cover image
Jefferies

Security Operations Analyst, Vice President

On site

London, United Kingdom

Full Time

12-04-2025

Job Specifications

Job Description

Job Description:

We are seeking a highly skilled and experienced Security Operations Analyst to join our dynamic team. The ideal candidate will possess strong communication skills, extensive knowledge in cybersecurity, networking, cloud technologies (AWS/Azure), security frame works such as NIST and/or MITRE and experience with various security tools and platforms. This role requires a minimum of 6 years of experience in security operations.

Key Responsibilities:

Lead and manage the Security Operations Center (SOC) team to ensure the effective monitoring, detection, and response to security events.
Manage and respond to cybersecurity incidents, ensuring timely resolution and thorough documentation.
Provide leadership and mentorship to the security operations team, fostering a culture of continuous learning and improvement.
Develop and implement security policies, procedures, and protocols to safeguard the firm's information assets.
Collaborate with IT and other departments to design and implement secure network architectures and cloud environments.
Endpoint Detection and Response (EDR) solutions such as CrowdStrike and Microsoft Defender.
Review and approve cyber security policy exceptions including firewall requests
Monitor Data Leak Protection (DLP) tools and provide strategies to prevent unauthorized data exfiltration.
Utilize Proofpoint and other email security solutions to protect against phishing and other email-based threats.
Conduct/Participate regular security assessments, vulnerability scans, and penetration tests to identify and mitigate potential risks.
Stay current with the latest cybersecurity trends, threats, and technologies to continuously improve the firm's security posture.

Qualifications:

At minimum bachelor's degree in computer science, Information Technology, or a related field.
Minimum of 6 years of experience in security operations, preferably in a financial services environment.
Strong communication skills with the ability to effectively convey complex security concepts to both technical and non-technical stakeholders including senior management up to C-Level
Ability to work independently and make sound decisions under pressure.
High level of integrity and confidentiality
Strong analytical and problem-solving skills with the ability to think critically and make sound decisions under pressure.
Extensive knowledge of networking principles and protocols.
Hands-on experience with cloud platforms such as AWS and Azure.
Proficiency in cybersecurity practices and technologies, including EDR solutions (CrowdStrike, Microsoft Defender), firewalls (Palo Alto), and DLP strategies.
Experience with email security solutions such as Proofpoint & O365 Mail Security
Experience with Splunk for security monitoring and analysis.
Relevant certifications such as CISSP, CISM, or CEH are highly desirable. (Prior Experience working in Financial Services a plus)

About Us

Jefferies Financial Group Inc. (‘‘Jefferies,’’ ‘‘we,’’ ‘‘us’’ or ‘‘our’’) is a U.S.-headquartered global full service, integrated investment banking and securities firm. Our largest subsidiary, Jefferies LLC, a U.S. broker-dealer, was founded in the U.S. in 1962 and our first international operating subsidiary, Jefferies International Limited, a U.K. broker-dealer, was established in the U.K. in 1986. Our strategy focuses on continuing to build out our investment banking effort, enhancing our capital markets businesses and further developing our Leucadia Asset Management alternative asset management platform. We offer deep sector expertise across a full range of products and services in investment banking, equities, fixed income, asset and wealth management in the Americas, Europe and the Middle East and Asia.

At Jefferies, we believe that diversity fosters creativity, innovation and thought leadership through the infusion of new ideas and perspectives. We have made a commitment to building a culture that provides opportunities for all employees regardless of our differences and supports a workforce that is reflective of the communities where we work and live. As a result, we are able to pool our collective insights and intelligence to provide fresh and innovative thinking for our clients.

Jefferies is an equal employment opportunity employer, and takes affirmative action to ensure that all qualified applicants will receive consideration for employment without regard to race, creed, color, national origin, ancestry, religion, gender, pregnancy, age, physical or mental disability, marital status, sexual orientation, gender identity or expression, veteran or military status, genetic information, reproductive health decisions, or any other factor protected by applicable law. We are committed to hiring the most qualified applicants and complying with all federal, state, and local equal employment opportunity laws. As part of this commitment, Jefferies will extend reasonable accommodations to individuals with disabilities, as required by applicable law.

About the Company

Jefferies is a leading global, full-service investment banking and capital markets firm that provides advisory, sales and trading, research and wealth and asset management services. With more than 40 offices around the world, we offer insights and expertise to investors, companies and governments. More about our company can be found at www.jefferies.com. Know more

Related Jobs

Company background Company brand
Company Name
Arm
Job Title
Functional Safety and Cybersecurity Manager
Job Description
Job ID 2025-13556 Date posted 19/02/2025 Location Cambridge, United Kingdom; Austin, Texas Category Security Fixed Term - 9 Months Job Overview This exciting new role is for the FuSa and Cybersecurity Manager fixed-term position within the Arm Quality Group. You will be ensuring the safety of best-in-class products for one of the most extraordinary and successful companies! Your ideas will make a difference. You will have the opportunity to ultimately improve how Functional Safety, Automotive quality, and cybersecurity are integrated into the Arm products. Join us to shape the future of the Automotive industry together! Responsibilities You will support Arm Automotive projects from early development to successful assessment and certification. This will involve working closely with engineering, product security, and functional safety experts. You will have the unique opportunity to establish an aligned and seamless workflow between the multiple subject areas, processes, and requirements. You will help the teams to develop robust development processes, achieving efficiency and excellence across Arm solutions, hardware, and software. In your role, you will manage functional safety and cybersecurity external assessments, conduct internal audits, and drive open actions to closure, meeting Arm customer requirements and industry standards. You will foster a Safety culture, deliver training, improve frameworks, manage risks, and monitor performance. You will communicate progress to various team members and Arm leadership. Required Skills And Experience Extensive practical knowledge of one or more functional safety, quality, and cybersecurity standards, such as ISO 26262, ISO/SAE 21434, IEC 61508, ASPICE, etc. This includes the ability to produce and review functional safety documentation, providing the teams with opportunities for improvement as well as with relevant training and guidelines. Great understanding of Soft-IP (Software, Hardware) development lifecycle from a Functional Safety perspective. Experience in performing audits in Functional Safety, Automotive Cybersecurity, or Quality for at least three years, experience in facilitating root cause analyses, applying, facilitating, and guiding quality processes and methodologies. Strong interpersonal skills to help develop relationships and network with internal customers and champion quality, safety, and cybersecurity culture. In Return Accommodations at Arm At Arm, we want our people to Do Great Things. If you need support or an accommodation to Be Your Brilliant Self during the recruitment process, please email Hybrid Working at Arm Arm’s approach to hybrid working is designed to create a working environment that supports both high performance and personal wellbeing. We believe in bringing people together face to face to enable us to work at pace, whilst recognizing the value of flexibility. Within that framework, we empower groups/teams to determine their own hybrid working patterns, depending on the work and the team’s needs. Details of what this means for each role will be shared upon application. In some cases, the flexibility we can offer is limited by local legal, regulatory, tax, or other considerations, and where this is the case, we will collaborate with you to find the best solution. Please talk to us to find out more about what this could look like for you. Equal Opportunities at Arm Arm is an equal opportunity employer, committed to providing an environment of mutual respect where equal opportunities are available to all applicants and colleagues. We are a diverse organization of dedicated and innovative individuals, and don’t discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
Cambridge, United Kingdom
Hybrid
Full Time
25-04-2025
Company background Company brand
Company Name
NTT DATA
Job Title
Security Consultant - Penetration Tester
Job Description
Security Consultant - Penetration Tester Role Overview : We are seeking a highly skilled and experienced Offensive Security Consultant with a strong focus understanding on threat intelligence and attack methods. The ideal candidate will be responsible for managing and conducting advanced penetration testing engagements, leveraging threat intelligence to simulate real-world attacks across a variety of environments, including OT, IT, web applications, cloudinfrastructure, and APIs. This role requires a deep understanding of adversarial approaches, excellent communication skills, and the ability to provide strategic and actionable recommendations to significantly enhance our clients' security postur e. What you'll be doi ng: Lead and manage the full lifecycle of complex penetration testing engagements, applying a strong threat intelligence-led appro ach.Execute advanced penetration tests across a broad range of environments (applications, infrastructure, web, APIs, O365, Azure, AWS, OT), directly applying your knowledge of current threat landscapes and attacker T TPs.Develop and maintain sophisticated test plans, execution plans, and targeted use cases directly informed by in-depth threat intelligence analy sis.Identify and prioritize OT and IT assets, services, and systems based on their criticality and potential exposure to identified thre ats.Strategically prioritize, plan, and schedule penetration testing engagements based on comprehensive threat assessments and client-specific requireme nts.Produce high-quality, detailed reports that clearly articulate technical findings, potential business impact, and strategic, actionable remediation recommendations for both technical and non-technical stakehold ers.Clearly and effectively communicate complex security concepts, adversarial tactics, and critical threat intelligence insights to diverse audien ces.Collaborate closely with client IT and cybersecurity teams to drive the enhancement of security protocols and ensure effective, threat-informed remediation of identified vulnerabilit ies.Track the progress of remediation efforts and provide regular, concise updates to stakeholders, highlighting the reduction of identified thre ats.Conduct proactive security research and contribute to the creation of technical content on emerging threats, advanced attack techniques, and threat intelligence-led testing methodolog ies.Contribute to strengthening security monitoring (blue team) capabilities by providing valuable insights into offensive techniques and adversarial behaviors to enhance detection and response effectiven ess.Drive the patching regime for identified vulnerabilities, prioritizing remediation efforts based on threat intelligence and the potential for exploitation by advanced threat act ors. What you'll bring: Minimum of 5 years of demonstrable professional experience in penetration testing, with a strong emphasis on understanding, emulating, and leveraging adversarial tactics and threat intell igence.Comprehensive understanding of OT and IT asset profiles, technologies, and security best practice principles, with a proven ability to contextualize them within the current threat lan dscape.In-depth knowledge of network protocols, cryptography, security vulnerabilities, and common attack vectors employed by sophisticated threat actors.Demonstrated proficiency in utilizing a wide range of penetration testing tools and methodologies, including those specifically used for threat intelligence analysis and appli cation.Proven experience in scoping and executing complex penetration tests, particularly those directly informed and driven by threat intell igence.Exceptional written and verbal communication skills, with the ability to articulate complex technical findings and nuanced threat intelligence insights clearly and concisely to diverse aud iences.Strong organizational and time management skills, with a proven ability to effectively manage and prioritize multiple concurrent engag ements.Current CREST CRT certification or higher is ess ential.Must hold or be eligible for SC Cle arance. Desirable Skills: Experience with Breach Attack Simulation tools and metho dologies.Experience in Vulnerability Management processes and integrating threat inte lligence.Understanding of Risk Management frameworks and how threat intelligence informs risk ass essments.Hands-on experience with security reviews of AWS, Azure, and GCP environments, incorporating cloud-specific threats.Experience with ISO 27001 auditing/implementation, understanding the role of threat intelligence in co mpliance.Other advanced cybersecurity certifications such as CISM, CISSP, ECSA, C REST CCT.
London, United Kingdom
Hybrid
Full Time
25-04-2025
Company background Company brand
Company Name
Bytes Software Services
Job Title
Presales Solutions Architect - Cyber Security
Job Description
Established in 1982, Bytes has grown rapidly and now employs over 800+ people across 6 locations in the UK and Ireland. Our turnover in Financial Year 2024 was in excess of £2bn. We work with SME’s, corporates and public sector organisations to modernise and digitally transform their IT infrastructures. We invest in our employees through on-going support, training and advice to help them achieve their career aspirations, rewarding success both financially and personally. There is opportunity to grow and move internally which can be seen through our long-standing employees who have developed existing and new skills to move into senior positions in the organisation leaving space for new team members to begin their journey. PURPOSE OF JOB: Bytes Software Services is expanding its Technical Pre-Sales capabilities, especially in Cyber and Network Security. We're looking for an experienced Technical Pre-Sales Architect specialising in Cyber Security to deliver consultative, vendor-agnostic solutions, ensuring customer requirements and business outcomes are consistently prioritised. This role involves leading customer engagements with a consultative, solution-focused approach, particularly across Cyber Security, Compliance, and Network Security. The successful candidate will deliver comprehensive technical pre-sales engagements, creating compelling solution proposals and accurate Statements of Work (SOWs), working closely with Bytes' Cyber Security and Network Security delivery teams. Role Responsibilities Lead technical pre-sales customer engagements, adopting a consultative, agnostic, and customer-focused approach. Create detailed Statements of Work (SOWs) in collaboration with Cyber Security and Network Security delivery teams. Clearly articulate and position Bytes' cybersecurity services, including Network Security, Compliance & Assurance (ISO 27001, PCI DSS), penetration testing, and vulnerability assessments. Provide thought leadership, offering expert guidance to customers, ensuring Bytes remains aligned with customer-specific requirements and outcomes. Maintain independence and objectivity in solution recommendations. Provide technical consultancy and strategic support to Account Management and Solutions Specialists throughout the sales cycle. Engage actively in customer meetings and demonstrations, clearly articulating complex cybersecurity solutions and their business value. Commit to continuous professional development, maintaining awareness of emerging cybersecurity threats, technologies, and compliance standards. Collaborate across internal teams to enhance service offerings and customer engagement effectiveness. To participate and be a creative lead/presenter in Bytes Cyber Brand extension activities. Key Requirements Required Skills Minimum of 5 years' experience in Cyber Security, preferably within a pre-sales or consulting role Professional certifications highly desirable: CISSP, CEH, CCSE, CCNA, or vendor-specific certifications (Microsoft, Cisco, Check Point, Palo Alto, Fortinet). Show a similar chronology of demonstrable hands-on experience in Solution Design, Enterprise Architecture, or Enterprise Information Technology. Excellent verbal and written communication skills, comfortable addressing both technical and business stakeholders clearly and persuasively. Strong customer-centric approach with proven ability to translate customer needs into clear, business-focused solutions. Digital leadership skills, capable of empowering and leading pre-sales engagements. Agility and adaptability, able to keep pace with the rapidly evolving cybersecurity landscape. Excellent decision-making skills, capable of providing timely, informed recommendations. Strong time management and prioritisation skills, able to effectively manage multiple tasks and conflicting priorities while maintaining high-quality standards
Reading, United Kingdom
Hybrid
Full Time
25-04-2025
Company background Company brand
Company Name
SearchWorks
Job Title
Cyber Security Specialist
Job Description
Are you interested in joining a business that is redefining an industry and launching products that help cement the place of our private hire/taxi operator customers in a global marketplace? What You'll Do: Enhance the security of our technology, wider organisation, and suppliers. Manage and prioritise the remediation of vulnerabilities in our SaaS platform using secure development practices. Implement and oversee vulnerability management programs. Communicate effectively with technical and non-technical stakeholders, influencing senior teams. Contribute to and own cyber security aspects of our ISO27001 Information Security Management System. Ensure cyber security compliance with company policies, standards, and obligations. What You'll Need to Succeed: 2 years + Experience in a cyber-security role Working knowledge of technical and cyber security standards Working knowledge of industry best practices (such as NIST Framework, OWASP top ten, SANS and NCSC Guidance) Technical knowledge of information systems, infrastructure, and networks Security monitoring and testing technologies such as vulnerability scanning, penetration testing, SIEM, IDS Experience with vulnerability management tools and processes (Rapid 7, Wiz etc.) Experience of operating with and to the ISO27001 standard Cloud computing cyber security assurance (Azure/Office 365) Techno-Functional experience
Manchester, United Kingdom
Hybrid
Full Time
25-04-2025