Analyst, IT Security Vulnerability Mgmt

1 month ago


London, United Kingdom EBRD Full time

Requisition ID34489Office CountryUnited KingdomOffice CityLondonDivisionInformation TechnologyContract TypeFixed TermContract Length3 yearsPosting End Date

Purpose of Job

The role sits within the IT Security and Business Continuity team, (part of Cyber Security Operations) which is responsible for protecting the confidentiality, integrity, and availability of the Bank’s information assets. The focus of this role is to contribute to Vulnerability Management activities and to the continued operations of Information and Computer Technology systems. The role will be contributing to Major Incident (MI) calls where required to triage any potential cybersecurity events or threats which may impact the Bank. The IT Security VM Analyst will also support the Security Operations team in responding to ServiceNOW ticket requests as part of the ongoing Bank Security Operations tasks.

The role comes with expectation to be on-site in Canary Wharf office as required (minimum 2-3 days or 50% a week).

Accountabilities & Responsibilities

  • The IT Security Vulnerability Management Analyst will have the following objectives:
  • Monitor and evaluate systems’ cybersecurity state, analyse, and
  • Contribute to the development, maintenance, and ongoing assessment of Vulnerability Management process, to mitigate the impact of cybersecurity vulnerabilities
  • Reduce risk to the Bank through effective Vulnerability Management practices
  • Identify, analyse, mitigate, and effectively communicate vulnerabilities to resolver teams
  • Establish procedures for vulnerability results analysis and threat intelligence evaluations
  • Adopt and develop vulnerability and pen testing and remediation techniques
  • Cooperate with outsourced partners and MSSPs’ SOC teams

Knowledge, Skills, Experience & Qualifications

  • Expertise in Microsoft (Server & Workstation), UNIX and Linux Operating Systems
  • Educated to degree level (Computer Science or similar)
  • In-depth knowledge of technical security solutions covering areas such as: SIEM , EDR, DLP, WAF, email security, DNS, encryption, PKI, cloud security, threat intelligence gathering, threat hunting, knowledge of MITRE framework and an understanding of the cyber ‘Kill Chain’
  • A suitable Security Certification such as CISSP, CISM or GIAC (GEVA preferred)
  • Verifiable experience and examples of assessing vulnerabilities in a similar role
  • Pen testing results interpretation, tracking and efficient remediation best practices
  • Relevant experience in the Financial Services sector
  • Set up scanning, policies, review reports, prioritise vulnerabilities - work with the teams to remediate the vulnerabilities. Demonstrable experience of conducting security assessments and threat identification, mitigation and remediation# Working knowledge of security risk oversight, CVSS (Common Vulnerability Scoring System), CVE (Common Vulnerabilities and Exposures), and technical security vulnerability remediation/mitigation
  • Practice all technical, functional and operational aspects of VM and remediation response
  • Collect, analyse and correlate cyber threat information from multiple sources including pen tests, scanning tools and open source intelligence to initiate remediation activities
  • Work on operating systems, servers, cloud and relevant infrastructures
  • Communicate, present and report to relevant stakeholders
  • Experience operating vulnerability and compliance scanning tools such as Qualys, Tenable Nessus Security Centre, Tripwire or similar
  • Operating systems and computer networks security
  • Computer systems vulnerabilities

Please be advised internal applicants are only eligible to apply once the probation period in your current role has been passed.

Please note that CCTs and applicants working directly for a Board office can only apply for jobs advertised via the external website.

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr

  • London, United Kingdom iFindTech Ltd Full time

    Vulnerability Management & Security Analyst - Contract Join our team as a Senior Analyst in Vulnerability Management & Security Testing and be part of shaping a top-notch Threat Defence product! We're seeking a Senior Analyst in Vulnerability Management & Security Testing to play a pivotal role in enhancing our Threat Defence capability and elevating our...


  • London, United Kingdom iFindTech Ltd Full time

    Vulnerability Management & Security Analyst - Contract Join our team as a Senior Analyst in Vulnerability Management & Security Testing and be part of shaping a top-notch Threat Defence product! Are you ready to join a dynamic and high-performing team? We're seeking a Senior Analyst in Vulnerability Management & Security Testing to play a pivotal role...


  • London, United Kingdom Aatom Recruitment Full time

    Working on behalf of a Local Authority, Aatom Recruitment has a new opportunity for a Cybersecurity Vulnerability Management Analyst on a 3 months contract with the possibility of further extension. Main purpose of the role Cybersecurity Vulnerability Management Analyst is primarily responsible for vulnerability assessment, impact, and risk assessment,...

  • Vulnerability Analyst

    1 month ago


    London, Greater London, United Kingdom Computacenter AG & Co. oHG Full time

    Location: UK - Hatfield, UK - London | Job-ID: | Contract type: Standard | Business Unit: Customer Success & Service DeliveryLife on the teamThis individual will work collaboratively with many different areas of Group Information Services (GIS) and Group Information Assurance (GIA) to ensure incidents and vulnerabilities are well managed and efficiently...

  • Security Analyst

    5 days ago


    London, United Kingdom La Fosse Associates Ltd Full time

    Security Analyst (Inside IR35)Primary Role Purpose:Currently looking for a Security Analyst to conduct vulnerability assessments and monitor systems, networks, databases, and web-hosted services for potential breaches. Responsibilities include responding to security alerts, investigating and resolving incidents, educating users on security protocols,...

  • Security Analyst

    4 days ago


    London, United Kingdom La Fosse Associates Full time

    Security Analyst (Inside IR35) Primary Role Purpose: Currently looking for a Security Analyst to conduct vulnerability assessments and monitor systems, networks, databases, and web-hosted services for potential breaches. Responsibilities include responding to security alerts, investigating and resolving incidents, educating users on security protocols,...

  • Security Analyst

    5 days ago


    London, United Kingdom La Fosse Associates Ltd Full time

    Security Analyst (Inside IR35) Primary Role Purpose: Currently looking for a Security Analyst to conduct vulnerability assessments and monitor systems, networks, databases, and web-hosted services for potential breaches. Responsibilities include responding to security alerts, investigating and resolving incidents, educating users on security protocols,...


  • London, United Kingdom EBRD Full time

    The role sits within the IT Security and Business Continuity team, (part of Cyber Security Operations) which is responsible for protecting the confidentiality, integrity, and availability of the Bank’s information assets. The focus of this role is to contribute to Vulnerability Management activities and to the continued operations of Information and...

  • Security Analyst

    1 day ago


    London, United Kingdom Mandarin Oriental Hotel Full time

    Security Analyst Apply now Position: Security Analyst (Full time #538263) Property / Office: Corporate Office, London Location: London, United Kingdom Specific Responsibilities: Monitor up-time, reliability, stability, and policy maintenance of supported security systems and work with business units to remediate identified gaps. (15%) ...


  • Westminster, Greater London, United Kingdom Security Cleared Jobs Full time

    Security Analysts £Must hold a security clearance or be willing and able to become cleared A key client of ours is rapidly expanding and looking to take on Security Analysts to carry out state-of-the-art Security Operations work for the defence sector. The company are an international IT consultancy, offering a range of security solutions. They cover both...


  • London, United Kingdom Barclay Simpson Full time

    Cyber Security AnalystLondon£60,000 + benefitsJob type: PermanentSector: Financial Services, Asset Management & FundsJob reference: 40941/PGLeading consultancy firm seeks a Cyber Security Analyst to join the Security team. This individual will be an integral part of the team, as they will use their widespread technical expertise to help ensure safeguarding...


  • London, United Kingdom Barclay Simpson Full time

    Cyber Security AnalystLondon£60,000 + benefitsJob type: PermanentSector: Asset Management & Funds, Financial ServicesJob reference: 40941/PGLeading consultancy firm seeks a Cyber Security Analyst to join the Security team. This individual will be an integral part of the team, as they will use their widespread technical expertise to help ensure safeguarding...

  • IT Security Analyst

    1 month ago


    City of London, United Kingdom Reed Full time

    **IT Security Analyst** **Type**: Permanent **Salary**: Circa £45,000-£55,000 per annum **Location**: Monument (London) or Croydon - one to two days a week in the office IT Security Analyst required to join a National Transport provider operating in the critical national infrastructure space. This position will be within the IT Security team to assist...

  • IT Security Analyst

    1 month ago


    London, United Kingdom Eames Consulting Full time

    Eames are working with a reputable insurer on the hire of an IT Security Analyst. Please find details on the role below. Responsibilities: Consistently monitor the network, systems, and applications of the organization to detect security threats and vulnerabilities. Respond promptly to security alerts and incidents when necessary. Identify...


  • London, United Kingdom Tria Recruitment Full time

    Senior IT Security Analyst Hybrid - 2 days per week at either the London, Weymouth, or Newcastle offices We are representing a leading B2C retailer who are in the process of modernising their technology estate, with significant investment in IT. As the Senior IT Security Analyst, you will report to the Head of Information Security, whilst leading a team...

  • Security Analyst

    2 days ago


    London, United Kingdom in Newbury Full time

    Currentlylooking for a Security Analyst to conduct vulnerability assessmentsand monitor systems, networks, databases, and web-hosted services forpotential breaches. Responsibilities include responding to securityalerts, investigating and resolving incidents, educating users onsecurity protocols, recommending security enhancements, andresearching trends to...


  • London, United Kingdom Mintel Full time

    Go Back To Current Openings Senior Cyber Security Analyst We’re looking for an Senior Cyber Security Analyst to enhance the IT security of the organisation, reduce technical debt and ensure the third-party solutions we use and buy are implemented securely. This is a new role that's offering a genuine opportunity to have a voice and be part of...


  • London, United Kingdom La Fosse Full time

    About this RoleSkills, Experience, Qualifications, If you have the right match for this opportunity, then make sure to apply today.Role Title: Cyber Security AnalystLocation: UK- London or LeatherheadLa Fosse Associates are working with a growing payments business who are looking to add a Cyber Security Analyst to their in-house security function.You will...


  • London, United Kingdom La Fosse Full time

    Job DescriptionAbout this RoleRole Title: Cyber Security AnalystLocation: UK- London or LeatherheadLa Fosse Associates are working with a growing payments business who are looking to add a Cyber Security Analyst to their in-house security function.You will report directly into the Cyber Security Lead and be a key technical individual within their existing...


  • London, United Kingdom La Fosse Full time

    About this RoleSkills, Experience, Qualifications, If you have the right match for this opportunity, then make sure to apply today.Role Title: Cyber Security AnalystLocation: UK- London or LeatherheadLa Fosse Associates are working with a growing payments business who are looking to add a Cyber Security Analyst to their in-house security function.You will...