Cyber Security Engineer
Role details
Job location
Tech stack
Job description
As a business-critical new role into the business, you will support the Head of Cyber Security in developing, maintaining and delivering programme to improve our security posture and to align with our compliance and regulatory obligations, including Cyber Essentials, NCSC CAF and Telecoms Security Act (TSA). We are looking for a technical engineer with experience in translating regulatory requirements into BAU behaviours, cyber governance, risk and compliance and someone who has strong stakeholder management is also key.
You will work with internal teams provide technical and tactical advice to many areas of the business (e.g. Procurement, HR, Business Compliance, Architecture, IT Infrastructure and Design) to create and implement security policies, standards, processes and controls in line with current regulations and standards, e.g., TSA, Cyber Essentials Plus and NCSC CAF.
What will you be doing?
Governance and Compliance
- Work with internal and external teams providing technical and tactical advice and support the implementation of a required governance and control frameworks, including compliance monitoring and assurance.
- Work with regulatory and compliance teams to provide technical support and responses to requests for information from our regulators, insurer, auditors and third parties.
- Work with internal and external teams to manage and retain our certification, schedule audits, and ensure non compliances are remediated, on-going.
- Develop and deliver technical security standards against compliance framework requirements.
Risk Management
- Monitor, Measure and Maintain cyber security technical risks.
- Drive cyber risk remediation activities.
- Active participation in identifying technical security risks requiring mitigation.
Technical and Tactical
- Support Vulnerability Management activities across a broad technology estate (servers, user endpoints, network devices, in-house applications).
- Support Penetration/Security Testing activities and follow-up on resulting remediation tasks.
- Active participation in security tooling proofs of concept (PoCs).
- Pro-actively seek to improve technical security controls.
- Exhibit a curious & inquisitive nature e.g. pro-actively research new technologies.
- Adopt an attitude of - what might a bad actor do here, and what can we do to stop them?
- Ability to translate technical risks/topics into meaningful business language/adapt language to your target audience.
Requirements
Do you have experience in Telecommunication?, * Cyber Security or equivalent Degree or Professional certifications such as CISSP, CISM, CRISC
- Understanding of identifying technical risk and securitycompliance opportunities, threats and vulnerabilities within the telecom industry
- Previous experience of Information Security implementation, development or operations
- High level of experience of Information Security Risk Management
- Strong understanding of the technologies and architectures used to support information security
- Hold a current UK Security Clearance or be willing to undergo security vetting
- Experience in supporting a Vulnerability Management function
- Previous Penetration Testing/Security Testing experience - DESIRABLE
- Previous experience or understanding of the NCSC CAF and TSR - DESIRABLE
Benefits & conditions
Whatever we're doing - whether we're liaising with property professionals, delivering our network, or installing in a customer's home, going beyond the expected is the benchmark for everything we do. How we work is shaped by our three culture principles:
- We work smarter, together
- We stay focused
- We strive for excellence
Some of our key Benefits
- Competitive salary
- Global Remote working for up to 2 week per year for those who are able to work remotely
- 25 days' paid holiday increasing each year, to a max of 35
- Extra days off for your birthday, moving home, wedding/civil partnership and to volunteer
- Private medical Insurance provided by AXA health
- Life assurance giving you cover of 4 times your base salary
- Partnership with the Kings Trust
- Our pension scheme matches your contributions up to 4%
- Retail offers - discounts from hundreds of recognisable brands
- Free Hyperoptic broadband if you live in a Hyperoptic area
- Enhanced pay for new parents