Trac proudly powers the recruitment for
Islington Council

About
Contact
- Address
- Islington Council
- 222 Upper Street
- London
- N1 1XR
- Contact Number
- 020 7527 2000
Cyber Security Analyst
Closed for applications on: 5-Feb-2024 00:11
Vacancy status: Closed
Closed for applications on: 5-Feb-2024 00:11
Key details
Location
- Site
- 222 Upper Street
- Town
- London
- Postcode
- N1 1XR
- Major / Minor Region
- London
Contract type & working pattern
- Contract
- Permanent
- Hours
- Full time - 35 hours per week
Salary
- Salary
- £54,135 - £57,177 per annum
- Salary period
- Yearly
- Grade
- (Local Government (NJC): P06)
Specialty
- Main area
- Cyber Security
Our mission
We are determined to create a more equal Islington, where everyone who lives here has an equal chance to thrive. To do this, everyone who works at Islington Council lives by a set of values which guide us in everything that we do: collaborative, ambitious, resourceful, and empowering. They spell out ‘CARE’, which is what we think public service is all about.
Job overview
Be at the heart of future public service design by joining our Digital Services team.
Are you looking for a challenging and rewarding role in the public sector? Do you have the skills and experience to protect the council’s systems and data from cyber threats? If so, you might be the perfect candidate for the Cyber Security Analyst role at Islington Digital Services (IDS).
IDS is responsible for providing IT infrastructure and services to support the council's operations and the services it offers to the community. IDS works with a variety of technology solution and service providers to ensure the best outcomes for the council and its customers.
Advert
As a cyber security analyst, you will be responsible for:
Working with colleagues to ensure the council protects its systems and data in a robust, cost-effective manner, including developing incident and recovery procedures, reviewing risk assessments, securing relevant certifications and providing an excellent service to colleagues, staff and residents.
Collaborating with the Cybersecurity team to safeguard council information assets. You will assist the Digital Services Leadership Team in identifying threats and solutions and underpinning change and project governance to ensure Cybersecurity principles and practices are implemented.
Managing the relationship with our managed security service partners to enhance our security for the future of digital public services. You will ensure that our partners deliver high-quality and timely services that meet the council’s needs and expectations.
You will work alongside the Cyber Security Engineers, Architects, and the Head of Cyber Security, to deliver a streamlined cybersecurity practice that follows the best practices and standards in the industry. You will help to build and maintain effective relationships with the council's technology suppliers and ensure that the solutions they provide are fit for purpose and deliver value for money.
To be successful in this role, you will need:
- Advance experience in Microsoft Operating systems, SEIM, vulnerability scanning, threat detection and hunting.
- Strong knowledge and skills in cloud security, forensics, incident response, risk management and security compliance.
- Excellent communication and problem-solving skills to work effectively with internal and external stakeholders, including technical and non-technical staff, senior management, customers, and vendors.
- A passion for learning and innovation to explore new technologies and solutions and to improve the organisation’s security posture.
- Experience of security issues relating to hardware and software, with experience of the Microsoft technology stack
- Experience of Cloud security practices (preferably in in Azure)
Working for our organisation
This role will report to the Digital Services, Head of Cyber Security.
Working for the Islington Council Digital Services Cyber Security team means being part of a group responsible for cybersecurity technology solutions to support the council's IT infrastructure and services. As a team member, you will work closely with various stakeholders to understand their requirements and develop cybersecurity solutions that align with the council's goals and objectives.
One of the key criteria for selecting candidates for this position is the Person Specification, which outlines the essential and desirable skills, qualifications, and experience required for the role. You should demonstrate in your application how you meet each of these criteria, providing specific examples from your previous work or education. This will help us to assess your suitability and potential for the job.
Closing date: Sunday 4th February 2024 at 23:59
Interview date: Week commencing 19th February.
To hear more about our journey and how you might help us to achieve our aspirations, please contact Timothy Rodgers, Head of Cyber Security on [email protected]
Detailed job description and main responsibilities
Primary Job Function
• To research, interpret, disseminate, and implement best practice in cyber defence and
network security including ISO27001, Cyber Assessment Framework (CAF), NCSC
(National Centre for Cyber Security) guidance and Public Services Network instructions.
• The Security Analyst (SA) will assist in the management of the organizations cyber
security risks so that the council has a secure platform from which to conduct its
business.
• To assist in all aspects of cyber security from planning, operation, monitoring and
improvement to ensure security is embedded across the estate.
• To will assist with incidents, investigations, auditing, corrective actions, documentation
and providing advice to the Head of Cyber Security.
• To work collaboratively across all teams in the IDS department.
• To ensure the council is meeting its regulatory and legislative responsibilities as defined
by the PSN, PCI and GDPR.
• To support the organisations, drive to realise the technology roadmap which underpins
the Council’s strategy.
• To provide expert guidance on security best practices and solutions.
• To conducts risk assessments and develops security strategies.
• To lead on incident response efforts, conduct forensic investigations, and manage
security incidents.
• To collaborate with cross-functional teams to ensure security requirements are met.
• To lead on cyber security awareness.
• To lead on On-Premises and Cloud Security and best practice.
• To manage the SOC supplier.
• To manage Disaster Recovery runbooks.
• To oversee security testing for existing and new systems/applications.
• To monitor of DDOS/DMARC/DNS services.
• To research and implement the M365 security capabilities.
Research and advice
• To research, review, investigate, develop, and implement new technologies to maintain
and enhance the technical security of the Council’s network in line with business
requirements, best practice and regulatory requirements.
• To engage with suppliers, advisers and regulators to review, upgrade and enhance the
security of the Council’s network, ensuring compliance with mandatory codes of
connection.
• To advise the business, Architecture team and the Technical Design Authority on security
architecture, network security, reviewing the network security implications of technical
designs and implementations.
• To work closely with programme and project managers advising on projects that have
technical security risks.
• Support the management of cyber security risk across the council taking remedial actions
to reduce the risk profile.
• To support cyber security planning by incorporating changes from business
requirements, compliance requirements, technology, processes, people, threats and
vulnerabilities to ensure the direction of cyber security is kept relevant and continually
improved.
• To update policies, procedures and processes that support the cyber security framework.
• Produce regular reports on the state of cyber security, assist in metric definition and
measure cyber security progress and maturity.
• Advise managers running projects that have technical security risks. Perform risk
assessments where required. Coordinate and lead small works to address security
concerns.
• To be aware of the emergence of new cyber security threats and vulnerabilities.
Compliance
• To performance review security controls across the estate to make sure those
preventative measures are working to protect the organisation and regularly tested. And
where found to be deficient to report them and rectify.
• To collaborate with cross-directorate teams to promote and implement high security
standards for all council systems.
• To implement and maintain the daily operation and implementation of IT Cyber Security
across the Council’s networks.
• To monitor, verify and audit compliance with best practice in network security including
ISO27001, NCSC guidance and Public Services Network instructions on the Council’s
network.
• To enforce and improve existing standards across the council, reacting to national
standards and where applicable write these new standards in to council policy.
• To ensure the technical protection and security of data and technology assets.
• Define and write the policy for 3rd party connection standards to the council network
and systems. Review and augment the policy regularly.
• To use and be responsible for security event management systems, intrusion prevention
systems, vulnerability scanning tools and end point security systems.
• To demonstrate compliance to Internal Audit and external regulators, leading on relevant
audits and technical aspects of the Council’s Public Services Network Code of Connection,
NHS Information Governance Toolkit and Payment Card Industry (PCI-DSS) submissions.
• Create and distribute Cyber Security awareness and training materials within the council
using existing distribution methods
• Conduct controlled, targeted, and scheduled Phishing Attack Simulation campaigns.
Report on this and push out security awareness accordingly.
• Administrate critical systems including antivirus management, mail and communication
systems, Internet monitoring, infrastructure management tools, storage provisioning,
directory services and anti-spam. Cloud, hybrid, or on-premises.
Investigations and Forensics
• To coordinate and lead on the response to data security incidents, breaches of security
controls, investigating events, prioritizing, coordinating, and reporting on impacts,
ensuring evidence is secured to support further actions by the relevant authorities.
• To present the findings of technical investigations at briefings.
• To provide expert domain knowledge for dealing with security incidents, trigger
investigations and provide reports to the Head of Cyber Security.
• To have an exceptional level of discretion and confidentiality to undertake investigations
involving access to highly sensitive, confidential material which may be damaging to the
reputation of the council, citizens or employees.
• To provide expert domain knowledge into the response on the technical aspects of data
security incidents, breaches of security controls, investigating events and reporting on
impacts, ensuring evidence is secured to support further actions by the relevant
authorities.
• To support the Head of Cyber Security in any technical aspects of investigations,
ensuring evidence is secured to support further actions by the relevant authorities.
• To represent the Council in presenting the findings of technical investigations at
briefings, hearing and in court.
• To be able to withstand cross examination by counsel during tribunals and possible
prosecutions. Be able to effectively deliver the results of any investigation to the
examining bench or panel.
• To extract and analyse data from computers, networks, and digital devices to identify
security breaches or unauthorised activities.
Business Continuity
• To support the implementation of the council’s strategy and policy for technical disaster
recovery. Provide technical advice to the council on disaster recovery and business
continuity requirements.
• To provide guidance on practical business continuity of core infrastructure and systems
during planned maintenance (e.g., during monthly service shutdowns).
Staff
• To support and encourage staff to be creative, flexible, and committed to providing
solutions to the needs of the business and to relate to their customers in a clear,
friendly, and prompt manner.
• To occasionally supervise apprentices, trainees, staff undertaking job shadowing,
secondments, and other forms of work experience.
Meetings
• To participate in meetings with colleagues, customers and suppliers including team
meetings and service review meetings.
• To represent Islington Council in external forums.
Documentation and Knowledge Sharing
• Create and maintain technical documentation, including system configurations, standard
operating procedures, and troubleshooting guides.
• Share knowledge and best practices with team members, providing training and
mentoring to enhance overall technical capabilities.
Other
• To undertake other duties commensurate to the grade of the post.
Additional
• The service operates from Monday to Friday, 8am to 5.30pm, and you will be required to
work as directed within these hours; and you may be required to carry out essential
maintenance work at other times out of hours.
• To use and assist others in the use of information technology systems to perform duties
in the most efficient and effective manner.
• To achieve agreed service outcomes and outputs, and personal appraisal targets, as
agreed by the line manager.
• To undertake training and constructively take part in meetings, supervision, seminars,
and other events designed to improve communication and assist with the effective
development of the post and post holder.
• The post holder is expected to be committed to the Council’s core values of public
service, quality, equality, and empowerment and to demonstrate this commitment in the
way they carry out their duties.
• Ensure all the services within the area(s) of responsibility are provided in accordance
with the Council's commitment to high quality service provision to users.
• Ensure that duties are undertaken with due regard and compliance with the Data
Protection Act and other legislation.
• Carry out duties and responsibilities in accordance with the Council’s Health and Safety
Policy and relevant Health and Safety legislation.
• At all times carrying out responsibilities/duties within the framework of the Council's
Dignity for all Policy. (Equal Opportunities Policy).
Budget responsibilities
None
Work style
Flexible/Office-Based. The post-holder is expected to be onsite at 222 Upper Street at least one
day a week and at other times as directed by their line manager.
It is the policy of Islington Council that no user of service, present or future employee or job applicant receives less favourable treatment on the grounds of their sex, perceived or actual sexual orientation, marital status, race, religion or belief, age, creed, colour, nationality, national origin, ethnic origin, or disability, or on the grounds of their association with someone in one of these groups; nor is disadvantaged by any conditions or requirements which cannot be shown to be justified. We welcome applications from Black and Minority Ethnic candidates and acknowledge our responsibility to mitigate against racial discrimination.
Please note: Priority will be given to those at risk of redundancy within Islington Council. Current employees who are part of the redeployment pool must meet the essential criteria for shortlisting to be prioritised.
Islington Council operates a guaranteed interview scheme for candidates with disabilities who meet the minimum criteria and we are committed to providing support to applicants who request reasonable adjustments to be made during the recruitment process and throughout their career with us.
We are committed to safeguarding and promoting the welfare of children, young people and vulnerable adults, and expects all staff, and volunteers to share this commitment.
We are also committed to flexible working and will consider requests where possible.
Islington Council also operates random drug or alcohol testing for safety critical roles or for where there may be just cause.
To apply for this position please use the online application process. Please note that the council only accepts online applications, no CVs or alternative forms of applications are accepted. If you are unable to use the online process please contact the Recruitment team on 020 7527 2155 or e-mail [email protected]
Person specification
Qualifications
Essential criteria
- Experience of working as part of a multidisciplinary ICT team in a large ITIL aligned organisation in a regulated industry, ideally a local authority.
- Trained in and/or experienced in the operation at least two security vendor’s software, hardware or services or holding a relevant and current professional ICT security qualification.
Experience
Essential criteria
- Experience of security issues relating to hardware and software, with experience of the Microsoft technology stack
- Experience of Cloud security practices (preferably in in Azure)
- Experience in developing and executing runbooks
- Experience in the use of network and database security tools
- Experience of patch management
- Experience of devops/secops practices and culture and associated methods
- Experience of setting and gathering security control metrics and produce reports to demonstrate security performance across IT estate.
- Experience of working with internal and external auditors and to devise plans to address compliance issues detected by audits or vulnerability scans and communicating them and addressing deficiencies.
- Experience of reviewing technical proposals for new systems or changes to ensure they are compliant with security policy and do not expose the organization to an elevated level of risk.
- Experienced in building relationships and working with internal and external teams to manage cyber security risk.
- Experience of setting and gathering security control metrics and produce reports to demonstrate security performance across IT estate.
- Experienced in the risk management process. Able to produce risk assessments, reports, escalate and remediate risk. Track Cyber security risks on a risk register and record corrective and preventive actions.
- Experienced of refining logs ingested and triggers on a SIEM
Skills
Essential criteria
- Technologies used to protect and secure the perimeter of the organisation including firewalls, anti-virus/malware, and intrusion detection systems.
- Ability to transfer fundamental knowledge and experience from one technology to other technologies to gain a rapid understanding of its operation.
- Ability to work in a high-pressure environment and make sound decisions in emergency situations while empathising with customers and responding sympathetically to circumstances.
- Ability to understand, assimilate, create and maintain effective documentation detailing precise, complex technical and operational information to a variety of audiences including other technical experts, senior officers and elected members.
- Knowledge of and proven ability to work to standards including ITIL, Prince 2, ISO 27001, ISO 27002 Data Protection Act, General Data Protection Regulations and other legal and regulatory frameworks relevant to the management of a public sector ICT service.
- Ability to Influence, build trust, create rapport, utilise active listening skills and negotiate between multiple perspectives.
- To coordinate and manage cyber security events to ensure risks are proactively managed.
- To improve the cyber security framework based on changes in business requirements, legal or regulatory compliance, technology, processes, people, threats, and incidents.
- Experienced in the delivery of cyber security campaigns to an organisation. Awareness in the changing landscape of cyber security threats and the best practices to mitigate them.
- Knowledgeable in the benefits and risks presented by cloud based digital services. Considerable knowledge of major technology trends and technology stacks/areas critical to the Council, clear proficiency in discussing and conversing about technology in logical and intelligible terms with both business and key technology stakeholders.
- Excellent time management skills combined with prioritisation skills to balance conflicting and often high-profile priorities.
- Ability to respond swiftly and effectively to cyber incidents, including identifying the scope of the breach, containing the threat, and preserving evidence for further analysis.
- Understanding of malware types, behaviours, and analysis techniques to identify malicious software and investigate its impact.
- Familiarity with encryption methods, cryptographic protocols, and algorithms to assess their effectiveness and analyse encrypted data during investigations.
- Proficiency in programming languages like Python, PowerShell, or scripting languages to automate tasks, analyse data, and develop tools for forensic analysis.
- Strong problem-solving and critical thinking abilities to connect the dots, interpret complex data, and draw meaningful conclusions from digital evidence.
- A mindset of staying updated with the latest cyber threats, forensic techniques, and industry trends through ongoing learning and professional development.
Further details / informal visits contact
- Name
- Timothy Rodgers
- Job title
- Head of Cyber Security
- Email address
- [email protected]
No longer accepting applications
Sorry, this vacancy is no longer accepting applications.
You can search for similar jobs on the employer's job board, or visit our national jobs board Health Jobs UK.