Posted 25 days ago
Description
Join us as a Controls Security Analyst
- This is an opportunity for a driven analyst to take on an exciting new career challenge
- You'll be able to build and maintain a wide network of stakeholders of varying degrees of seniority
- It's a chance to have a tangible effect on our function, put your existing skills to the test and advance your career
What you'll do
As a Controls Security Analyst, you'll play a proactive role in anticipating and identifying security events, incidents and trends that could adversely impact the bank, our customers, employees or assets.
You’ll be collaborating with internal and external colleagues, auditors, specialists and stakeholders to identify control gaps, evaluate risks, support compliance activities, and track remediation actions. In addition you'll ensure activities relating to incident response, user access, alert monitoring, root cause analysis and scenario planning are completed in line with standard operating procedures and to a high standard.
You’ll also:
- Providing end to end security response, including triage, response, escalation, and coordination of events and incidents
- Making sure decisions made are based on robust data, return on investment and value measures that demonstrate thoughtful and intelligent cost management
- Encouraging the identification of ideas and driving the delivery of initiatives that will reduce cost and simplify the bank
- Building and leveraging relationships with colleagues across the bank, and with third parties, to make sure decisions made are commercially focused and create long term value for the organisation
- Support internal and external audit requests for information and evidence and prepare audit evidence
The skills you'll need
To succeed in this role, you'll need a mix of security, risk, compliance and communication skills, along with a strong understanding of cybersecurity, technology risk management, and control assurance. You should be familiar with security frameworks such as ISO 27001, NIST, and CIS Controls, as well as principles of identity and access management, vulnerability management, and cloud security, along with proven experience with cloud platforms such as Microsoft Azure or AWS.
You’ll also require strong analytical skills, attention to detail, and the ability to assess risks and interpret control effectiveness. You’ll need the ability to translate complex technical concepts in a simplified and concise manner to your peers and management level colleagues.
Additionally, you need:
- A proactive mindset, analytical skills and strong problem-solving ability and experience leading projects or managing remediation activities
- Knowledge of governance, risk, and compliance (GRC) tools, and familiarity with regulatory requirements such as GDPR can also be valuable
- An understanding of banking security controls
- A good understanding of Agile Methodologies with experience of working in an Agile team
- Incident management and security controls experience
- Ability to work under pressure and to tight deadline on occasions
- Excellent communication and stakeholder management skills, as you'll regularly engage with technical teams, business stakeholders, and auditors to explain findings and drive improvements
Hours 35
Job Posting Closing Date: 19/08/2026
Ways of Working: Hybrid
#J-18808-Ljbffr