Snr IT security Analyst
- Salary
- £70K–£76K
- Hiring from
- United Kingdom
- Work type
- Hybrid
- Posted
Show job descriptionHide job description
Senior IT Security Analyst
Permanent
Full time (34.5 hours)], we are open to a conversation about how you work these hours
Hybrid Split between home and our London Office / Shipley Office / Glasgow office: Our Hybrid model for this role will mean 1 day per month in the office.
Salary - £70000 - £76000
About us
Information security has never been more important. At Macmillan Cancer Support, we hold and manage information that matters deeply to the people we support, our colleagues, volunteers, partners and supporters. As a Senior Information Security Analyst, you’ll play a key role in keeping that information, along with our networks and systems, secure. Joining our Information Security team, you’ll combine hands-on technical expertise with strong risk awareness and stakeholder skills. You’ll help design, implement and monitor security controls, identify and manage risks and incidents, and provide trusted advice across Macmillan.
What you'll be doing
You’ll have a broad remit across information and IT security, working closely with technology teams, developers, projects and stakeholders across the organisation. You’ll:
- Monitor and triage security alerts, tickets and incidents, taking action where needed and escalating concerns appropriately.
- Help design and assure security into projects and technology changes from the outset.
- Support the network and infrastructure teams with firewall configuration, network boundary protection, IDS/IPS and other security controls.
- Monitor and help configure our security technology landscape, including SIEM, endpoint protection, privileged access management and multi-factor authentication.
- Carry out regular reviews of security configurations, processes and controls to identify opportunities for improvement.
- Work with developers to promote secure development practices and embed security throughout the development lifecycle.
- Support compliance with ISO 27001, including regulatory attestation and gathering evidence from across the organisation.
- Proactively monitor vulnerabilities, emerging threats, industry trends and new approaches to protecting our organisation and data.
- Work with third parties where required, ensuring appropriate security expectations and controls are understood and maintained.
- Share security knowledge and emerging trends with colleagues, helping Macmillan continually strengthen its security posture and policies.
We’re looking for someone who can stay calm when things get complicated, bring structure to problems and help people understand what really matters from a security perspective.
What you'll Bring
You’ll have solid experience working in information security and be comfortable operating across both technical and organisational environments. You’ll bring experience of common information security frameworks and security solutions, alongside a genuine interest in emerging threats and technologies.
You’ll ideally have experience across areas such as:
- SIEM, vulnerability scanning and endpoint protection.
- Firewalls, IDS/IPS, Web Application Firewalls and network security.
- Infrastructure security, hardening and vulnerability/patch management.
- Windows Server and Desktop environments.
- Cloud security, ideally including Azure.
- Privileged access management and multi-factor authentication.
- Cryptographic controls and security tools and methodologies.
- Secure development and OWASP principles.
- Wireless and mobile security.
- Information risk management and UK/EU data protection requirements, including GDPR.
- ISO 27001 and regulatory attestation or evidence-gathering processes.
Just as importantly, you’ll be able to communicate complex security issues clearly to different audiences. You’ll enjoy working collaboratively, building trusted relationships and finding practical ways to improve security without losing sight of the needs of the organisation.
Recruitment Process
Application deadline: October 20th
First interview dates: TBC
To ensure fairness and consistency to select the best candidate for this role, all our applications are anonymised up until an interview has been confirmed.
We are an organisation that is committed to setting candidates up for success, so we can support you to be at your best during the application or selection process, please contact Macmillan TA Team TATeam@macmillan.org.uk for advice, or a conversation on reasonable adjustments.
We welcome applications from everyone who meet the criteria and strongly encourage individuals to apply who have a disability, impairment or health condition or individuals who identify as Black, Asian or from another minority ethnic background, as these groups are currently under-represented at Macmillan. Our Equity, Diversity and Inclusion Strategy here along with our internal employee representation body, ‘Our Voice’ and 8 Employee Network groups help us promote fairness and belonging, becoming an engaged and inclusive organisation for all our people.