Senior Security Analyst

Inspired Thinking Group
Birmingham
1 month ago
Create job alert

We are looking for an enthusiastic and detail-orientedSenior Security Analystto join our growing information security and data protection team.

TheSenior Security Analystis an experienced security professional responsible for performing more advanced security and data protection tasks with a higher level of autonomy. In this role, you will be responsible for conducting comprehensive security and data protection assessments, overseeing vulnerability management, developing and updating security and data protection policies, reviewing configurations, and providing expert guidance to the organization. You will be expected to operate with minimal supervision and mentor junior analysts as needed.

This is a full-time position with some mentoring responsibilities. Occasional after-hours work may be required for incident response or urgent security tasks.

Successful candidates will be enrolled on a fully funded level 6 Cyber Security Risk Analyst apprenticeship and will be provided with mentoring support to help you grow and learn. Upon successful completion of the level 6 qualification, it is anticipated that you will be able to progress to a fully funded level 7 qualification (MSc) in Cyber Security.

Responsibilities:

  1. KPI Reporting & Metrics Analysis:
    • Lead the accurate tracking of KPIs related to security and data protection performance and risk management.
    • Analyse data to identify trends, areas of improvement, and potential security and data protection risks.
    • Prepare detailed reports for management and advise on mitigation strategies.
  2. Lead Security Assessments:
    • Perform risk assessments, vulnerability assessments, and commission penetration tests with minimal supervision.
    • Prioritize and manage findings, providing actionable recommendations for remediation.
    • Conduct security and data protection audits and collaborate with IT and development teams to identify weaknesses.
    • Completes security and data protection assessments from clients.
  3. Policy & Standards Development:
    • Develop and update security and data protection policies, procedures, standards, and guidance to align with industry best practices and regulatory requirements.
    • Review policies and provide recommendations for improving the organisation's security and data protection posture.
    • Supports the implementation of privacy policies and ensuring privacy by design and by default in company operations.
    • Helps with data mapping, DPIAs (Data Protection Impact Assessments).
  4. Configuration Reviews:
    • Conduct detailed configuration reviews of systems, networks, and applications.
    • Work with cross-functional teams to ensure that security configurations meet established standards.
  5. Vulnerability Management:
    • Oversee the identification and remediation of vulnerabilities across systems.
    • Coordinate vulnerability scanning, patching, and remediation efforts with internal teams.
    • Provide leadership in addressing critical vulnerabilities and mitigating risks.
  6. Incident Response:
    • Support the incident management leads, helping to coordinate the response to security incidents, including data breaches, system compromises, or attacks.
  7. Application Security:
    • Work with development teams to embed secure coding practices.
    • Conduct regular security assessments of the company’s software, including the proprietary products sold to clients.
  8. Collaboration & Communication:
    • Provide security and data protection guidance to internal stakeholders, ensuring security considerations are incorporated into development and operational practices.
    • Participate in ongoing security and data protection awareness training initiatives.
    • Mentor and support junior analysts, assisting in their professional development.

Minimum Requirements:

  • Level 4 qualification in Cybersecurity, Information Technology or a related field, or equivalent experience.
  • 2-4 years of experience in information security or a related field.
  • CompTIA Security+, Cisco CCNA, CISMP, or other entry-level certifications are preferred, but not essential.
  • Proven experience with security assessments, vulnerability management, risk mitigation, and security incident response.
  • Strong technical expertise in security tools, technologies, and methodologies.
  • In-depth knowledge of security frameworks and best practices (e.g., NIST, ISO 27001).
  • Ability to work autonomously and manage multiple tasks simultaneously.
  • Exceptional problem-solving, investigative, and analytical abilities.
  • The adaptability to do a range of work, sometimes complex and non-routine, in different environments.
  • The ability to work under direction, use discretion, and determine when to escalate issues.
  • Strong written and verbal communication skills, with the ability to interact effectively with both technical and non-technical stakeholders.

Work’s a treat!
On top of a competitive salary, you can expect a whole load of perks:

  • 25 days’ holiday + bank holidays– we understand the importance of you getting some downtime.
  • Annual Wellbeing Day– enjoy an additional day on us to look after your physical and mental wellbeing.
  • Pension Scheme– helping you save towards your retirement home in the sun!
  • Corporate Medical Cash Plan– claim back the cost of your medical treatments.
  • Smart Working Options– spend up to 40% of your working week from home.
  • So many savings– through our online community platform, you can access dozens of daily deals, from money off top brands to discounts on days out.
  • Employee Assistance Programme– our people are at the heart of everything we do, so if you’re happy, we’re happy.
  • Cycle to Work Scheme– save on the cost of biking to work.
  • Monthly Employee Awards- Employee of the Month programme with £250 bonus.
  • Raising money for charityincluding a paid Volunteer Day – we’re all about giving back… and having lots of fun in the process!
  • Referral scheme– know the perfect person to join the team? You could bag £1,500 for putting a good word in.
  • Wellbeing Programme– giving you the opportunity to join regular, interactive Wellbeing Workshops or join our 30 plus Wellbeing Champions.
  • Enhanced Family Friendly Leave– support for you and your family to help you navigate through the craziness of family life.

We Value Diversity

We champion and welcome diversity in our workforce and ensure all job applicants receive equal and fair treatment, regardless of age, race, gender or gender identity, religion, sexual orientation, disability, or nationality.

We are not only committed to increasing the visibility and recognition of talent from under-represented groups within our organisation, but the wider industry too.

At the end of the day, we make sure we take time to look after ourselves, each other, and the planet, because we’re always stronger together.

ITG have a number of community groups (ERGs) available to employees which offer a safe space for like-minded colleagues, with shared interests to connect, socialise and check in with each other. These include Black ITGers Together, LGBTQ+ Together, Mens Health Together, Muslims Together, Neurodiversity Together, Working Parents and Carers Together and Women In Tech Together.

What next?
If you found yourself interested in knowing more, drop us your application and someone from our team will be in touch.

#J-18808-Ljbffr

Related Jobs

View all jobs

Mid & Senior Level Security Analyst

Mid & Senior Level Security Analyst

Senior Cyber Security Analyst

Senior Cyber Security Analyst

Regional Security Analyst ( up to 80K plus bonus )

Regional Security Analyst ( up to 80K plus bonus )

Get the latest insights and jobs direct. Sign up for our newsletter.

By subscribing you agree to our privacy policy and terms of service.

Industry Insights

Discover insightful articles, industry insights, expert tips, and curated resources.

Job-Hunting During Economic Uncertainty: Cyber Security Edition

The cybe rsecurity sector sits at the forefront of today’s digital landscape, defending businesses and governments alike from increasingly sophisticated threats. From incident response and network security to cloud protections and zero-trust architectures, cyber security professionals tackle an ever-evolving array of challenges. Yet, even this mission-critical field is not immune to economic turbulence. When broader financial markets experience uncertainty—whether through global recessions, regional downturns, or unexpected macro events—the hiring climate can shift, making roles more selective and budgets tighter. For job seekers in cyber security, this can be disconcerting. You might discover that once-abundant vacancies have become scarce, competition for the remaining positions is fiercer, or company priorities pivot away from large-scale expansions toward essential, cost-justified security projects. At the same time, data breaches and cyberattacks don’t pause during economic slowdowns—if anything, they may escalate as bad actors exploit organizational vulnerabilities. This paradox means that while the market feels tough, demand for cyber security expertise remains robust. In this article, we’ll look at: Why economic uncertainty affects cyber security hiring trends. Strategies for staying competitive, even if the number of open roles shrinks. Methods to highlight your skills, adapt to shifting priorities, and network effectively. Approaches for preserving mental well-being during prolonged searches or uncertain feedback loops. How www.cybersecurityjobs.tech can help you find the ideal security-focused role. By proactively sharpening your skill set, tailoring your professional profile, and engaging with a focused community, you can secure a rewarding cyber security job—even when the broader market feels volatile.

How to Achieve Work-Life Balance in Cyber Security Jobs: Realistic Strategies and Mental Health Tips

Cyber security is one of today’s most vital and rapidly expanding sectors. As data breaches, ransomware, and other cyber threats continue to evolve, the demand for skilled professionals is surging across industries—from finance and healthcare to government and e-commerce. Whether you’re a penetration tester, security analyst, or threat intelligence expert, you play a key role in safeguarding digital infrastructure and sensitive information. This high-stakes environment, however, often comes with intense pressure. Long hours, constant vigilance, and an ever-changing threat landscape can make it challenging to find time for personal well-being. Many cyber security specialists report difficulty striking a sustainable work-life balance, unsure if it’s even possible in a field that never truly sleeps. Yet, as concerns about mental health and burnout become more pressing, professionals and employers alike are seeking better ways to combine career advancement with a fulfilling personal life. In this comprehensive article, we’ll explore how to achieve a work-life balance in cyber security. You’ll discover strategies for managing 24/7 threat alerts, the importance of realistic expectations, ways to maintain mental health in high-intensity roles, and tips for setting boundaries without compromising your professional growth. Whether you’re new to this dynamic arena or already an established specialist, these insights can help you thrive personally and professionally in the fast-paced world of cyber security.

Transitioning from Academia to the Cyber Security Industry: How Researchers Can Harness Their Skills to Protect Commercial Environments

Cyber security has become a mission-critical field in an era where data breaches, ransomware attacks, and sophisticated hacking techniques threaten businesses and public institutions alike. As digital transformation touches nearly every facet of modern life, the need for highly skilled individuals capable of defending systems and networks continues to grow. For PhDs and academic researchers with expertise in areas like cryptography, network security, or threat intelligence, this presents an exciting opportunity to deploy your analytical prowess in a high-impact, fast-paced commercial setting. In this guide we’ll explore how academics can successfully pivot from the research lab to the cyber security industry. Learn how to apply rigorous, theory-driven approaches to real-world challenges, from designing secure software architectures to neutralising advanced persistent threats. By embracing the industry’s urgency and end-to-end mindset, you can transform your scholarly insights into robust, market-facing security solutions that protect companies and users on a global scale.