Senior Information Security Analyst – Cloud Specialist

March 27, 2024

Job Description


Job title: Senior Information Security Analyst – Cloud Specialist

Company: Sainsbury’s

Job description: Job Description:Job Title / RoleSenior Information Security Analyst – Cloud SpecialistReporting toInformation Security Manager – Sainsbury’sDivision/DeptData Governance and Information Security (Corporate Services)LocationCoventry, Holborn, Manchester, Milton Keynes (Flexible)In a nutshellThe Senior Information Security Analyst – Cloud Specialist is responsible for helping to manage the Sainsbury’s cloud estate.Sainsbury’s has a multi-cloud strategy so familiarity with Azure and AWS is essential. You should hold either Speciality or Professional qualifications for at least one of these vendors.You should have expertise and knowledge of cloud security architecture along with experience of recommending secure design patterns.What you need to do

  • Support the security, resilience and redundancy of the cloud environments
  • Liaise with the Security Testing Team to ensure that Ethical Hacking, Code Reviews, Application Scanning and Infrastructure Scanning is conducted
  • Provide Subject Management Expertise to colleagues and management
  • Help identify, assess and manage strategic, operational and emerging risks affecting the Cloud and articulate, quantify and monitor risks according to risk appetite
  • Build and maintain strong senior stakeholder relationships within technology and the business to understand security risk and drive robust risk-based decision making
  • Effectively articulate technical issues to business units and engineering teams
  • Define Security Non-Functional Requirements for each project and ensure that they are fulfilled prior to going into service, ensuring the relevant technology standards are applied to specific projects
  • Liaise with third-party strategic partners and providers who support Sainsbury’s

What you need to know and show

  • A strong technical understanding of security to ensure systems are designed and built securely and to help continually improve our security posture
  • Appreciation of containerisation technologies such as Docker, Kubernetes etc.
  • Experience with logging, monitoring, load balancing/proxies and API gateways
  • Working knowledge of GitHub, Jenkins, Ansible, Chef and Puppet
  • In-depth knowledge of the OWASP Top 10, Mitre ATT&CK, NIST frameworks, PCI-DSS and Cyber Kill Chain
  • Familiarity with PAM, EDR, AV, IPS, SIEM, WAF and DLP technologies
  • The ability to verify solutions and gain assurance that they are fit for purpose through demonstrable evidence of controls and testing
  • Strong understanding of the changing threat landscape and how this may affect our systems
  • The ability to challenge concerns and report through appropriate channels
  • Self-drive, motivation and the ability to work independently to deliver expected outcomes
  • In-depth understanding of data and security risks in a large enterprise
  • Risk Management experience and understanding of Risk Management Frameworks
  • Strong analytical and report writing skills

Desirable QualificationsYou will have two (or more) of the following (including Cloud):

  • CompTIA CASP+, Cloud+, Security+, Network+, Linux+
  • CSA CCSK / CCAK
  • AWS Certified Security or Certified Solutions Architect
  • Microsoft Certified Azure Solutions Architect Expert
  • Microsoft Certified Cybersecurity Architect Expert
  • GCP Professional Cloud Security Engineer
  • GIAC Cloud Security Automation
  • (ISC)² CISSP / CCSP / SSCP
  • ISACA CISA / CISM / CRISC / CGEIT
  • MSc. Information/Cyber Security

As well as lots of on-the-job training and endless opportunities, you’ll get:

  • Colleague discount across our multi-brands – Sainsbury’s, Argos and Habitat
  • Holiday allowance
  • Bonus scheme
  • Pension plan
  • Special offers on gym memberships, restaurants, holidays, retail vouchers and more

Work-life balance is important to us, so we offer our colleagues as much flexibility as possible in line with the needs of their role. We trust them to decide how, where and when they work, combining remote and collaborative working with a flexible approach to hours, giving them plenty of time and space for life outside of work whilst delivering against our business goals.Responsibilities:We’d all like amazing work to do, and real work-life balance. That’s waiting for you at Sainsbury’s. Think about the scale it takes for us to feed the nation. The level of data, transactions and variety it involves. Then you’ll realise that ours is a modern software engineering environment because it has to be. We’ve made serious investment into a Tech Academy and into setting standards and principles. We iterate, learn, experiment and push ways of working such as Agile, Scrum and XP. So you can look forward to awesome opportunities in everything from AI to reusable tech.Qualifications:We are committed to being a truly inclusive retailer so you’ll be welcomed whoever you are and wherever you work. Around here, there’s always the chance to try something new – whether that’s as part of an evolving team or somewhere else across the business – and we take development seriously and promise to support you. We also recognise and celebrate colleagues when they go the extra mile and, where possible, offer flexible working. When you join our team, we’ll also offer you an amazing range of benefits. Here are some of them:Starting off with colleague discount, you’ll be able to save 10% on your shopping online and instore at Sainsbury’s, Argos, TU and Habitat, and we regularly increase the discount to 15% at points during the year. We’ve also got you covered for your future with our pensions scheme and life cover. You’ll also be able to share in our success as you may be eligible for a performance-related bonus of up to 20% of salary, depending on how we perform.Your wellbeing is important to us too. You’ll receive an annual holiday allowance, and you can buy up to an additional week’s holiday, and we provide private heathcare. We also offer other benefits that will help your money go further such as season ticket loans, interest free car loan of up to £10k, cycle to work scheme, health cash plans, salary advance (where you can access some of your pay before pay day) as well access to a great range of discounts from hundreds of other retailers. And if you ever need it there is also an Employee Assistance Programme.Moments that matter are as important to us as they are to you which is why we give up to 26 weeks’ pay for maternity or adoption leave and up to 4 weeks’ pay for paternity leave.Please see www.sainsburys.jobs for a range of our benefits (note, length of service and eligibiity criteria may apply).

Expected salary:

Location: London

Location