Requirements
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Computer Engineering, or a related field. 2-4 years of experience in cybersecurity, security architecture, technical security assessments, cloud security, or related cybersecurity domains. Professional certifications in cybersecurity, cloud security, or security architecture are considered an advantage.
Description
OverviewJob Description Job TitleSenior AnalystJob Code555657GradeI2GroupDivisionLegal, Risk & GovernanceDepartmentCybersecurityUnitApplication ArchitectureROLE PURPOSEThe aim is to state the overall significance of the job from the organization's perspective.The role exists to support cybersecurity architecture and configuration assurance activities by reviewing system and solution designs, assessing security configurations, identifying architectural risks, and supporting the implementation of security-by-design principles to ensure technology solutions comply with cybersecurity requirements and standards.Key Accountabilities & ActivitiesThis section describes the principal outputs required from the job.Key AccountabilitiesKey ActivitiesSecurity Architecture ReviewConduct security architecture reviews for new and existing systems and solutions.Assess solution designs against cybersecurity requirements and standards.Document security observations and recommended actions.Secure Configuration AssessmentReview system, infrastructure, and application configurations against approved security baselines.Identify configuration weaknesses and security gaps.Support stakeholders in implementing required configuration improvements.Infrastructure & Cloud Security ReviewAssess infrastructure, cloud, and network designs against security requirements and best practices.Support the identification of security risks associated with technology architectures.Document assessment results and required remediation actions.Architecture Risk AssessmentIdentify and assess cybersecurity risks associated with proposed architectures and technical solutions.Evaluate existing security controls and identify potential gaps.Recommend appropriate mitigation measures based on identified risks.Security-by-Design EnablementSupport the incorporation of security requirements during solution design and implementation.Collaborate with technical teams to clarify security requirements and controls.Verify alignment with security-by-design principles throughout implementation activities.Security Assessment & Sign-off SupportPerform assigned technical security assessments required for solution approvals.Maintain assessment evidence and security review documentation.Support security sign-off activities for systems and solutions.Regulatory Technical Assessment SupportSupport technical cybersecurity assessments conducted by regulatory authorities, including NCA-related assessments.Coordinate required technical evidence and documentation.Follow up on observations and remediation requirements resulting from assessments.Architecture Security Documentation & ImprovementMaintain architecture security requirements, assessment records, and configuration standards.Monitor developments in architecture and cloud security practices.Contribute to improving architecture security assessment methods and controls.Policies, Processes & ProceduresFollow all relevant departmental policies, processes, standard operating procedures, and instructions so that work is carried out in a controlled and consistent manner.Comply with all relevant safety, quality, and environmental management policies, procedures, and controls to ensure a healthy and safe work environment.Information SecurityComply with all relevant information security practices and standards to ensure data integrity and confidentiality.JOB SPECIFICATIONSAcademic And Professional QualificationsBachelor's degree in Cybersecurity, Computer Science, Information Technology, Computer Engineering, or a related field.Professional certifications in cybersecurity, cloud security, or security architecture are considered an advantage.Years And Nature Of Experience2–4 years of experience in cybersecurity, security architecture, technical security assessments, cloud security, or related cybersecurity domains.