hackajob is partnering with ScottishPower to fill this position. Create a profile to be automatically considered for this role—and others that match your experience.
Senior Security Operations Analyst – Vulnerability Management
ScottishPower HQ, Glasgow – hybrid working (2 days per week on site, 3 days remote)
Salary: £46-57K (up to 10% Performance Bonus + Single Healthcare) Permanent, Full Time
**Due to the nature of this role, the successful candidate will need to be able to obtain NSV SC clearance – You will need to have lived continuously in the United Kingdom for a period of 5 years before being eligible to meet the Minimum Residency Criteria**
Help us create a better future, quicker
As Senior Security Operations Analyst you’ll be responsible for coordinating and executing a range of security services within the Cyber Security Operations team focusing on Vulnerability Management. The wider team covers Threat Intelligence, Incident Response, Event Monitoring, Security Device Configuration, Security Testing, Digital Forensics, Threat Hunting and Threat Reporting.
What you'll be doing
You’ll coordinate with Local and Global Security Operations Teams and be responsible for the discovery of vulnerabilities and driving remediation via various teams within ScottishPower. You will create and embed new processes and services within the Cyber Security Operations team to ensure the successful delivery and operation of the vulnerability management programme required by the UK Cyber Fusion Centre.
You will manage day to day coordination of supplier activity in relation to various operational security services such as penetration testing, red team exercises, vulnerability scanning and analysis for the UK, while providing expert input in the definition of a programme of security initiatives for inclusion in the Global Security Plan.
You will provide support to the rest of the Cyber Security Operations Team by coordinating activity in relation to the definition, build and support of the tools and services required by the Cyber Security Operations Team. Owning the delivery of appropriate support models for all vulnerability management tools.
You will work closely with IT and OT security functions to ensure the delivery of security services and collation and distribution of vulnerability metrics where required.
What you'll bring
We are looking for you to bring significant experience of coordinating Cyber Security Operations in an organisation of similar scope and scale to ScottishPower, with previous IT Security Operations experience in a Global organisation preferred. Specialist knowledge of IT Security as evidenced by relevant industry qualifications (e.g. LDR516, GCIH, CIH, CEH, PEN-200, OSCP) and experience in configuring and supporting security tools and managing activities relating to the understanding and dissemination of vulnerability risk to senior stakeholders.
Experience in coordinating security service providers and security software suppliers and an awareness of key legislation and regulation impacting the delivery of IT Security, and understanding of OT Security challenges and solutions, along with being able to support SME input into Cyber Security Operations Strategies and Product Roadmaps. Bringing an understanding and awareness of working within a Vulnerability Management role, you will be able to work closely with the Vulnerability Manager to support business deliverables.
You’ll possess excellent communication skills, comfortable working with all levels of stakeholder and able to build long lasting effective relationships with key stakeholders locally and globally. You’ll have highly developed problem solving and delivery skills, and able to analyse complex issues and provide recommendations to solutions. You’ll be able to distil technical issues into a form that can be easily digested by non-technical stakeholders and can influence and negotiate where appropriate.
What we're looking for
Skills and experience in understanding all aspects of Security Operations at a technical level.
Experience coordinating a vulnerability management programme at scale across multiple functions.
Experience in the creation of metrics and reporting of technical information to non-technical stakeholders.
Awareness of key legislation and regulation impacting IT/OT control requirements in an energy utility.
Experience in planning, managing and controlling security operations functions.
Record of academic achievement, including some form of recognised qualification from further education, such as a degree or diploma.
Good oral and written communication skills.
Must be a proven team player to work, promote and consolidate efficient team working relationships.
*The role operates as part of a global team and periodic travel to Spain and other company locations may be required.
What’s in it for you
As well as a competitive salary which is reviewed annually, you can also enjoy a number of other benefits. With our pension scheme, we’ll double match your contribution up to a company contribution of 10%.
hackajob is partnering with ScottishPower to fill this position. Create a profile to be automatically considered for this role—and others that match your experience.
Level up the hackajob way. Verify your skills, learn brand new ones and test your ability with Pathways, our learning and development platform.