
Cyber Security Analyst, Risk
Sheraton Heathrow Hotel
full-time
Posted on:
Location Type: Hybrid
Location: London • United Kingdom
Visit company websiteExplore more
Tech Stack
About the role
- support the day-to-day oversight and management of cyber risk across the organisation
- ensure that cyber risks are effectively identified, assessed, documented and managed in accordance with Heathrow’s policies, enterprise risk framework and recognised industry best practice
- strengthen cyber risk management practices, ensuring that risks are properly identified, assessed and treated in line with Heathrow policies and recognised industry standards
- contribute to the development and continuous improvement of cyber risk policies, standards and frameworks
- help mature and drive effective cyber risk management practices across the business
- support the delivery of Heathrow’s third-party risk management programme
- compile and analyse data for management reporting and metrics
- maintain a comprehensive and current understanding of Cyber Security and Information Security threats.
Requirements
- Proven experience operating in cyber risk roles. Experience in mixed IT/OT environments would be advantageous.
- Relevant risk, assurance and/or cyber leadership certifications, such as CISSP, CISM, C-RISC, CISA, ISO 27001 Lead Auditor / Lead Implementor would be advantageous
- Knowledge and understanding of key Information Security controls/processes
- Experience applying Cyber Risk Management frameworks (e.g. ISO 27005, NIST Risk Management Framework, etc) in complex operational environments
- Understanding of cyber security standards and frameworks, in particular ISO 27001, NIST Cybersecurity Framework v2.0, and the NCSC Cyber Assessment Framework
- Understanding of the UK regulatory landscape for cyber security and resilience, including the Network and Information Systems Regulations 2018.
- Knowledge and experience of relevant aviation security frameworks (e.g. CAP1753) would be advantageous.
Benefits
- competitive salaries and excellent benefits
- performance-based annual bonuses
- longer-term Share in Success Bonus plans
- generous annual leave allowances
- market-leading pensions
- family friendly policies
- access to private health insurance
- wide range of wellbeing tools
- varied learning and development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
cyber risk managementinformation security controlsdata analysisrisk assessmentrisk documentationcyber security standardscyber risk frameworksISO 27001NIST Risk Management Frameworkaviation security frameworks
Soft Skills
leadershipcommunicationorganizational skillscollaborationproblem-solving
Certifications
CISSPCISMC-RISCCISAISO 27001 Lead AuditorISO 27001 Lead Implementor