The role
The Information Security Assistant assists with the day‑to‑day running of the firm’s information and cyber security controls.
The Information Security team works closely with the CIO to provide guidance on technical architecture, information security standards and best practice.
Key Duties and Responsibilities
- Assist in managing the firm’s security estate and help deliver the information security strategy.
- Assist in driving information security best practices by creating awareness of policies, procedures, standards and training in line with firm needs.
- Assist with security projects and provide guidance on security matters for other IT projects.
- Assist with information‑security related client audits and third‑party supplier audits, analysing results from security questionnaires and audits, and publishing within the information security management system.
- Assist in the identification of security incidents, reporting potential issues to the head of information security.
- Contribute to the coordination of business continuity exercises, incident response plans, playbooks and incident evidence gathering.
- Provide basic triage and remediation to information security incidents, vulnerability scans and patch management processes.
- Work in collaboration with the wider IT team to ensure endpoints and systems are appropriately secured and hardened.
- Assist in maintaining the information security risk register and assist with internal and external audits.
- Assist in generating reports, metrics and dashboards for both technical and non‑technical stakeholders.
- Help drive a security culture within the IT department and the firm by championing information security as a business enabler rather than a blocker.
- Develop and maintain up‑to‑date knowledge by attending education opportunities such as conferences and seminars, maintaining personal networks and participating in professional organisations to provide subject‑matter expertise and understand threat intelligence, challenges, solutions and innovations.
The Candidate
- Experience working in a broad IT role, ideally in a professional services organisation.
- Interest in information security and cyber security, perhaps having self‑funded initial security certifications such as CompTIA Security+.
- Experience working with Microsoft technologies within a corporate environment.
- Ability to follow processes in a highly controlled environment.
- Ability to collaborate, build relationships and influence people.
- Ability to work efficiently and effectively under pressure while prioritising competing workloads.
- Good communication skills, with the ability to convey information‑security concepts to non‑technical stakeholders.
Attendance
During the first three months of employment you may be required to attend the office four days per week to support onboarding, training and collaboration. Your line manager may adjust this requirement based on your progress and business needs.
Application Screening
Any offer of employment with us is subject to pre‑employment checks conducted by a third‑party provider. These may include, but are not limited to, professional and academic qualifications, criminal records and employment references. These checks will be initiated with your consent and the offer will be subject to successful completion of these checks.
EEO Statement
We welcome applications from people of all backgrounds, bringing different perspectives and experiences, and we seek to recruit the best candidates regardless of age, gender, race, ethnicity, social or economic background, religion, disability, sexual orientation or any other characteristic.
#J-18808-Ljbffr…
