
Information Security Analyst
- London
- Permanent
- Full-time
- Securely manage M365 & Azure resources, implementing comprehensive security policies and initiatives.
- Implement security measures and controls for EUC environments, including endpoint security, access controls, and device management.
- Conduct and oversee regular vulnerability assessments on systems, networks, and applications.
- Identify, analyse, and prioritise vulnerabilities based on risk and potential impact and utilise threat intelligence analysis to determine the risk posed by identified vulnerabilities.
- Collaborate with the IT MSP to develop and implement remediation plans, drive remediation efforts and identify improvements in the vulnerability management program.
- Monitor and track the status of identified vulnerabilities and ensure timely resolution.
- Stay up to date with the latest security threats, vulnerabilities, and mitigation techniques.
- Prepare detailed reports and documentation of findings, including risk assessments and recommendations.
- Contribute to the maintenance of security policies, procedures, and standards.
- Report on patch compliance and vulnerability remediation as a part of our vulnerability management program.
- Leverage Microsoft Defender EDR/XDR and other security tools to monitor, analyse, and respond to security threats.
- Investigate suspicious activity and determine if incidents have occurred.
- Contain and mitigate security incidents to prevent further impact.
- Contribute to the maintenance of incident response strategies, policies and plans.
- Analyse incidents to identify root causes and recommend corrective and preventive measures.
- Develop and maintain incident response playbooks and processes.
- Develop, implement, and optimise security automation processes to improve detection, response, and mitigation efforts
- Ensure security configurations align with compliance frameworks such as ISO 27001, Cyber Essentials Plus, and regulatory requirements
- Degree or postgraduate degree in Computer Science, Cybersecurity, Information Technology, or equivalent industry experience.
- Proven experience with M365 security solutions.
- Proven experience in system configuration and hardening.
- Strong understanding of security best practices.
- Ability to collect, analyse, and interpret data to make informed decisions. This includes critical thinking, logical reasoning, and data analysis.
- Clear and effective communication with stakeholders, development teams, and other cross functional teams to articulate goals.
- Exceptional analytical and problem-solving abilities.
- Excellent verbal, written and interpersonal skills and ability to articulate information.
- Consistency and attention to detail in all written work.
- Relationship building and ability to manage and engage with stakeholders, ensuring alignment on product goals and expectations.
- Flexible and collaborative mindset with ability to manage multiple priorities.
- Ability to work well in a team as well as independently.
- Right to live and work in the UK and able to travel, when required, to centres.
- Experience of Microsoft Sentinel
- Knowledge of Cyber Essentials, Cyber Essentials Plus and/or ISO 27001
- 25 days annual leave (based on fulltime hours) PLUS bank holidays
- Equipment provided for homeworking
- Flexible-working positive employer with a range of family-friendly policies
- Employee Assistance Programme: 24-hour confidential access to counselling and support services
- Competitive Pension
- Private Medical Insurance
- Training and development opportunities
- Long term career prospects in a growing company
- Employee perks including a range of discounts to suit your lifestyle
We are sorry but this recruiter does not accept applications from abroad.