cover image
TieTalent

Security BA - remote

Remote

United Kingdom

Full Time

27-02-2025

Job Specifications

About

One of our energy & utilities client is looking for a Technical BA for a long term remote contract

Security BA - £500/day inside IR35

6+ months contract

Remote with once a month travel to Reading

For BA, CLIENT needs an experienced person to appropriately translate business needs into technical requirements that lays the foundation for assigned projects to deliver the right outcomes.
BA needs to show case the experience in understanding of business requirements and business processes, identify risks and threats that could impact organization’s operations, data, and assets.
This involves identifying vulnerabilities in systems, networks, and applications, solution evaluation (i.e. evaluate cybersecurity technologies, tools, and services to determine their suitability for addressing the organization’s security needs), business impact analysis, communication, and collaboration (experience in working with Agile methodology, preferably Azure DevOps), etc

Nice-to-have skills

Business Analysis
United Kingdom

Work experience

Business Analyst
Security Analyst

Languages

English

About the Company

TieTalent is the career growth platform dedicated to tech professionals. By being part of our community they access exclusive content and perks from our partners for services that help them expend their knowledge. When open for a new opportunity, companies apply for them for jobs they want. On their side, companies benefit from an intelligent system allowing them to hire rare talents in tech quickly and hassle-free, that they need to be successful. TieTalent launched in October 2018 and is already trusted by thousands of ... Know more

Related Jobs

Company background Company brand
Company Name
Ampa - Legal & Professional Services
Job Title
Information Security Engineer
Job Description
Ampa are seeking an experienced, highly skilled and motivated Information Security Engineer to join our dynamic team due to continued growth. What you will be doing: This role involves implementing, managing and monitoring our organisation's security platforms to protect against cyber threats and vulnerabilities. The ideal candidate will possess a deep understanding of network and application security, incident response, and vulnerability management. They will work as part of the Information Security team but will collaborate extensively with other IT teams, to ensure the safety and integrity of our systems and data while working within existing frameworks. Key Responsibilities Security Platform Management: Implement and maintain security solutions such as firewalls, intrusion detection/prevention systems (IDS/IPS), Network Detection and Response tools, Email Security tooling, SIEM technology, Encryption, and access control systems to protect a Windows based Hybrid Cloud Environment. Support our transformational and ongoing move to the Cloud and have extensive experience of securing supplied services (SaaS, PaaS etc). Configure and manage security appliances and software for the protection of network, servers, and data on premises and in the cloud. Develop and enforce security policies, standards, and guidelines to improve the groups security posture. Incident Management Be responsible for and report on system alerts from monitoring systems related to security and the ongoing function of tooling. Assist security teams to provide investigation into security related incidents, ensuring tooling delivers the information required. Develop New Security Systems Improve company security posture by building new systems that provide greater control or visibility for the analyst team. Work with the projects team to ensure that they are developed with security in mind and use the most appropriate technologies while aligning with the group's architectural principles. Participate in the groups Technical Design Authority meetings to present new projects and support development by other teams. Make recommendations of ways the security posture can be improved. Vulnerability Management & Risk Assessment: Help conduct regular vulnerability assessments and Security Control testing to identify weaknesses in systems and networks. Using this information to further secure the network. Perform risk assessments and help design strategies for mitigating potential security threats. Collaborate with development teams to ensure security best practices are embedded into the software development lifecycle (SDLC). Security Audits & Compliance: Help ensure compliance with industry regulations by assisting with regular security audits and reviews. Assist in preparing for external audits and assessments by ensuring appropriate documentation and reporting. Collaboration & Knowledge Sharing: Work closely with IT teams, management, and other departments to ensure that security measures are effectively integrated into all aspects of the organization. Work harmoniously with other IT teams to assure smooth implementations of changes. Keep abreast of the latest cybersecurity trends, emerging threats, and technologies to maintain a cutting-edge defence posture. What you will need: Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent work experience. Proven experience (3+ years) in cybersecurity, network security, or IT security roles. Strong knowledge of security protocols, Cryptography, and Threat Intelligence. Hands-on experience with security tools and technologies such as firewalls, SIEM (Security Information and Event Management) systems, XDR, intrusion detection/prevention systems (IDS/IPS), vulnerability scanners, and endpoint protection solutions. Proficiency with operating systems (Windows, Linux, Unix) and networking protocols (TCP/IP, DNS, HTTP, etc.). Proficiency with virtualised environments and devices. Experience with cloud security (Azure, O365 etc). Familiarity with security frameworks and standards (NIST, ISO 27001, CE+, etc.). Strong understanding of risk management and the ability to perform vulnerability assessments and penetration testing. Ability to analyse and respond to security incidents in a timely and effective manner. Preferred Skills and Qualifications Industry certifications such as SSCP, CEH, SC-200 or AZ-500 or similar. Experience with scripting or automation tools (e.g., Python, Bash, PowerShell). Familiarity with security tools like Wireshark, Qualys, Metasploit, etc. Knowledge of DevSecOps principles and practices. Experience in secure coding practices and application security. Ability to communicate technical issues to non-technical stakeholders. Personal Attributes Strong problem-solving and analytical skills. Attention to detail with the ability to prioritise tasks effectively. Excellent written and verbal communication skills. Ability to work under pressure and in high-stress situations. Strong team player with the ability to collaborate effectively across departments. Self-motivated with a passion for continuous learning in the cybersecurity field. Benefits, Agile Working and Additional information We embrace agile working and offer a blended approach to where and how we work. We appreciate that people have different needs and preferences and we’re keen to be flexible, after all, we value what you do, not where you do it. We have the following hubs across the UK: Birmingham, Bristol, Leicester, Lincoln, London, Milton Keynes, Nottingham, Solihull, Stratford upon Avon, Sheffield and in the South; Crawley, East Grinstead, Lewes, Brighton, Eastbourne, Seaford, Peacehaven, Storrington, Chichester & Southampton as well as our Scotland office located in Edinburgh. Additional information Want to find more about our amazing benefits ? ------------------------------------------------------------------- Please be aware, for some vacancies, where we receive high numbers of applications we may need to bring the close date forward. Due to the nature of the work undertaken, confirmation of employment will be subject to a variety of checks which will be carried out once an offer of employment is accepted. Details of the checks can be found here. Equal opportunities Ampa Group is a committed equal opportunities employer. We seek to attract, develop and retain talented people from a diverse range of backgrounds and cultures. We value and respect individuality and encourage a culture within our business where people can be themselves and be valued for their strengths and experiences. Everyone who either applies to or works for the firm is treated equally, regardless of their gender, age, ethnic origin, nationality, marital status, sexual orientation or religious beliefs. About Ampa Group Welcome to Ampa - a leading group of legal and professional services brands, home to leading legal services firms such Shakespeare Martineau, Lime S...
United Kingdom
Remote
Full Time
03-03-2025
Company background Company brand
Company Name
Motability Operations Ltd
Job Title
Application Security Team Lead
Job Description
About The Role Reporting to the Cyber Security Technical Manager, you will lead a team of Application Security Specialists dedicated to embedding security across all stages of the application development lifecycle. In this role, you will oversee team activities, mentor team members, and work directly with digital product teams and stakeholders to enhance the organisation’s cyber resilience. Your leadership will ensure secure design, development, and delivery of applications aligned with business goals while adhering to best practices in application security. This is a technical, hands-on role that involves managing the implementation of application security controls, performing security assessments, and supporting the design and deployment of secure application solutions. About You This role is ideal for someone who would describe themselves as being passionate about the cyber / technical security aspects of application development, protecting customer data and ensuring cyber resiliency. The ideal candidate will have a background in hands-on secure software development or application security testing, or demonstrable experience of working with development teams on security-related topics. You will also be a strong communicator, able to influence teams and programme stakeholders at various levels. The candidate will also have an understanding around the concept of “shift left” with regards to secure development practices and tooling, giving teams access to early feedback on their work. Knowledge of modern development practices and tools, including agile methodology, is vital. The candidate will be familiar with technologies such as Java, Spring Boot, as well as React and Node. Experience / knowledge of the OWASP top ten, OWASP application security verification standard and threat modelling are critical, as well as a good knowledge of utilising security tooling. Minimum Criteria Experience in a hands-on Cyber Security focused role, primarily in the application security domain. Alternatively, candidates with considerable experience in a hands-on application development role with a demonstratable level of cyber security knowledge and its application within a development environment would be considered. About The Company Motability Operations is a unique organisation, virtually one of a kind. We combine a strong sense of purpose with a real commercial edge to ensure we provide the best possible worry-free mobility solutions to over 800,000 customers and their families across the UK. Customers exchange their higher rate mobility allowance to lease a range of affordable vehicles (cars, wheelchair accessible vehicles, scooters, and powered wheelchairs) with insurance, maintenance and breakdown assistance included. We are the largest car fleet operator in the UK (purchasing around 10% of all the new cars sold in the UK) and work with a network of around 5,000 car dealers and all the major manufacturers. We pride ourselves on delivering outstanding customer service, achieving an independently verified customer satisfaction rating of 9.8 out of 10. Our Values Are At The Heart Of Everything We Do. They Represent Ambition, And We Look For Our People To Live And Breathe Them Every Day We find solutions We drive change We care We operate hybrid working across the organisation where we split our time between working on-site at our offices, and at home, remotely within the UK. We believe hybrid working achieves a good work/life balance for our colleagues, allowing us to connect with each other, collaborate on important work, and perform together to deliver for our customers. It allows us to have the flexibility to work remotely up to 2-days per week whilst also using the great office spaces we have available. As a Motability Operations team member, the benefits you can expect are: Competitive reward package including an annual discretionary bonus 15% non-contributory pension (9% non-contributory pension during probation period) 28 days annual leave with option to purchase and sell days Free fresh fruit and snacks in the office 1 day for volunteering Funded Private Medical Insurance cover Electric/Hybrid Car Salary Sacrifice Scheme and Cycle to Work Scheme Life assurance at 4 times your basic salary to give you a peace of mind that your loved ones will receive some financial help Funded health screening for over 50s Voluntary benefits: charitable giving, critical illness insurance, dental insurance, health and cancer screenings for you and your partner, discounted gym memberships and season ticket loans Employee Discount Scheme with an app to save on the go Free access to healthcare apps such as Peppy, Unmind, Aviva Digital GP and volunteering app on Hand for all employees Generous family leave policies At Motability Operations, we believe in building a diverse workforce, where our people are empowered to attend work as their true selves, and we encourage people from all backgrounds to apply. We want to sustain a culture that nurtures, where employees are free to flourish and where they’re rewarded equally, regardless of race, nationality or ethnic origin, sexual orientation, age, disability, or gender. We pride ourselves on being an inclusive employer and as such, all our offices provide first rate disability access. With our hybrid working environment, we do our best to accommodate part-time and flexible working requests where possible, building on our culture of trust, empowerment, and flexibility.
Edinburgh, United Kingdom
On site
Full Time
27-02-2025
Company background Company brand
Company Name
Amazon
Job Title
Application Security Engineer, Amazon Application Security
Job Description
Description Amazon is continuously innovating new services and features for our customers. Our engineers invent, build, and sometimes break things to make them easier, faster, better, and more cost-effective. However, no matter what we’re building – from websites to web services, AR to AI, drones to devices – security is always our top priority. The Amazon Application Security team focuses on working with our builders to provide experiences that our customers can trust. That means constantly learning new things and solving complex problems to protect the safety, security, and privacy of billions of lives on a global scale. At Amazon, you’ll be working with the best minds in technology and security. Learn and be curious here, and accelerate your career growth. You can take pride in knowing that your work is meaningful, having a positive impact on others and making the world a better place. We are looking for an experienced application security engineer to join the Application Security team. You should know how to prioritize, communicate clearly and compellingly, and understand how to maintain a high level of focus and excellence in a growing application landscape. Passion and discipline around cloud computing is critical, as is a high level of ownership and accountability. Key job responsibilities Your Work Will Include Application security reviews Secure architecture design Threat modeling Projects and research work as needed Security training and outreach to internal development teams Security guidance documentation Security metrics delivery and improvements Assistance with recruiting activities About The Team Inclusive Team Culture Here at Amazon, we embrace our differences. We are committed to furthering our culture of inclusion. We have ten employee-led affinity groups, reaching 40,000 employees in over 190 chapters globally. Amazon’s culture of inclusion is reinforced within our 16 Leadership Principles, which remind team members to seek diverse perspectives, learn and be curious, and earn trust. Work/Life Balance Our team puts a high value on work-life balance. Striking a healthy balance between your personal and professional life is crucial to your happiness and success here. Mentorship & Career Growth Our team is dedicated to supporting new members. We have a broad mix of experience levels and tenures, and we’re building an environment that celebrates knowledge sharing and mentorship. We care about your career growth and strive to assign projects based on what will help each team member develop into a better-rounded professional and enable them to take on more complex tasks in the future. Basic Qualifications Bachelor's degree in computer science or equivalent Knowledge of networking protocols such as HTTP, DNS and TCP/IP Experience programming in Python, Ruby, Go, Swift, Java, .Net, C++ or similar object oriented language 5+ years of experience in a similar role Preferred Qualifications Experience with AWS products and services Experience with any combination of the following: threat modeling, secure coding, identity management and authentication, software development, cryptography, system administration and network security Experience with programming languages such as Python, Java, C++ Amazon is an equal opportunities employer. We believe passionately that employing a diverse workforce is central to our success. We make recruiting decisions based on your experience and skills. We value your passion to discover, invent, simplify and build. Protecting your privacy and the security of your data is a longstanding top priority for Amazon. Please consult our Privacy Notice (https://www.amazon.jobs/en/privacy_page) to know more about how we collect, use and transfer the personal data of our candidates. Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner. Company - Amazon Development Centre (London) Limited Job ID: A2866492
London, United Kingdom
On site
Full Time
02-03-2025
Company background Company brand
Company Name
FNZ Group
Job Title
Identity Security Role Based Access SME
Job Description
At FNZ, our purpose is to make wealth management more accessible, bringing easier, fairer and more inclusive solutions to people worldwide. Here in the Global Information Security team, we work to protect the platforms that support investment solutions for over 20 million people. We are looking for a motivated and experienced Role Based Access SME reporting to the Role Based Lead. You will have good experience in the development and management role based processes for medium/large organisations. Provide oversight and input to Identity Lifecycle management services and processes including key platform, applications and services, Single Sign on and Multi Factor Authentication. You will also have knowledge of monitoring the coverage and effectiveness of identity security tools, as well as automating day to day procedures. Job Description: Align to the Group Head of Identity in maturing Identity management within FNZ, processes and practices contributing to the long-term maturity target. Manage discussions and delivery with platform and application owners Participate in developing skills, capabilities, and services of the Identity team including process improvements and documentation. Create/Maintain and mature Team Processes and Documentation for RBAC Administer user accounts, permissions, and access controls. Keep up to date with the latest industry developments and trends. Support user identity lifecycle Monitor compliance with internal policies and external regulations Handle escalated issues, inquiries, and support tickets Requirements: Working knowledge of Saviynt, AzureAD and CyberArk Strong working experience in Identity or a related field In-depth knowledge of role-based access control within identity and access management concepts. Also a working knowledge of JML, access recertification and identity federation. Willingness to learn new technologies and keep up with industry trends. Familiarity with best practices and compliance standards. Desired Skills: Experience of engineering in large scale environments, specifically managing multiple stakeholders and change in complex technology stacks. Professional certification such as Certified Identity and Access Manager (CIAM) or Certified Identity Management Professional (CIMP) Experience of working in regulated industries Experience of mapping identity requirements to frameworks (NIST, SCF, ISO) About FNZ: Our culture is what drives us. It's at the heart of who we are and everything we do. It's what inspires, excites and moves us forward. Our ambition is to create a culture for growth, one that opens up limitless opportunities for our employees, customers and the wider world. At FNZ we know that great impact is only possible with great teamwork. That’s why we value the strength and diversity of thought in our global team. The FNZ Way is the cornerstone of what we do. It is comprised of four values that set the standard for how everyone at FNZ interacts with each other, with our customers, and with all our diverse stakeholders around the world. Customer obsessed for the long-term Think big and make an impact Act now and own it all the way Challenge, commit and win together Read more about The FNZ Way and our values: www.fnz.com/culture About FNZ FNZ is committed to opening up wealth so that everyone, everywhere can invest in their future on their terms. We know the foundation to do that already exists in the wealth management industry, but complexity holds firms back. We created wealth’s growth platform to help. We provide a global, end-to-end wealth management platform that integrates modern technology with business and investment operations. All in a regulated financial institution. We partner with over 650 financial institutions and 12,000 wealth managers, with US$1.5 trillion in assets under administration (AUA). Together with our customers, we help over 20 million people from all wealth segments to invest in their future.
Edinburgh, United Kingdom
On site
Full Time
03-03-2025