Logo of Huzzle

IT.Junior Security Analyst

  • Job
    Full-time
    Junior Level
  • IT & Cybersecurity
    Business, Operations & Strategy
  • United Kingdom, +14
    Remote

AI generated summary

  • You must have a relevant degree, 1-2 years in risk/compliance, knowledge of third-party assessments, and familiarity with ISO standards. Strong communication and project management skills are essential.
  • You will assess risks, document findings, liaise with teams, assist with audits, support security programs, train staff, and stay updated on security trends to mitigate exposures.

Requirements

  • You must possess at least a Bachelor’s/College Degree in Computer Science/Information Technology or equivalent
  • Preferably with at least one or two years working in governance, risk and compliance; leading audit and risk assessment projects; and performing risk analysis and compliance remediation.
  • Working knowledge on third party risk assessments a plus
  • Understanding of ISO 27001/2, COBIT, Basel II, SAS70, and SOC I & II requirements and other best practices a plus
  • Security, risk, and/or audit-related certifications such as ISO 27001 Lead Auditor certification, CISA, CRISC, CISSP, CISM a plus
  • With good foundation on IT and security audits and risk assessments
  • Working knowledge of Prevalent platform, JIRA and Confluence a plus
  • Key competencies and characteristics:
  • Work independently with minimal direction and or supervision.
  • Proactive with good project management and organizational skills.
  • Strong negotiation and influencing skills.
  • Confident personality with ability to communicate clearly and succinctly.
  • Reliable and prepared to undertake international travel, if needed.
  • Portray professional demeanor.
  • Accept responsibility and personal accountability.
  • Demonstrate flexibility and adaptability in approach to work.
  • Demonstrate use of professional judgment on the job.
  • Demonstrate effective teamwork and working relationships with others, both from Citco and external clients.
  • Demonstrate a self-directed approach to learning new technologies in the field; pursue professional development
  • Ability to effectively manage multiple concurrent projects/tasks with high attention to details

Responsibilities

  • Report to the IT Security Governance, Risk, and Compliance (GRC) Risk Team Senior Analyst and Manager. Cultivate and maintain excellent relationships with management and staff within the organization, internal and external auditors and security colleagues.
  • Perform, document, and report results of risk and controls assessments on various systems and processes, mostly focusing on third party / service provider due diligence reviews.
  • Liaise and work closely with the IT Security Senior Analysts and your Manager, as well as with other key individuals responsible on related operational effectiveness testing work including business, audit, risk, and IT representatives across various offices, locations and time zones.
  • Assist with our security metrics program and other miscellaneous duties, perform ISO27001/2 audits and help maintain compliance with ISO27001/2 standard and other security frameworks or guidelines, as necessary.
  • Help establish and maintain the organization’s security risk management program.
  • Assist in training other staff members and other stakeholders, as necessary.
  • Maintain expertise on security trends through training, research and development in order to mitigate potential security exposures.

FAQs

What is the role of an IT Junior Security Analyst at Citco?

The IT Junior Security Analyst is responsible for supporting the implementation of a robust security and risk management framework, conducting risk and controls assessments, assisting with security compliance audits, and collaborating with various stakeholders on security governance, risk, and compliance projects.

What qualifications are required for this position?

A Bachelor’s/College Degree in Computer Science/Information Technology or equivalent is required. Preferably, candidates should also have at least one or two years of experience in governance, risk, and compliance.

Is there a need for certifications in this role?

While not mandatory, security, risk, and/or audit-related certifications such as ISO 27001 Lead Auditor, CISA, CRISC, CISSP, or CISM are considered a plus.

Will I be required to travel for this job?

Yes, the role may require international travel if needed.

How does Citco support employee development?

Citco emphasizes professional development and provides training and education support to help employees succeed in their careers while balancing their personal needs.

Is experience with third-party risk assessments necessary for this position?

While it's preferable, working knowledge of third-party risk assessments is considered a plus but not strictly necessary for the role.

What types of security frameworks or standards should I be familiar with?

Understanding of ISO 27001/2, COBIT, Basel II, SAS70, and SOC I & II requirements, as well as other best practices, is beneficial for this position.

Does Citco offer benefits to employees?

Yes, Citco provides a range of benefits, including support for well-being, training, education, and flexible working arrangements tailored to meet personal needs.

What are the expected working relationships for this role?

The IT Junior Security Analyst is expected to cultivate and maintain excellent relationships with management and staff within the organization, as well as collaborate with internal and external auditors and other security colleagues.

What skills are important for success in this position?

Key competencies include proactive project management, strong negotiation and influencing skills, effective communication, flexibility, teamwork, and attention to detail.

The Citco group of companies provides a broad range of financial services for hedge funds, administration, PE & more.

Finance
Industry
5001-10,000
Employees

Mission & Purpose

The Citco Group Limited is a company specialising in financial services, with a particular focus on fund administration, corporate services, and related financial solutions. The company's core activities include assisting clients in managing and administering investment funds, as well as providing corporate and fiduciary services to businesses. Citco's ultimate goal is to be a trusted partner for their clients in navigating the complexities of the financial industry, offering expert support in fund management and corporate services. Their purpose revolves around delivering high-quality, tailored financial solutions that enable clients to succeed in a competitive market, manage their assets efficiently, and meet regulatory requirements. Through their services, Citco aims to facilitate the growth and success of businesses and investment funds.