Information Security Operations Analyst
This is a new role for nest and will report to the Senior IT Service Operations Manager.Nest operates a three lines of defence approach to information security with the second and third lines delivered by an internal information security team and external auditors respectively. This role covers the first line of defence, of which a large part is outsourced.Currently management of the 3rd party contract provisions related to security, together with various internal control responsibilities are covered by other members of the team for whom this is not a specialism. This role will take on those responsibilities, bringing more specialist experience and knowledge. You will help to develop and improve our information security controls as we seek to improve our infosec maturity using the NIST framework as an externally assessed benchmark.This first line role combines a contract management aspect with the requirement for hands-on process operation for internally managed controls such as access reviews, and some investigations such as subject access requests or insider threats.This role will support the ‘cyber security’ theme within the Corporate Technology IT Strategy 2030.The minimum criteria for this role are:
- Practical experience of operating information security controls under a certified ISMS using ISO 27001/12, NIST, CSF or other security standards.
- Practical experience working with third party suppliers in evidencing their compliance with security policies, standards and controls to internal and external auditors.
- Understanding and experience of various Information Security domains including Security Architecture, Information Security Governance, Network Security, Data Protection, Risk Management, Identity & Access Management, Vulnerability Management, Anti-Malware, Mobile Device Management and Cloud Security.
- Experience of working within Financial Services, whilst beneficial, is not essential.
- hybrid of office (Canary Wharf, London) and home working (there will be an expectation to attend the office, once - twice a week, or more, as required)
- reduce or vary working hours
- reduce or vary the days worked
- work compressed hours
- job share
- Set IT strategy and architecture in order to ensure that we all have the IT tools to do our jobs.
- Make sure that we have an infrastructure that is fit for the future.The IT Service Operations Team in which this role sits is responsible for:
- Overseeing the relationship with our outsourced IT service provider and other suppliers.
- Introducing new services.
- Ensuring value for members’ money
- First line security.The Business Applications and Solutions section of the IT Team supports the organisation to:
- Better organise and manage its files and other data.
- Manage and automate its processes with the deployment and configuration of effective applications and solutions, including development of low and no-code solutions and with AI.
- Help select, onboard and administer various 3rd party applications such as CRM and Finance systems.
- Company
- NEST Corporation
- Location
- London, South East, England, United Kingdom
Hybrid / WFH Options - Employment Type
- Full-Time
- Salary
- £65,000 - £75,000 per annum
- Posted
- Company
- NEST Corporation
- Location
- London, South East, England, United Kingdom
Hybrid / WFH Options - Employment Type
- Full-Time
- Salary
- £65,000 - £75,000 per annum
- Posted