Full Time, Permanent
Closing Date: Monday 12th August
As a Security Operations Analyst working within our IT Governance team, you'll use your expertise and be responsible for the ongoing analysis and management of Information Security risks.
You'll be responsible for Cyber Security operations, ensuring controls and prevention measures are sustained, via the Information Security Management System (ISMS), as part of the Three Lines of Defence model. You will also own the Privileged Access Management Assignment Process and be responsible for second line review of CyberArk and promotion of Privilege Access Management topics.
Do you have good knowledge in these topics, or a background in Information Security?
Are you looking for a new challenge for your excellent analytical and problem-solving skills?
If so, we'd love to hear from you!
Here's a bit more about what your day might look like:
- Maintain and improve Information Security and Cyber-monitoring activities to actively seek indicators of compromise and stop unauthorised access
- Manage, monitor and continuously improve privilege access management controls in close collaboration with Identity and Access Management colleagues
- Own and report on CyberArk safe inventory compliance and appropriate utilisation in accordance with internal policy.
- Monitor the ongoing security of VWFS using specialist tools and techniques to identify indicators of compromise and threats to confidentiality, integrity and availability of IT Systems
- Support Cyber incident response and decide on appropriate intervention and escalations with the Security Operations Lead. Similarly, arrange additional forensic support as required and contribute to investigation efforts to determine root cause and further actions
- Plan and conduct Security Assessments using internal tools and third party expertise (e.g. Cyber assessment), to identify security threats to the business and then propose and agree further action.
- Operate programme penetration testing activities, in conjunction with third parties and internal IT teams to proactively simulate cyber-attacks and expose vulnerabilities before exploited
- Support cyber threat remediation activities e.g. re-design, patching, system upgrade and configuration changes
- Contribute appropriate KRI/KPI to routine reporting to ensure transparency and enable effective management of Information Security
- Share team responsibility for maintaining and implementing Information Security and IT Risk policies in accordance with global standards, local needs and leading practice
- Support the development of the Information Security Management System by recommending enhancements and best practice to the Security Operations Lead.
- Conduct regular training for employees in security awareness, policy and processes.
This is how you can add value:
- Technical knowledge - a good general knowledge of IT security topics is essential E.g. privileged access management, penetration and vulnerability testing, anti-virus and anti-malware, computer networking, firewall and intrusion detection/prevention, Windows, UNIX and Linux operating systems, Security Information and Event Management (SIEM).
- A background in Information Security, GRC or IT operations is essential
- Experience with CyberArk or similar solutions is desirable
- Excellent analytical skills and structured thinking, e.g. to enable investigation of irregularities to determine if security has been compromised.
- Organised, structured and methodical in approach.
- Self-reliant and able to work unsupervised.
- Good problem-solver who has the ability to uncover and fix flaws in computer systems and networks.
- Creative thinker to innovate and create new ways to protect our data.
- Ability to communicate at all levels and interact with technical and non-technical audiences
- Ability to cope under pressure and meet strict deadlines
- A completer finisher, with excellent attention to detail.
So why join us?
We're offering a salary from £34,037 subject to experience. On top of that you'll also receive an excellent benefits package including tax efficient company car from day one, the potential for an annual discretionary bonus and salary review, 27 days holiday with the option to purchase more, access to various health & wellbeing services, private medical insurance after 6 months as well as career progression, professional development and access to LinkedIn Learning.
About Volkswagen Financial Services
Our mission is straight forward, we want to be 'The Key to Mobility'. What does that mean? To make getting from A-to-B as easy and simple for as many people as possible. To truly meet the mobility needs of people in a changing world, our offering goes beyond traditional vehicle financing. We do this by providing a range of finance and aftersales products on Volkswagen Group vehicles, as well as developing innovative mobility products designed to solve real problems and support our customers.
Volkswagen Financial Services is committed to being an inclusive employer and we welcome applications from everyone. Diversity and Inclusion is not just a statement for us and we are nurturing an environment where everyone can be their 100% self. If there is anything we can do to support you being your 100% self during our recruitment process, please let us know and we will support you as best we can.