Specialist Security Advisor - London, United Kingdom - Vector Resourcing

    Default job background
    Description

    Our client is looking to develop and maintain their Cyber Security capability, aligned to the overall information security strategy, to ensure that they remain cyber secure and achieve the required accreditations.

    Specifically you will come in and monitor security alerts, pass any actionable alerts over to infrastructure or 3rd parties resolve.

    Looking after Network, Email, M365 and Application security.

    You will also be expected to create strong relationships with other museums and similar organisations to liaise on similar alerts and threats to see if they are isolated.

    Responsibilities

    • Analyse technical solutions to help protect against and mitigate security vulnerabilities.
    • Design, maintain and test recovery procedures for all critical systems.
    • Implement and oversee the monitoring of on-premise and cloud-based computer systems, networks and applications.
    • Develop and deliver a programme of planned independent security assessments. including penetration tests, hardware & software compliance, and PCI, and ensure any gaps are addressed.
    • Work with external stakeholders and information security groups including DCMS, NCSC and accreditor organisations and others to improve cyber security standards.
    • Oversee the security review of third-party suppliers and systems.
    • Manage the Cyber Essentials, GovAssure and ISO27001 annual accreditation processes.
    • Keep abreast of emerging security trends, risks, new guidance or standards and security technologies.
    • Promote cyber security awareness across the Museum by developing and implementing a security awareness and training programme to staff at all levels.
    • Produce regular security reports for the IS Leadership. Skills
    • Windows, client & server
    • IAAS, PAAS especially Azure
    • Firewalls
    • Networking & Wi-Fi
    • End-point protection
    • Web-hosting technologyDesirable
    • Demonstrable understanding of ISO27001, Cyber Essentials, data protection, business continuity and audit compliance

    Mobile phone security:
    IOS and Android