What Jobs are available for Incident Response in London?
Showing 95 Incident Response jobs in London
Associate Director, Digital Forensics and Incident Response
Posted 16 days ago
Job Viewed
Job Description
We now have an exciting opportunity for an Associate Director to join our Digital Forensics and Incident Response (DFIR) team in London. As the senior member of the EMEA DFIR team with deep digital forensic experience, you will be integral to the wider EMEA practice, and in turn part of a global practice offering and influencing the direction of our forensic technology and digital forensics incident response capability. The Discovery and Data Insights department is the hub of all technical consulting and you will provide digital forensics and incident response solutions for matters which involve cyber response investigations, digital forensic investigations, eDiscovery and data analytics. Our clients include law firms and Fortune 500 multi-nationals across the globe.
Day to day, you will be executing and managing matters that arise on short notice and there will be a need to deploy the team and support crises. As the technical lead for engagements, you will provide direction to empower the team and provide quality assured, highly responsive forensic incident management. A significant portion of the role will require you to engage across the business to leverage technology consulting into all business development and go-to-market strategy. You will be responsible for increasing the technical team’s visibility and capability in performing business development and supporting marketing initiatives, from thought leaders, white papers, technical demonstrations and collaborative meetings with our colleagues with clients. This role will play a key part in ensuring our ongoing growth and success across the region.
Responsibilities
- Manage and provide forensic incident response consultancy and expertise in scoping data estates, data collections, investigative analysis to our clients
- Support our teams in our adjacent divisions, notably Digital Risks, Investigations and Technology Consulting across regions
- To provide high quality deliverables to our clients in a timely and efficient manner
- To ensure work is defensible and to an evidential standard as appropriate for tasks
- To be innovative and creative showing initiative in bringing teams together
- To anticipate client needs and continually strive for ways to work efficiently
- To respond to potential enquiries and convert these into opportunities/sales leads and proposals
- To actively engage and lead in business development and marketing for all of Discovery and Data Insights and across services (particularly Cyber and Investigations/Forensic Accounting)
- Willingness and flexibility to travel internationally
Requirements
- Extensive professional and technology experience, preferably in digital forensics in a cyber context, forensic investigations, financial crime or compliance setting.
- Proven knowledge and technical computer forensics experience for cyber incident response and investigations. Thorough understanding of best practice procedures (MITRE ATT&CK framework, NPCC, NIST, SANS etc.) evidence handling, computer systems and tools of the trade
- Expert understanding of multiple operating systems, particularly Microsoft and Linux infrastructure and networking systems, both on-premise and in the cloud, as well as dedicated cloud services such as Microsoft 365/Azure, Google Workspace, AWS etc.
- Expertise in PowerShell scripting, Bash scripts, Python, SQL and data wrangling for log analysis
- Expertise with the industry standard forensic software tools such as X-Ways, EnCase, Nuix, Axiom, Cellebrite and forensic hardware tools.
- Expertise with open-source tools (such as Velociraptor) and leveraging commercial tools (such as X-Ways, EnCase and Nuix) for forensic use.
- Established track record for performing forensic collections, involvement in incident response and digital investigations alongside maintaining detailed contemporaneous notes
- Able to prepare written analyses, summary reports, presentations and other client deliverables for projects and work performed.
- Impeccable written and oral presentation skills to effectively communicate with diverse audiences of varying degrees of expertise.
- Proven experience at managing client expectations and providing relevant solutions through the project lifecycle.
- Identify relevant extensible opportunities such as post-breach/post remediation services.
- Demonstrable interpersonal skills and an ability to work effectively in teams
- Experience in creating project estimates, project plans, proposals and retention agreements.
- Proven ability to manage and develop a team of professionals through empowerment, coaching and motivation.
- Ability to work well under pressure and meet tight deadlines, while effectively juggling competing demands, prioritising appropriately, and overseeing multiple tasks simultaneously.
Preferred
- Wide understanding of programming/scripting skills
Benefits
- Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarised in the full job offer.
- We operate a discretionary global bonus scheme that incentivises, and rewards individuals based on company and individual performance.
- Control Risks supports hybrid working arrangements, wherever possible, that emphasise the value of in-person time together - in the office and with our clients - while continuing to support flexible and remote working.
- As an equal opportunities employer, we encourage suitably qualified applicants from a wide range of backgrounds to apply and join us and are fully committed to equal treatment, free from discrimination, of all candidates throughout our recruitment process.
Is this job a match or a miss?
Software Engineering Manager, Site Reliability, Cloud Incident Response
Posted 25 days ago
Job Viewed
Job Description
_corporate_fare_ Google _place_ London, UK
**Advanced**
Experience owning outcomes and decision making, solving ambiguous problems and influencing stakeholders; deep expertise in domain.
**Minimum qualifications:**
+ Bachelor's degree or equivalent practical experience.
+ 8 years of experience with software development in one or more programming languages (e.g., Python, C, C++, Java, JavaScript).
+ 3 years of experience in a technical leadership role; overseeing projects, with 2 years of experience in a people management, supervision/team leadership role.
+ Experience with cloud services, telemetry systems and incident response.
**Preferred qualifications:**
+ Master's degree or PhD in Computer Science, or a related technical field.
+ Experience as a cloud customer.
**About the job**
Site Reliability Engineering (SRE) combines software and systems engineering to build and run large-scale, massively distributed, fault-tolerant systems. SRE ensures that Google Cloud's services-both our internally critical and our externally-visible systems-have reliability, uptime appropriate to customer's needs and a fast rate of improvement. Additionally SRE's will keep an ever-watchful eye on our systems capacity and performance.
Much of our software development focuses on optimizing existing systems, building infrastructure and eliminating work through automation. On the SRE team, you'll have the opportunity to manage the complex challenges of scale which are unique to Google Cloud, while using your expertise in coding, algorithms, complexity analysis and large-scale system design. SRE's culture of intellectual curiosity, problem solving and openness is key to its success. Our organization brings together people with a wide variety of backgrounds, experiences and perspectives. We encourage them to collaborate, think big and take risks in a blame-free environment. We promote self-direction to work on meaningful projects, while we also strive to create an environment that provides the support and mentorship needed to learn and grow.
The Cloud Incident Response Team supports the responders, tooling, and outcomes for Google Cloud Platform (GCP) major incidents. The team collaborates across GCP products, customer facing teams, and a wide range of stakeholders, where you will help coordinate, mitigate, or resolve issues across all of GCP.
Google Cloud accelerates every organization's ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google's cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
**Responsibilities**
+ Participate in on-call rotation supporting Critical Incident Response for GCP.
+ Focus on high-quality customer outcomes and collaboration across GCP teams.
+ Create Incident Management at Google (IMAG) training and processes for the incident management lifecycle in partnership with Cloud SRE Tech Leads, and the Cloud Support leadership team.
+ Build systems and tooling to support the team, enhance visibility, improve issue detection, and facilitate communication with customers, stakeholders, and other customer-facing teams.
+ Define and escalate risks in Cloud, reduce incident probabilities.
Information collected and processed as part of your Google Careers profile, and any job applications you choose to submit is subject to Google'sApplicant and Candidate Privacy Policy (./privacy-policy) .
Google is proud to be an equal opportunity and affirmative action employer. We are committed to building a workforce that is representative of the users we serve, creating a culture of belonging, and providing an equal employment opportunity regardless of race, creed, color, religion, gender, sexual orientation, gender identity/expression, national origin, disability, age, genetic information, veteran status, marital status, pregnancy or related condition (including breastfeeding), expecting or parents-to-be, criminal histories consistent with legal requirements, or any other basis protected by law. See alsoGoogle's EEO Policy ( ,Know your rights: workplace discrimination is illegal ( ,Belonging at Google ( , andHow we hire ( .
If you have a need that requires accommodation, please let us know by completing ourAccommodations for Applicants form ( .
Google is a global company and, in order to facilitate efficient collaboration and communication globally, English proficiency is a requirement for all roles unless stated otherwise in the job posting.
To all recruitment agencies: Google does not accept agency resumes. Please do not forward resumes to our jobs alias, Google employees, or any other organization location. Google is not responsible for any fees related to unsolicited resumes.
Google is proud to be an equal opportunity workplace and is an affirmative action employer. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. See also and If you have a need that requires accommodation, please let us know by completing our Accommodations for Applicants form:
Is this job a match or a miss?
Security Analyst
Posted 5 days ago
Job Viewed
Job Description
Security Analyst
3 months - with extensions
London - hybrid
400 per day inside IR35 - Umbrella only
Active or lapsed SC Security Clearance required
The Role
As a Cyber Security Analyst in the Cyber Operations workstream, you will report to the Operational Cyber Security Architect and support BAU cyber activities across the organisation. You will play a key role in helping the department detect, respond to, and manage cyber threats, vulnerabilities, and operational risks.
You will work closely with technical teams, service owners, and delivery partners to ensure robust security controls are in place and actively monitored. The role is hands-on and well-suited to someone who is proactive, curious, and eager to go beyond the call of duty to protect the clients digital estate.
Responsibilities include but are not limited to:
- Coordinating and supporting cyber requests, using predefined playbooks and processes
- Supporting vulnerability identification, triage, and remediation, including follow-up with relevant technical teams.
- Monitoring and analysing alerts and logs from LogRhythm, CyberArk, Semperis and other security tools, but experience with other cyber tools would also suffice.
- Participating in the change management process to ensure proposed changes are reviewed for security risk.
- Contributing to penetration testing planning, coordination and tracking of remediation.
- Maintaining risk logs and status dashboards for security findings and control effectiveness.
- Supporting reviews of cloud and on-premises systems to validate secure configurations.
- Conducting general risk assessments of new applications or tools being used within the organisation.
- Experience in co-ordination of the requirements to meet ISO27001 & the Cyber Essentials+ certification.
- Administrative requirements of PAM tool. (CyberArk)
Experience
- Experience administrating PAM solutions, such as CyberArk - MANDATORY
- Working understanding of security operations, threat detection, and incident response.
- Experience using SIEM and security tooling for triage and log analysis.
- Experience tracking and managing vulnerabilities using industry frameworks.
- Familiarity with enterprise systems including Microsoft 365 and Azure AD.
- Experience working in a digital service or infrastructure team undergoing change.
- Experience engaging across teams to investigate issues and improve controls.
Technical
- Experience administrating PAM solutions, such as CyberArk.
- Hands-on experience with tools such as LogRhythm, Semperis.
- Understanding of NCSC cyber security principles and good practice.
- Familiarity with change and configuration management from a cyber perspective.
- Working knowledge of ISO 27001 or NIST standards.
- Relevant certifications (e.g., Security+, CySA+, CISMP) are desirable.
If you are interested, please apply at first instance!
Is this job a match or a miss?
IT Security Analyst
Posted 1 day ago
Job Viewed
Job Description
Salary - Up to £45,000 depending on experience
Please note: This is a remote role, however travel to our School sites may be required.
Those huge small victories
We are the highest Ofsted-rated provider in the country for special education and care. Our teams are fulfilled by the idea of making even the smallest positive changes in our young people, so we celebrate the little things.
For children with complex needs the level of care and education we provide must go above and beyond. That’s what drives us here at Witherslack Group. With our high staff-to-child ratio and in-house clinical teams, we’re proud to have a reputation for excellence and market leading OFSTED ratings.
Get out what you put in
We are looking for an IT Security Analyst to join our friendly, hardworking, dedicated team. As a IT Security Analyst you will monitor and investigate complex information and data to identify threats and vulnerabilities in IT systems and provide incident response.
You will assist with the creation, maintenance, and delivery of cyber security awareness training for colleagues. The IT security Analyst will maintain an information security risk register and assist with internal and external audits relating to information security.
What we do for you
We know you’re going to do great things. For your hard work and commitment, we reward you with the best salary and benefits package in the care sector. With us, you’ll get to make a genuine difference to the lives of our young people – plus you’ll get:
- Salary : Base salary of £5,000 - 5, 000 (dependant on experience)
- Training: Ongoing professional development.
- Holiday : You’ll work hard at WG, so you’ll be rewarded with 7 weeks’ holiday (including bank holidays)
- Flexible benefits package : meaning you can increase/decrease your holiday allowance, pension and life insurance
- Wellbeing: a host of wellbeing tools and advice including employee assistance
- Medical cover so you can claim back the cost of things like an opticians or dentist appointment and a host of high-street discounts
- Beautiful working environments with the very best facilities
Bring your whole-self to work
Here at Witherslack Group, we celebrate everyone’s differences as that’s what makes us the best at what we do. Our young people come from all walks of life, diverse backgrounds and with different needs – and our workforce reflects that diversity, so that our teams can engage, encourage and inspire our young people to be themselves. We’ll give you the chance to build an exciting career in a fast-growing organisation, where you’re free to achieve your potential. Here’s what we need from you;
- Minimum one years’ experience in an IT Security Analyst role
- Proven experience developing, operating and maintaining security systems
- Knowledge of security systems including anti-virus applications, content filtering, firewalls, authentication systems and intrusion detection and notification systems
- Extensive skills and knowledge of Azure and associated applications
- Critical thinking skills and ability to solve complex problems
- Hands on experience in security systems, including firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc
- Experience of multiple operating systems e.g., Windows, Linux
- Experience in building and maintaining security systems
It is also desirable but not essential that you have:
- Knowledge of security protocols and principles
- Experience of Data Security Protection Toolkit
- Experience of developing Standard Operating Procedures
- ITIL Foundation
- Post graduate qualification in IT related subject.
- Relevant professional qualifications
- Bachelor of Science in Computer Science or a related field
- Certified Information Systems Security Professional (CISSP)
For a full job description and person specification, please click here
To view our ex-offenders policy please click here .
Join the UK’s best special education and care provider
Our young people deserve the best possible future and we feel the same about our teams. You deserve to have the career you want, with a purpose-led employer, in an environment that allows you to be yourself .
The Witherslack Group is committed to safeguarding and promoting the welfare of its young people. This post is subject to an enhanced DBS check (we will cover the cost). We are an equal opportunities employer welcoming applications from all sections of the community.
#INDH
Is this job a match or a miss?
Senior Security Analyst
Posted 17 days ago
Job Viewed
Job Description
A career at Janus Henderson is more than a job, it's about investing in a brighter future together.
Our Mission at Janus Henderson is to help clients define and achieve superior financial outcomes through differentiated insights, disciplined investments, and world-class service. We will do this by protecting and growing our core business, amplifying our strengths and diversifying where we have the right.
Our Values are key to driving our success, and are at the heart of everything we do:
Clients Come First - Always | Execution Supersedes Intention | Together We Win | Diversity Improves Results | Truth Builds Trust
If our mission, values, and purpose align with your own, we would love to hear from you!
Your opportunity
+ Lead the identification, assessment, and remediation of vulnerabilities across applications, infrastructure, and cloud environments, collaborating with development and operations teams for effective solutions.
+ Optimise vulnerability scanning profiles, dashboards, and reports to ensure comprehensive coverage and actionable insights, while analysing data to prioritise risks and provide clear remediation guidance.
+ Contribute to the continuous improvement of vulnerability management processes, policies, and procedures, including supporting incident response activities and aligning with industry best practices.
+ Identify potential security risks and document clear, actionable remediation options or mitigating controls aligned with industry best practices.
+ Contribute to other cybersecurity initiatives, utilizing our standards and procedures while adhering to industry best practices.
+ Perform risk assessments and execute system tests to ensure proper functioning of data processing activities and security measures.
+ Ensure that security controls in both new and existing computer systems comply with established security policies and guidelines.
+ Assist in incorporating regulatory compliance requirements, such as SOX and GLBA, into the organization's security roadmap.
+ Conduct thorough security incident investigations, including maintaining chain of custody, implementing containment measures, performing root cause analysis, and identifying preventive strategies.
+ Supporting incident response with vulnerability intelligence during security events.
+ Participate in the Information Security on-call rotation
What to expect when you join our firm
+ Hybrid working and reasonable accommodations
+ Generous Holiday policies
+ Excellent Health and Wellbeing benefits including corporate membership to ClassPass
+ Paid volunteer time to step away from your desk and into the community
+ Support to grow through professional development courses, tuition/qualification reimbursement and more
+ All-inclusive approach to Diversity, Equity and Inclusion
+ Maternal/paternal leave benefits and family services
+ Complimentary subscription to Headspace - the mindfulness app
+ All employee events including networking opportunities and social activities
+ Lunch allowance for use within our subsidized onsite canteen
Must have skills
+ 3+ years in an Information Security role with proven experience in Vulnerability Management
+ Proven hands-on experience with vulnerability management platforms and in a vulnerability management role
+ Experience in information security incident response
+ Knowledge of vulnerability management (remediation and configuration) and other security scanner tools.
+ Strong understanding of vulnerability assessment methodologies and risk scoring
+ Strong collaboration skills working with application and infrastructure teams within a security context
+ In-depth working knowledge of security best practices and frameworks (e.g., MITRE ATT&CK, OWASP Top 10, NIST)
+ Excellent verbal and written communication skills
+ Ability to manage multiple projects and tasks.
+ Analytical ability to capture and summarise information, find solutions to various tactical and strategic problems and prioritise work
+ Exposure to public cloud infrastructure (SaaS, IaaS, and PaaS)
+ Familiarity with patch management processes and tools
Nice to have skills
+ 5+ years of experience within Incident Response and Vulnerability Management
+ Knowledge of Tenable.sc and/or Tenable.io
+ Knowledge of cloud security vulnerabilities and associated scanning techniques
+ Experience with scripting or automation to enhance vulnerability management processes (e.g. Python) and to drive efficiency and innovation
+ Relevant Information Security certifications (e.g. CompTIA Security+, CySA+, CEH, SANS, Cloud Certifications).
Supervisory responsibilities
+ No
Potential for growth
+ Mentoring
+ Leadership development programs
+ Regular training
+ Career development services
+ Continuing education courses
You will be expected to understand the regulatory obligations of the firm, and abide by the regulated entity requirements and JHI policies applicable for your role.
At Janus Henderson Investors we're committed to an inclusive and supportive environment. We believe diversity improves results and we welcome applications from all backgrounds. Don't worry if you don't think you tick every box, we still want to hear from you! We understand everyone has different commitments and while we can't accommodate every flexible working request we're happy to be asked about work flexibility and our hybrid working environment. If you need any reasonable accommodations during our recruitment process, please get in touch and let us know at
#LI-LN2 #LI-HYBRID
Janus Henderson (including its subsidiaries) will not maintain existing or sponsor new industry registrations or licenses where not supported by an employee's job functions (as determined by Janus Henderson at its sole discretion).
All applicants must be willing to comply with the provisions of Janus Henderson Investment Advisory Code of Ethics related to personal securities activities and other disclosure and certification requirements, including past political contributions and political activities. Applicants' past political contributions or activity may impact applicants' eligibility for this position. Janus Henderson is an equal opportunity /Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. All applications are subject to background checks.
Is this job a match or a miss?
Blockchain Security Analyst
Posted today
Job Viewed
Job Description
Key responsibilities include:
- Conducting comprehensive security assessments and penetration testing of blockchain networks, protocols, and decentralized applications (dApps).
- Auditing smart contract code for vulnerabilities, logic flaws, and potential exploits, ensuring code integrity and security.
- Developing and implementing security best practices for blockchain development and operations.
- Monitoring blockchain networks for suspicious activity, anomalies, and potential security breaches.
- Investigating security incidents, conducting forensic analysis, and providing detailed incident response reports.
- Staying ahead of emerging threats, vulnerabilities, and attack vectors in the blockchain and cryptocurrency landscape.
- Collaborating with development teams to integrate security principles into the entire development lifecycle.
- Researching and evaluating new security tools and technologies relevant to blockchain security.
- Contributing to the development of security policies and procedures.
- Educating internal teams on blockchain security risks and mitigation strategies.
The ideal candidate will possess a Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related technical field. A minimum of 5 years of experience in cybersecurity, with at least 2 years specifically focused on blockchain security, smart contract auditing, or cryptocurrency security is required. Deep understanding of blockchain technology, including consensus mechanisms, cryptography, and smart contract languages (e.g., Solidity, Vyper), is essential. Proven experience with security analysis tools and techniques, vulnerability assessment, and penetration testing is crucial. Familiarity with common smart contract vulnerabilities and exploit patterns is mandatory. Excellent analytical and problem-solving skills, along with strong communication abilities for detailed reporting, are necessary. Experience with incident response and digital forensics is a plus. This is an exciting opportunity to contribute to the security of cutting-edge blockchain technology from a remote setting.
Is this job a match or a miss?
Blockchain Security Analyst
Posted 2 days ago
Job Viewed
Job Description
Responsibilities:
- Perform comprehensive security assessments of blockchain platforms, smart contracts, and decentralized applications (dApps).
- Conduct code reviews and static/dynamic analysis of smart contracts written in languages such as Solidity.
- Identify and exploit potential security vulnerabilities, including reentrancy, integer overflows, and logic errors.
- Develop and implement security testing frameworks and methodologies.
- Monitor blockchain networks for suspicious activities and potential threats.
- Investigate security incidents, perform root cause analysis, and recommend remediation steps.
- Stay abreast of the latest security threats, vulnerabilities, and best practices in the blockchain and cryptocurrency domain.
- Collaborate with development teams to ensure security is integrated into the entire development lifecycle.
- Provide expert advice on blockchain security best practices and compliance.
- Document findings, create detailed reports, and present them to stakeholders.
- Proven experience in cybersecurity, with a specialization in blockchain security.
- Deep understanding of blockchain technology, consensus mechanisms, and cryptographic principles.
- Proficiency in smart contract development and auditing, particularly in Solidity.
- Experience with security analysis tools for blockchain platforms (e.g., Mythril, Slither, Securify).
- Strong knowledge of common smart contract vulnerabilities and attack vectors.
- Familiarity with penetration testing methodologies and tools.
- Excellent analytical and problem-solving skills.
- Ability to work independently and manage time effectively in a remote setting.
- Strong written and verbal communication skills.
- Relevant certifications (e.g., Certified Blockchain Security Professional) are a plus.
Is this job a match or a miss?
Be The First To Know
About the latest Incident response Jobs in London !
Blockchain Security Analyst
Posted 2 days ago
Job Viewed
Job Description
Key Responsibilities:
- Conduct comprehensive security audits and code reviews of smart contracts, blockchain protocols, and related infrastructure.
- Perform penetration testing and vulnerability assessments on distributed ledger technologies.
- Develop and implement security best practices for blockchain development and deployment.
- Monitor blockchain networks for suspicious activities and potential security threats.
- Investigate and respond to security incidents, providing detailed post-mortem analysis and recommendations.
- Stay abreast of the latest trends, vulnerabilities, and advancements in blockchain security and cryptography.
- Collaborate with engineering and product teams to integrate security measures throughout the development lifecycle.
- Develop and maintain security documentation, policies, and procedures.
- Contribute to the design and architecture of secure blockchain solutions.
- Educate and advise development teams on secure coding practices for smart contracts and dApps.
Qualifications:
- Proven experience in cybersecurity, with a strong focus on blockchain technology and cryptography.
- Deep understanding of various blockchain platforms (e.g., Ethereum, Bitcoin, Solana) and their security implications.
- Proficiency in smart contract languages (e.g., Solidity, Rust) and experience auditing them.
- Experience with security analysis tools, penetration testing methodologies, and vulnerability assessment frameworks.
- Familiarity with common blockchain vulnerabilities (e.g., reentrancy attacks, integer overflows) and mitigation techniques.
- Excellent analytical and problem-solving skills, with the ability to think critically and strategically.
- Strong communication and interpersonal skills, with the ability to explain complex technical concepts to both technical and non-technical audiences.
- Bachelor's or Master's degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
- Relevant security certifications (e.g., CISSP, CEH) are a plus.
Is this job a match or a miss?
Information Security Analyst
Posted 24 days ago
Job Viewed
Job Description
We are Vitesse – the treasury and payment partner of choice for insurance.
Formed in 2014 by a team of proven FinTech entrepreneurs, we are an FCA-regulated business providing global claim funds management and payment solutions. Operating one of the largest banking and payment settlement networks in the world, we give our customers direct access to 200 countries and currencies. Through a single integration, insurers can use this network to pay claims in as fast as 45 seconds and deliver a superior claimant experience. Our market-leading treasury proposition provides insurers with transparency and control over their claim funds, even when delegated to third parties, allowing them to have their money in the right place, at the right time, to make that all-important payment when customers need it most.
With over 260 employees across our London headquarters, Europe, and the US, $93m Series C funding secured, and exceeding £15bn in processed transactions, we are only just getting started.
We are collaborative, customer centric and work with integrity, whilst partnering with some of the biggest insurance leaders including Lloyd's of London and Many Pets. We take huge pride in our company culture, ensuring that everyone has a part to play, an opportunity to be heard, be involved, and the ability to make a real difference. As we continue to scale up, we want like-minded humans to join us on this exciting journey.
Are you ready?
Your Mission:
We are seeking a skilled and motivated Information Security Analyst to join our team, reporting into the CISO. You will play a crucial role in safeguarding our organisations digital assets and infrastructure from cyber threats. You will be responsible for analysing security measures, identifying vulnerabilities, and help implement effective solutions to mitigate risks.
This role has a requirement for the jobholder to be part of an out of hours call-out rota, which will usually be 1 in 4 or 5 weeks, in addition to being available for short-term assignments in the US to support our North American business.
The role will require at least 2 days onsite in our London office.
The ideal candidate will have a strong understanding of information security principles, excellent analytical skills, and the ability to adapt to evolving threats in the cybersecurity landscape.
Your Responsibilities:
Governance: Risk / Compliance / Assurance:
- Monitor security systems including intrusion detection, firewalls, and SIEM. Collaborate with our external SOC to detect and respond to security incidents in a timely manner.
- Participate in incident response activities, including incident triage, containment, eradication, and recovery efforts.
- Conduct thorough investigations of security incidents and provide detailed reports on findings and recommendations for remediation.
- Help contribute to regular security assessments and audits to identify vulnerabilities and weaknesses in systems, networks, devices, and applications.
- Serve as a subject matter expert on security-related matters, providing guidance and support to other teams and departments as needed, and as reported through the help desk system.
- Collaborate with IT teams and other stakeholders, contributing to the design and implementation of security controls and measures to protect against cyber threats.
- Stay up to date with the latest security trends, technologies, and best practices, and provide recommendations for continuous improvement.
- Assist with the management of security awareness training and workshops for employees to educate them about security risks and best practices for maintaining a secure work environment.
- Participate in the development and maintenance of disaster recovery plans to ensure the organisation's ability to respond to and recover from security incidents.
- Collaborate with internal teams during due diligence exercises to ensure that key security controls are documented as part of each submission.
Requirements
- Certifications such as CISSP, CISM, or CompTIA Security+, certifications are highly desirable.
- Proven experience working in information security, with a good understanding of security principles, protocols, and technologies.
- Experience with information security standards including ISO 27001, NIST and Cyber Essentials.
- Experience with security assessment tools and techniques, including vulnerability scanning and penetration testing.
- Good understanding of Microsoft Azure, Office 365 and Microsoft E5 security tooling.
- Strong analytical and problem-solving skills, with the ability to analyse complex systems and identify security risks and vulnerabilities.
- Excellent communication and interpersonal skills, with the ability to effectively convey technical information to non-technical stakeholders.
- Ability to work independently and collaboratively in a fast-paced environment, with a strong sense of accountability and attention to detail.
- Sound judgment and decision-making abilities, especially in high-pressure situations requiring quick and accurate assessments.
- High ethical standards and a commitment to maintaining confidentiality.
Benefits
- 25 days Holiday per year (increasing by 1 day per years' service, up to 30 days) + Bank Holidays
- Hybrid working arrangements – minimum 2 days in the office, Tuesday - Thursday
- Contributory pension scheme
- Enhanced Parental leave
- Cycle to Work Scheme
- Private Medical Insurance with AXA
- Unlimited access to therapy sessions through our partner, Oliva
- Discounted Gym membership through Gympass
- Financial Coaching with Octopus Wealth
- 2 days of volunteering leave per year
- Sabbatical after 5 years’ service
- Life Assurance - MetLife (UK employees only)
- Ongoing Learning and Development to support you reach your career goals
We are Vitesse – the payment provider of choice for the insurance and treasury industry.
Formed in 2014 by a team of proven FinTech entrepreneurs, we are an FCA regulated payments business that is driven to be the payment partner of choice for the insurance market, by providing global payment services and treasury optimisation. Operating one of the largest domestic banking and payment settlement networks in the world, we give our customers direct access to more than 170 countries and territories, covering over 110 currencies. Through a single integration, insurers can use this network to pay claims in as fast as 45 seconds, delivering a better customer experience to their claimants. Our market-leading treasury optimisation service brings complete control and transparency to insurers and allows them to have their money in the right place, at the right time, to make that all important payment - fast, and when their customers need it most.
With now over 160 employees across Europe and our London headquarters, $26m series B funding in 2022 in the bag and approaching £8bn in processed transactions, we are only just getting started.
We are collaborative, customer centric and work with integrity, whilst partnering with some of the biggest insurance leaders including Lloyd’s of London and Many Pets. We take huge pride in our company culture, ensuring that everyone has a part to play, an opportunity to be heard, be involved, and the ability to make a real difference.
As we continue to scale up, we want like-minded humans to join us on this exciting journey. Are you ready?
Vitesse at our best – our values
The Vitesse values are a true reflection of what it takes to thrive in our business, so it’s important to us that any employee who joins our business is aligned with these 3 attributes
Confident Humility
We don’t do ego and we know that unless we all win, none of us win. We admit when we’re wrong, ask for help and always think about the wider business before ourselves.
Driven to Succeed
We see the opportunity ahead of us and we won’t stop until we fulfil the potential we know we have. We hold ourselves to high standards and deliver high quality outcomes for Vitesse and our customers.
Tenacious Responsibility
We take ownership for our actions and decisions, and face into the challenges that come our way. We are committed to seeing things through to completion, even in the face of adversity.
We are an Equal Opportunity Employer We are committed to creating an inclusive environment that enables everyone to perform at their best, where we recognise the rights of all individuals to mutual respect and where there is an unbiased acceptance of others. Our policies and practices aim to promote an environment that is free from all forms of Unfair discrimination and values the diversity of all people. At the heart of our policy, we seek to treat people fairly and with dignity and respect.
Is this job a match or a miss?
Security Analyst (Network & Support)
Posted 5 days ago
Job Viewed
Job Description
Security Analyst (Network & Support)
Location - London (Hybrid)
Duration - 6 Months (Initially)
Rate - 450 (A day)
IR35 - Outside IR35
Summary
To be part of Digital Services, actively contributing as a member of the Infrastructure and Operations Team to support and develop the Network Infrastructure, Services, and Security.
Provide 3rd line support for all wired, Wi-Fi, and remote access network services to staff, students, contractors, and visitors. Act as a key point of reference in network security, contributing to the implementation, development, provisioning, and operational support of network dependencies. The post holder will be expected to support the designing, implementation, and maintenance of our client's Network Security Infrastructure to protect against cyber threats.
Accountabilities and Responsibilities
- Security Operations Support
- Serve as a reference point for network security across IT teams, providing guidance and specialised expertise on security measures.
- Conduct vulnerability assessments, security audits, and continuous monitoring of network traffic for anomalies using advanced security tools.
- Collaborate with IT teams to ensure security measures are integrated into network architecture and applications, effectively communicating technical information to both technical and non-technical audiences.
- Analyse security incidents, develop remediation measures, and prepare detailed reports on security metrics and incidents for management review.
- Participate in incident response activities, coordinating with external security teams when necessary.
- Provide training and awareness programs for staff on security best practices, helping to embed security principles across departments.
Operational Support
- Assist in the design, implementation, management, and provision of the ICT Network Services to ensure alignment with our client standards.
- Support the development and monitoring of service standards, working proactively to respond to service-related problems and incidents.
- Provide 2nd / 3rd line support for ICT Network Services and supporting infrastructure, ensuring efficient and timely resolutions.
- Development Support
- Stay informed about our client's IT strategy, integrating relevant changes into security protocols and supporting the continuous development of network services and infrastructure.
- Set up and configure network services as required, in line with evolving our client needs.
- Act as the SME in Monitoring/Alerting and Reporting tools and assist other capabilities in onboarding applications, networks & systems
- Collaborate within a virtual team to support the Infrastructure Services Team, promoting skill development in Infrastructure, Security, and service improvements to meet the needs of staff and students
Change Management
- Assist in planning, developing, and enhancing new and existing network services and technologies, managing workload to align with project timelines and priorities.
- Participate in project groups related to new services within Information Services, offering expertise in network security and contributing to long-term planning.
- Prepare and document planned change requests for authorization by the CAB, ensuring alignment with institutional objectives and maintaining high service standards.
Is this job a match or a miss?