Jobs
>
Coventry

    Information Security Analyst - Coventry, United Kingdom - Sainsbury's

    Sainsbury's background
    Description

    Job Title / Role

    Information Security Analyst - Product Assurance

    Reporting to

    Information Security Manager - Sainsbury's

    Division/Dept

    Data Governance and Information Security (Corporate Services)

    Location

    Holborn, Coventry, Manchester (Flexible)

    In a nutshell

    As an Information Security Analyst in the Data Governance and Information Security Team, you will be working within the Product Assurance team who are responsible for ensuring our Engineering and Development communities are building and maintaining secure products through their entire lifecycle.

    You will be continually reviewing our security posture and setting the direction on how best to make improvements in line with the evolving threat landscape and core business objectives.

    What you need to do

    As an Information Security Analyst, you will have good all-round infosec experience coupled with finely honed Stakeholder Management skills to ensure that robust security is maintained across our environment.

    • Work in a flexible, agile manner within Engineering Families, while maintaining appropriate levels of challenge and governance
    • Ensure security is built in by design, products are delivered securely with the client and employee data appropriately protected
    • Define Security Non-Functional Requirements for each project and ensure that they are fulfilled prior to going into service, ensuring the relevant technology standards are applied to specific projects
    • Liaise with the Information Security Testing Team to ensure that Ethical Hacking, Code Reviews, Application Scanning, and Infrastructure Scanning are conducted
    • Provide end-to-end assurance of IT products across the Group, throughout its lifecycle, providing approvals where appropriate
    • Articulate risk in technical and non-technical terminology so that it can be interpreted by IT and Business individuals alike
    • Help identify, assess, and manage strategic, operational and emerging risks affecting the Cloud and Data, and articulate, quantify and monitor risks according to risk appetite
    • Build and maintain strong senior stakeholder relationships within technology and the business to understand security risk and drive robust risk-based decision-making
    • Effectively articulate technical issues to business units and engineering teams
    • Liaise with third-party strategic partners and providers who support Sainsbury's

    What you need to know and show

    • At least 3 years proven experience demonstrating technical understanding of security to ensure systems are designed and built securely and to help continually improve our security posture
    • Appreciation of containerisation technologies such as Docker, Kubernetes etc.
    • Fundamental knowledge of logging, monitoring, load balancing/proxies and API gateways
    • Fundamental knowledge of GitHub, Jenkins & Jira
    • Basic knowledge of the OWASP Top 10, Mitre ATT&CK, NIST frameworks, PCI-DSS and Cyber Kill Chain
    • Fundamental understanding of PAM, EDR, AV, IPS, SIEM, WAF and DLP technologies
    • The ability to verify solutions and gain assurance that they are fit for purpose through demonstrable evidence of controls and testing
    • Strong understanding of the changing threat landscape and how this may affect our systems
    • The ability to challenge concerns and report through appropriate channels
    • Self-drive, motivation and the ability to work independently to deliver expected outcomes
    • In-depth understanding of data and security risks in a large enterprise
    • Risk & Vulnerability Management experience and understanding of Risk & Vulnerability Management Frameworks
    • Strong analytical and report writing skills
    • Experience with serverless cloud technologies such as AWS storage and Lambda functions

    Desirable Qualifications

    You will have one (or more) of the following:

    • CompTIA Security+, Network+, Linux+, Cloud+, Data+, DataSys+
    • CSA CCSK / CCAK
    • AWS Certified Security
    • Microsoft Azure Security Engineer Associate
    • (ISC)2 CISSP / CCSP / SSCP
    • ISACA CISA / CISM / CRISC / CGEIT
    • MSc. Information/Cyber Security

    Benefits

    Work-life balance is important to us, so we offer our colleagues as much flexibility as possible in line with the needs of their role. We trust them to decide how, where, and when they work, combining remote and collaborative working with a flexible approach to hours, giving them plenty of time and space for life outside of work whilst delivering against our business goals.

    We are committed to being a truly inclusive retailer, so you'll be welcomed whoever you are and wherever you work. Around here, there's always the chance to try something new - whether that's as part of an evolving team or somewhere else across the business - and we take development seriously and promise to support you. We also recognize and celebrate colleagues when they go the extra mile and, where possible, offer flexible working. When you join our team, we'll also offer you an amazing range of benefits. Here are some of them:

    • Colleague discount across our multi-brands - Sainsbury's, Argos, TU Clothing, and Habitat
    • Holiday allowance
    • Bonus scheme
    • Pension plan
    • Special offers on gym memberships, restaurants, holidays, retail vouchers, and more

    Your well-being is important to us too. You'll receive an annual holiday allowance, and you can buy additional holiday. We also offer other benefits that will help your money go further such as season ticket loans, cycle to work scheme, health cash plans, pay advance (where you can access some of your pay before payday) as well access to a great range of discounts from hundreds of other retailers. And if you ever need it there is also an employee assistance program.

    Moments that matter are as important to us as they are to you which is why we give up to 26 weeks' pay for maternity or adoption leave and up to 4 weeks' pay for paternity leave.

    Please see for a range of our benefits (note, length of service and eligibility criteria may apply).



  • Sainsbury's Coventry, United Kingdom Full time

    Job Title / Role · Information Security Analyst – Product Assurance · Reporting to · Information Security Manager – Sainsbury's · Division/Dept · Data Governance and Information Security (Corporate Services) · Location · Holborn, Coventry, Manchester (Flexible) · In a nutshel ...

  • Picture More

    Security Analyst

    3 weeks ago


    Picture More Birmingham, United Kingdom

    **Skills required**: · - Experience working within a professional environment · - Proven experience working in a security role within a fast-paced environment · - Knowledge of SIEM (LogRhythm/MS Sentinel), Endpoint Detection & Response (CrowdStrike/MS Defender), Vulnerability Man ...


  • De Montfort University Leicester Leicester, United Kingdom

    Our services include a cross-campus communications infrastructure, desktop equipment for students in learning areas and for staff in work areas, collaboration tools, central business systems, audio-visual facilities to support teaching, virtual and managedlearning environments. O ...


  • Picture More Birmingham, United Kingdom

    A vital role within the security team providing expert up-to-date technical and business knowledge on Cyber and Information security. · Skills required: · - Firewall implementation and configuration and vendor technologies eg Cisco, CheckPoint. · - Identity and Access Management ...

  • Phee Farrer Jones

    Security Analyst

    1 week ago


    Phee Farrer Jones Birmingham, United Kingdom Full time

    Graduate Security Analyst (Birmingham) · Education: 2:1 in STEM Subjects & A-Level Mathematics · Salary: Starting £30,000, rising to £32,000 after 4-6 months · Outline: · We have an incredible opportunity with one of the UK's leading Software-as-a-Service providers. Founded over ...


  • CV Bay Ltd Coventry, United Kingdom

    Senior Information Security Analyst - Incident Response · We are looking for an experienced Information Security Analyst to join a well established Info Sec team. You will be taking responsibility for incident response, so as well rounded Info Sec experience you must also have so ...


  • Careers In Group West Midlands (Region), United Kingdom

    **Summary**: · To ensure that the business runs in accordance with policies, standards, and risk appetite while supporting the development and operational management of risk. You will make sure that all risks, controls, events, and concerns are noted, evaluated, tracked,and given ...


  • Tarmac Solihull, United Kingdom Permanent

    At Tarmac, · 'who you are' matters. We want to get to know you. If you share our values and are proud of a job well done, collaborative in working well with others and ambitious to make things better, then have a read of what we have on offer. We are currently looking for an am ...

  • Finning International

    Security Analyst

    3 weeks ago


    Finning International Cannock, Staffordshire, United Kingdom

    Company: Finning International Inc. Number of Openings: 1 Worker Type: Permanent Position Overview: With a reporting line to the Security Operations Manager, the Intermediate Security Operations Analyst will be globally responsible for improving the security posture of all ...


  • SF Recruitment Birmingham, United Kingdom permanent

    Cyber Security AnalystLocation: Birmingham - Hybrid Salary: £40k - £50k DOE + great benefits We are exclusively partnered with an exciting organisation who are on the hunt for a Cyber Security Analyst to join their growing team. As a cyber security analyst, your aim is to support ...


  • SF Recruitment Birmingham, United Kingdom

    Cyber Security AnalystLocation: Birmingham - Hybrid Salary: £40k - £50k DOE + great benefits We are exclusively partnered with an exciting organisation who are on the hunt for a Cyber Security Analyst to join their growing team. As a cyber security analyst, your aim is to support ...


  • Locke and McCloud Birmingham, United Kingdom

    Role: Information Security Analyst · Location: Birmingham · Salary: £45,000+ · Locke & McCloud are seeking an experienced Information Security Analyst to join a growing Information Security team at a legal services firm. · The successful individual will play an integral part in ...


  • Sidetrade Birmingham, United Kingdom

    Calling all tech enthusiasts Are you a problem-solving, curious, and strategic Cyber Security Analyst? Join us at Sidetrade, the leading global SaaS provider recognized by ) · About Sidetrade and its amazing R&D team · Sidetrade is a fast-growing international software company t ...


  • Concept Resourcing Northampton, United Kingdom Full time

    Role: Cyber Security AnalystSalary: £40,000-£50,000 per annumLocation: Northampton (Full time onsite for probation - 3 months)Our client who are a global IT Services organisation, are recruiting for a Cyber Security Analyst to join their organisation on a permanent basis. You wil ...


  • Concept Resourcing Northampton, United Kingdom permanent

    Role: Cyber Security Analyst · Salary: £40,000-£50,000 per annum · Location: Northampton (Full time onsite for probation - 3 months) · Our client who are a global IT Services organisation, are recruiting for a Cyber Security Analyst to join their organisation on a permanent basis ...


  • Bechtle Northampton, United Kingdom

    Bechtle is seeking an accomplished Cyber Security Analyst to join its Post Sales Security team, based in Northampton. · Working with Bechtle UK's CISO, you will help ensure that our professional and managed service customers have a resilient and robust technology estate. You will ...


  • White Cap Birmingham, United Kingdom Full time

    A position at White Cap isn't your ordinary job. You'll work in an exciting and diverse environment, meet interesting people, and have a variety of career opportunities. · The White Cap family is committed to Building Trust on Every Job. We do this by being deeply knowledgeable, ...


  • Tarmac Solihull, United Kingdom

    About the role · At Tarmac, 'who you are' matters. We want to get to know you. If you share our values and are proud of a job well done, collaborative in working well with others and ambitious to make things better, then have a read of what we have on offer. · We are currently l ...


  • Gymshark Solihull, United Kingdom

    OVERVIEW: · In our dynamic and fast-paced environment, the Cyber Security Operations Analyst stands as the first line of defense against digital threats. This pivotal role requires a vigilant and proactive professional, ready to swiftly respond to any incidents that occur within ...


  • Digital Waffle Birmingham, United Kingdom £70,000

    Job Title: Security Compliance Analyst · Birmingham (hybrid) · We are currently looking for a Security Compliance Analyst to join our client, a dynamic law firm based in Central London They pride themselves on their dedication to compliance and security, ensuring that the highest ...