01 Sep
|
Trantor
|
Chandigarh
01 Sep
Trantor
Chandigarh
As an IT Security Analyst within the Group Security team, you will support the protection of the organisation's English speaking businesses across the UK, US, Australia, New Zealand and India.
The role has a robust security operations focus and will work across regional and Group security priorities. You will monitor security platforms, investigate alerts and incidents, identify risk, support remediation, and contribute to the continued development of the organisation's global security capabilities.
Working closely with security, infrastructure, technology and business teams across multiple countries, the role requires someone comfortable moving between operational security, incident response, vulnerability management, security improvement initiatives and governance activities as Group priorities require.
The Group Security team operates as one team across regions. Collaboration, knowledge sharing and consistent security practices across the organisation are core expectations of the role.
Dimensions / Scale
Reports to the IT Security Manager and forms part of the organisation's wider Group Security function.
Based in the UK, requiring three days per week onsite at either the London or Didcot office.
Supports the organisation's English speaking businesses, with responsibility extending beyond the UK to Group security activities across the US, Australia, New Zealand and India.
Works with regional security teams and other technology functions to provide security monitoring, investigation, response and improvement across the organisation's environments.
Some travel to other organisation locations, primarily within the UK and occasionally internationally, may be required.
Key Duties & Responsibilities
Monitor the organisation's security platforms and dashboards across English speaking regions, identify security events requiring investigation, and ensure significant findings are escalated appropriately.
Investigate and respond to security alerts and incidents, working with regional and Group teams through containment, remediation and recovery where required.
Support security monitoring across endpoint, identity, network, cloud, data and application environments.
Work with technologies including EDR/XDR, SIEM, Netskope, CrowdStrike and other security monitoring and protection platforms used across the organisation.
Participate in the development of consistent Group security monitoring and operational processes,
including alert review, escalation, incident response and security reporting.
Support vulnerability management activities, including identification, prioritisation, remediation tracking and validation.
Use threat intelligence, security telemetry and available security tooling to identify emerging threats and assess their potential impact to the organisation.
Support security assessments for new technologies, applications, services, integrations and significant technology changes.
Participate in incident response, forensic investigation, recovery exercises and post-incident improvement activities when required.
Assist with the implementation and ongoing improvement of Group security technologies, controls and security architecture.
Support security initiatives including Zero Trust, endpoint security, secure access, data protection, network security, cloud security, identity security and security monitoring.
Work with infrastructure, application, development, operations and business teams to identify security risks and implement practical remediation.
Contribute to security policies, standards, procedures, runbooks and operational documentation.
Compile and analyse security metrics and contribute to Group and regional security reporting.
Support internal and external security assessments, audits and remediation activities where required.
Share knowledge across regional security teams and help develop consistent security practices across the organisation.
Participate in security projects and other Group technology workstreams where security expertise or operational support is required.
Support regional security activities when additional coverage is required, recognising that security incidents and business priorities may cross geographic and organisational boundaries.
Key Performance Indicators
Timely identification, investigation and escalation of significant security events.
Effective monitoring of agreed Group security platforms and environments.
Security incidents and vulnerabilities progressed through investigation and remediation within agreed priorities and timelines.
Improved visibility of security risks across the organisation's English speaking businesses.
Consistent adoption of Group security standards and operational practices.
Effective collaboration and knowledge sharing across regional security and technology teams.
Delivery of assigned Group security roadmap activities and security improvement initiatives.
Measurable contribution to reducing security exposure and improving the organisation's ability to detect and respond to threats.
Skills & Knowledge Required
Good understanding of cybersecurity operations, incident response and IT infrastructure.
Practical knowledge of endpoint detection and response technologies and security monitoring platforms.
Experience with technologies such as CrowdStrike, Netskope, SIEM platforms, vulnerability management tools or comparable enterprise security technologies.
Understanding of network, endpoint, identity, cloud and data security principles.
Ability to investigate security events using information from multiple security platforms and data sources.
Understanding of vulnerability management and security remediation processes.
Familiarity with security frameworks and standards such as NIST and ISO 27001.
Good understanding of Active Directory, Entra ID or similar enterprise identity environments.
Ability to translate technical security issues into clear risks and actions.
Robust written and verbal communication skills.
Ability to work effectively with diverse teams across different countries, cultures and time zones.
Ability to establish relationships across security, infrastructure, applications, operations and business teams.
Experience
Experience working in a cybersecurity, information security, security operations or related technical role.
Experience investigating security alerts or incidents.
Hands-on experience with EDR/XDR, SIEM or similar security monitoring technologies.
Experience with CrowdStrike, Netskope or comparable enterprise security platforms is desirable.
Experience supporting vulnerability management, security remediation or security improvement programs.
Experience working within a geographically distributed or multinational organisation is desirable.
Experience working across multiple security disciplines rather than within a single specialised area is desirable.
📌 Security Consultant (Chandigarh)
🏢 Trantor
📍 Chandigarh