Information Security Analyst

1 day ago


Newcastle Upon Tyne, United Kingdom Norton Rose Fulbright LLP Full time

We're Norton Rose Fulbright - a global law firm with over 50 offices and 7,000 employees worldwide.

Our London or Newcastle office is currently recruiting for a**Information Security Analyst**. As well as the relevant skills and experience, we're looking for people who are innovative, commercial and value the work that they do.

The Information Security Analyst is one of several such Analyst roles in the firm. Each Analyst is responsible for assisting with the day to day operation of CISO office tasks. Analysts are also encouraged to participate in proactively identifying sourcesof vulnerability and threat.

The role will be part of a worldwide team that is empowered to operate the activities within their assigned function. Daily activities will focus heavily on request, event and incident management and direction will be provided by the Information SecurityManager.

**The Role**:

- Operate and manage security incidents and requests to SLA guidelines within ServiceNow, including escalation as necessary.
- Operate any daily / weekly / monthly checks as required and provide standard reports as necessary.
- Review, escalate and action any unusual event behavior identified by the security and data leak protection systems.
- Assist with the removal of regional / global obstacles to information security requirements.
- Identify (and report) threats and vulnerabilities.
- Assist with development and maintenance of the Firm-wide security infrastructure configuration, policies and procedures, identifying improvements to procedures, and reporting on incidents.
- Actively promote security governance in support of the Firm-wide IT security policies, to ensure appropriate measures are taken to secure the Firm's records and data and minimizing IT security breaches.
- Support and monitor operational IT teams to ensure their on-going maintenance and supportability of security infrastructure.
- Encourage cooperative working with all business functions to achieve shared security goals, ensuring skills transfer and technical security awareness within the teams. This includes writing process documents and conducting training sessions for membersof the Global Information Security team and others within IT.
- Ability to fully utilize inbuilt security tools and in conjunction with appropriate outside agencies conduct forensic investigations as authorized through the security process.
- Work cooperatively with project teams when assigned and ensure that new project and changes adhere to the security policies and infrastructure governance standards and integrate into existing procedures or refining them as appropriate.
- Identify and evaluate technical remedial measures as identified by penetration tests, scanning and internal/external audits.
- Keep a technical industry awareness of security risks and exposures and proactively promote effective counter-measures.
- Configure appropriate security parameters in monitoring systems and act as a technical point of escalation for any alerted issues.
- Undertake or manage forensic analysis as required by the Firm or by law.
- Support the global audit function, including but not limited to, logging and tracking findings/non-conformities to resolution and performing audits when required.
- Assist in the organization of penetration testing mandates, and to ensure that the output is tracked and remediated.
- Perform document reviews and privileged account reviews at regular intervals, as required.
- Work with the procurement team to ensure all vendors' security posture has been assessed as part of the on boarding process.
- Undertake other reasonable duties as requested by the Information Security Manager.

**Skills and Experience**:

- Solid background in IT with experience in working within Information Security infrastructure or vocation to move from another technical discipline.
- Experience of participating in resolving technical security issues.
- Experience of introducing Information Security improvement through effective deployment of technology and / or processes to move to a proactive footing in security management or demonstrating similar in current technical discipline.
- Proven ability to communicate IT proposals to senior management to facilitate the introduction of new/additions to security systems and processes into the operational environment.
- Working knowledge of endpoint security solutions and security infrastructure.
- An ability to learn quickly, solve problems and pragmatically address risk.
- Technical bachelor's degree or equivalent IT experience (preferred).
- Security-related certification e.g. CompTIA Security+, GSEC, CISSP (preferred).
- Good understanding of security frameworks such as ISO 27001, NIST (preferred).
- Our clients come first and whilst we have a high performance culture and work hard as a team, in return we offerrange of competitive benefits_**_including:_**
- _**25 days hols + Bank hols + buy up to 5**_
- _**GP Service**_
- _**Bupa Healthcare**_
- _**Pension**_
- _**Flexible working**_
- In addition, we are proud of our established health and wellbeing programme which supports our employees through mental, physical and lifestyle challenges._
- Norton Rose Fulbright is committed to promoting a diverse workforce and an inclusive workplace where everyone can realise their full potential and career ambitions on the basis of merit and skill. We offer a range of family friendly and inclusive employmentpolicies, flexible working arrangements, and employee networks.Find more about Diversity and Inclusion here._

LI-SC1

Ind2021

LI-Hybrid



  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom CyberNorth Full time

    CyberNorth is at the forefront of developments in the delivery of security and integrity of verification technologies internationally. As a Cyber Security Analyst, you will be part of this passionate team, which is always looking to be proactive in their approach to developing innovative security solutions.Day-to-day responsibilities include:Monitoring and...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom EPAM Full time

    As a Security Information Architect at EPAM, you will play a critical role in designing and implementing secure information architectures for our clients. You will work closely with our security team to develop and deploy SIEM solutions, ensuring seamless integration with various security tools, systems, and log sources. This role requires a strong...


  • Newcastle Upon Tyne, United Kingdom Steria Recruitment Full time

    Our leading client is currently recruiting for a Security Operations Centre Analyst to UK team (home based) The role sits within the Vulnerability and Threat Management program and so you'll be using defensive measures and information collected from a varietyof sources to identify, analyse, and report cyber security events that occur or might occur within...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom CyberNorth Full time

    **About the Job**We are looking for an experienced Lead Cyber Security Analyst to join our team at CyberNorth. The successful candidate will have a strong understanding of cybersecurity principles and experience working with identity and access management systems.You will work closely with the Technical Information Security Officer and Cyber Security Manager...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom CyberNorth Full time

    Job OverviewCyberNorth seeks an experienced Cyber Security Analyst to join its team. As a key member of the Customer Experience & Bridge Operations Centre (CE&BO), you will play a vital role in monitoring the HMRC IT network, services, applications, batch processing, security, and incident management 24/7.This is a rotational 12-hour shift pattern position,...


  • Newcastle upon Tyne, United Kingdom NHS Business Services Authority Full time

    Providing information security support, advice and guidance to all NHSBSA teams. Establishing information security management arrangements for new services / programmes / projects ensuring that information security controls reflect best practice and are embedded within processes and procedures. Managing the information security incident management process...


  • Newcastle Upon Tyne, United Kingdom Reed Full time

    **Information Security Engineer** **Type: Permanent** **Location: Remote/ Newcastle upon Tyne** **Salary: £39,000** A national company in Newcastle are looking for an **Information Security Engineer** to join a brand-new team of Security experts in their technical hub. This role will involve managing the identification and implementation of suitable...


  • Newcastle upon Tyne, United Kingdom NHS Business Services Authority Full time

    We're looking for an organised and motivated Information Security Management professional to join us and play a key role in delivering the information security compliance programme across all services within the NHS Business Services Authority (NHSBSA). The role will be based in the NHSBSA’s Security & Information Governance Team located at our Stella...


  • Newcastle upon Tyne, United Kingdom CyberNorth Full time

    The Senior Cyber Analyst performs an important responsibility to lead efforts in identifying, analysing, and mitigating cybersecurity threats. You will be expected to assess vulnerabilities, monitor networks for suspicious activity, and develop strategies to protect Group Information assets. Providing guidance on security best practices, overseeing incident...


  • Newcastle upon Tyne, United Kingdom CyberNorth Full time

    The Senior Cyber Analyst performs an important responsibility to lead efforts in identifying, analysing, and mitigating cybersecurity threats. You will be expected to assess vulnerabilities, monitor networks for suspicious activity, and develop strategies to protect Group Information assets. Providing guidance on security best practices, overseeing incident...


  • Newcastle upon Tyne, United Kingdom Nigel Wright Group Full time

    The Opportunity Fantastic opportunity for an experienced Information Security professional to take the lead on this national business's Information Security activities. The company operates a fully flexible hybrid working policy where on average the person will be onsite 2 days per week. The Role Leading a small team, you will be responsible for...


  • Newcastle Upon Tyne, United Kingdom Coburg Banks Limited Full time

    We're looking for a high calibre Information Security Manager to work for our client, the UK's leading and best-known food on the go retailer. If you have experience creating information security strategies with a thorough understanding on how to continuously improve organisational information security management frameworks, plus a high level of commercial...


  • Newcastle upon Tyne, Newcastle upon Tyne, United Kingdom CV-Library Full time

    Are you a skilled IT professional looking for a challenging role? We have an exciting opportunity for a Cyber Security Analyst to join our team at CV-Library. As a Cyber Security Analyst, you will be responsible for monitoring and maintaining the security of our IT systems.">About the RoleThis is a unique opportunity to work with a leading job board in the...


  • Newcastle upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique...


  • Newcastle upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique...


  • Newcastle Upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique blend...


  • Newcastle upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique blend...


  • Newcastle Upon Tyne, United Kingdom NRG. Full time

    We are seeking a talented and driven Information Security Manager to join one of our prestigious clients who have a great reputation for being an employer of choice. This is an exceptional opportunity to play a key role in shaping and managing the organisation's information security and infrastructure strategies. The ideal candidate will have a unique blend...


  • Newcastle upon Tyne, United Kingdom CV-Library Full time

    The company: This is a very well thought of North East business who have a rich history of innovation and excellence in the industry. Recently, this business has invested a lot of time and resource into the IT Infrastructure and continues to do so as they embark on an exciting digital transformation. Join us on this journey and be part of a dynamic team...


  • Newcastle upon Tyne, United Kingdom NHS Business Services Authority Full time

    **In this role, you are accountable for**: Undertaking information security assurance assessments and producing NHSBSA Information Security Assurance Documentation (ISAD) for the certification of business systems Understanding and employing a scenario-based approach to information risk assessment Undertaking information security risk assessments through the...