Cybersecurity Role Overview
Safeguarding digital assets as a Digital Security Strategist is critical for our Critical National Infrastructure (CNI) environment. This role involves identifying, assessing, and mitigating cybersecurity risks, developing security frameworks and solutions, monitoring threats, managing incident response, enhancing threat intelligence capabilities, and ensuring cyber resilience across the organisation and its customer environment.
Key Responsibilities:
* Threat Detection & Monitoring: Continuously monitor networks, systems, and applications for suspicious activity and cyber threats. Analyse and investigate security alerts, escalating as required.
* Incident Response & Recovery: Lead and support incident response activities to minimise disruption and recovery times. Conduct forensic investigations, root cause analysis, and incident reporting.
* Vulnerability & Risk Management: Perform vulnerability assessments, penetration testing, and regular security audits. Identify potential risks and recommend mitigation strategies and security enhancements.
* Security Engineering: Design, configure, and maintain security tools and infrastructure (e.g., firewalls, IDS/IPS, endpoint protection, VPNs). Enhance secure network and cloud architectures across hybrid environments.
* Compliance & Governance: Develop and enforce cybersecurity policies, standards, and procedures. Ensure compliance with regulatory and industry frameworks (GDPR, ISO 27001, NIS2). Maintain audit readiness and contribute to cyber risk reporting.
* Cyber Threat Intelligence: Collect, analyse, and interpret threat intelligence to inform proactive defence strategies. Collaborate with internal teams, suppliers, and customers to exchange intelligence and support remediation.
* Security Awareness & Training: Support cyber awareness programmes to reduce human risk. Create training materials and deliver workshops on security best practices.
Required Skills & Qualifications
The ideal candidate will possess strong analytical skills, excellent communication skills, and a deep understanding of cybersecurity principles and technologies.