Cyber Security Analyst
Job in
Bath, Somerset County, BA1, England, UK
Listed on 2026-08-01
Listing for:
Novia Financial plc
Full Time
position Listed on 2026-08-01
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Description & How to Apply Below
The Cyber Security Analyst is responsible for helping us to secure our systems and protect our key stakeholders, IT infrastructure, information assets and business operations.
Reporting to the Head of Information Security, the successful candidate will work with key business stakeholders, SOC, IT and 3rd party vendors, to ensure that we operate a robust Cyber Security infrastructure and ISO
27001 ISMS that, is highly effective in protecting the business, in line with our commitment to clients and our regulatory obligations.
- Working with the Head of Information Security to develop policy and strategy in line with the group’s vision.
- Help implement security controls to protect systems, networks, applications, and customer data.
- Monitor security events and respond to cyber incidents
, ensuring threats are detected, contained, and remediated. - Oversee and monitor vulnerabilities and security patching
, coordinating remediation with IT and business teams. - Oversee and monitor cloud and on-premises environments
, including Microsoft 365, Entra , servers, endpoints, and network infrastructure. - Support regulatory and compliance requirements such as FCA, GDPR, ISO 27001, and other industry standards.
- Conduct security assessments and testing
, including configuration reviews, penetration test remediation, and risk assessments. - Provide security advice to projects and technology teams
, ensuring secure-by-design principles are applied. - Develop and improve security monitoring, automation, and detection capabilities to enhance cyber resilience.
Experience:
Essential:
- 3+ years' experience in a cyber security role.
- Experience with Microsoft 365, Entra , Purview, endpoint security, SIEM, and vulnerability management.
- Experience in incident response and security monitoring.
- Knowledge of ISO 27001, GDPR, and financial services regulatory requirements.
- Advanced security certifications such as CISSP, CISM, CCSP, GIAC, or equivalent.
- Experience conducting security assessments, technical reviews, and supporting audit activities.
- Experience with cloud security, security automation, and security architecture.
- Knowledge of FCA, PRA, DORA, and cyber resilience requirements.
- Experience mentoring junior engineers or leading technical security projects.
- Experience working with SIEM, EDR, vulnerability management, and identity and access management solutions.
- Knowledge of Microsoft Purview, DLP policy creation and reporting
- Knowledge of KQL and JSON for queries and automation
- Analytical & Problem-Solving
Skills:
Ability to assess complex security issues and develop practical, risk-based solutions. - Communication & Stakeholder Management:
Ability to explain security risks and recommendations to both technical and non-technical audiences. - Business Focus:
The motivation and ability to always apply good financial practice and company procedures.
- Operational Excellence:
Continually delivering and improving excellence for all clients and customers. - Client and Customer Focus:
Add value to client/customer, adhere to Treating Customers Fairly principles, and operate as a true business partner. - Communication:
Communicate clearly and concisely, tailoring content and style, with ability to make a positive impression on others. - Expert Knowledge:
Consistent application of professional or specialist knowledge and skills; takes opportunities to contribute to policy and best practice. - Working with others:
Working successfully with others and building a network of good relationships to achieve shared goals. - Performance Focus:
Demonstrate energy and enthusiasm, takes ownership, delivers results and improves personal performance.
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×