IT operations and working with various departments to ensure adherence to information security best practices, mitigate security risks and continuously improve the Company’s information security culture and posture. Key responsibilities include: • Championing all aspects of information security strategy and operations across the Company. • Maintaining organisational readiness and compliance with ISO 27001. • Driving information security initiatives, including security awareness and training. • Planning and performing vulnerability testing using industry-standard security tools, including automated and manual security assessments. • Creating and maintaining information security policies, procedures and guidelines. • Conducting and supporting information security audits. • Performing regular internal reviews of access rights and maintaining detailed permissions records. • Ensuring IT risk assessments remain up to date and carrying out continual risk monitoring. • Managing security monitoring of the IT infrastructure. • Handling day-to-day security alerting and reporting related to endpoint management and ensuring appropriate actions are undertaken. • Monitoring threats through various security feeds. Requirements: • 3+ years of experience in a similar information security role. • Knowledge of standards such as ISO 27001, PCI DSS or ITIL. • Bachelor’s degree in Information Technology, Computer Science or a related field. • CEH, Security+ or similar certification is an advantage. • Strong interest in ethical hacking and attack techniques. • Proven knowledge of Windows and Linux environments.
If multiple Education and Language Profiles are defined, please note that you must fit at least one of them, but not necessarily all.