Job Introduction
The Security Operations Analyst is responsible for managing the end-to-end vulnerability management lifecycle including detection, assessment, monitoring, and coordination of vulnerability treatment on a day-to-day basis as instructed by the Vulnerability Manager. The Security Operations Analyst works closely with several IT Security teams in the UK and Handelsbanken Group to ensure systems and networks are baselined, deployed, and managed with an emphasis on strong, effective security controls.
The role also includes the operations of several security controls including the UK Bank’s Data Loss Prevention controls monitoring the flow of data in and out of the bank via Email and The Internet from Customers and Colleagues and taking appropriate action in the event of a security incident. These daily processes will expand into other areas of security operations as the Bank takes on more of the Microsoft Azure and Tenable security products.
Main Responsibility
The main purpose of the Security Operations Analyst role is to:
- Carry out the daily and weekly security operations processes as instructed by management in accordance with the agreed schedule or in response to a security incident;
- Carry out continuous reviews to see where operational security process can be improved to better secure the bank and its data;
- Investigate vulnerability findings present within the environment, and coordinate remediation efforts in collaboration with other IT teams and subject matter experts;
- Monitor and maintain awareness of critical vulnerabilities, addressing them through patch management or by following mitigating processes to reduce impact;
- Create and maintain inventory reports and alerts using inventory, vulnerability, and patch management systems;
- Validate vulnerability management changes for accuracy and completion to drive timely remediation of critical vulnerabilities;
- Provide status reports to leadership related to vulnerability management metrics, key risk indicators, trending risks, compliance, etc;
- Assess new and existing technologies to determine potential value and risk to the enterprise and ensure risk beyond defined thresholds is appropriately treated;
- Collaborate with other IT groups to ensure defined security baselines are being leveraged and bench marked.
- Operates in line with the Bank's Risk Management framework (including sub-frameworks) and relevant risk and compliance policies and procedures, ensuring appropriate and timely escalation of any concerns to their line manager.
The Ideal Candidate
- Professional competence and relevant experience in information security operations, vulnerability analysis, or risk management.
- BSC or above STEM or Information Technology area is desired but applications based on industry experience are welcome
- Microsoft Certification or equivalent in Security, Engineering or Administration
- Experience in Microsoft Security or other SIEM tools, vulnerability scanning is essential
- Proficient in Microsoft Office tools and a very good working knowledge of MS Excel
- Strong data analysis skills to analyse vulnerability data and publish metrics and reports using Excel
- Experience with vulnerability scanning and reporting tools.
- Knowledge of enterprise-class technologies including vulnerability scanners, asset inventory systems, CMDBs, firewalls, routers, switches, wireless access points, VPNs, desktop and server operating systems, SIEM, WAF, DLP, EDR, web gateways is desirable.
- Excellent verbal and written communication skills with the ability to analyse, articulate and present complex issues clearly and concisely
- Basic data protection knowledge
- Professional standard of presentation skills
- Ability to build strong professional relationships at all levels and represent Handelsbanken effectively
- Interpersonal skills and the ability to work well with impact with people at all levels
- Integrity and discretion
- Ability to work well under pressure
Attention to detail and an organised approach to work
Package Description
Comp + Bens
About the Company
Handelsbanken is a relationship bank with a decentralised way of working, a strong local presence thanks to a nationwide network of branches, and a long-term approach to customer relations. Each Handelsbanken branch operates as a local business enabling it to make decisions at a local level and provide a bespoke service. The focus is always on the need of the individual customer and not on the sale of specific products.
The Bank is deeply committed to embedding good equality and diversity practice into all of our activities. This is so that we are an inclusive, welcoming and inspiring place to work that encourages everyone to apply, regardless of socio-economic background, age, disability, pregnancy and/or parental status, race (including colour, nationality, and ethnic or national origin), veteran status, marital and civil partnership status, religion or belief, sex, gender reassignment or sexual orientation.