• Profile

Job Description

***This role is currently only open to employees of Arbuthnot Latham***

Arbuthnot Latham has been associated with banking since 1833. We combine private and commercial banking, wealth planning and investment management. We believe in traditional relationship and service-led banking powered by modern technology.

Job Purpose

Support the Bank's operational cyber security capability through cyber security monitoring, incident response coordination, vulnerability management, supplier assurance and operational reporting activities.

To place the interests of customers at the centre of all activities, act in a way that is consistent with achieving good outcomes for consumers; and to comply with the FCA and PRA’s Conduct Rules.

Job Description

Key Responsibilities:

  • Support the day-to-day oversight of outsourced cyber security services, including Managed Detection and Response (MDR), Security Operations Centre (SOC) and threat monitoring providers.
  • Coordinate cyber security alerts, incidents and escalations, ensuring actions, decisions and outcomes are appropriately recorded and tracked.
  • Act as Incident Coordinator during cyber security incidents, supporting incident management, communications, action tracking and post-incident activities.
  • Maintain incident, vulnerability, threat intelligence and operational cyber security registers, ensuring records remain accurate and up to date.
  • Monitor vulnerability remediation activities and track progress against agreed remediation targets and risk tolerances.
  • Support cyber threat intelligence activities, including the production of threat updates, reporting and management information.
  • Support the operational effectiveness of cyber security tooling and services, ensuring incidents, alerts and service performance are appropriately monitored and reported.
  • Coordinate penetration testing activities, remediation tracking and assurance reporting.
  • Support supplier security reviews and third-party assurance activities, including evidence collection, action tracking and reporting.
  • Assist with cyber incident exercises, tabletop simulations and operational resilience testing activities.
  • Maintain cyber operational procedures, playbooks, runbooks and supporting documentation.
  • Produce cyber operational dashboards, management information, Key Risk Indicators (KRIs) and performance metrics.
  • Monitor service performance against agreed cyber security service levels, KPIs and contractual obligations.
  • Support attack surface management, threat exposure management and cyber hygiene improvement activities.
  • Analyse operational cyber security data and identify trends, risks or issues requiring escalation.
  • Develop professional knowledge and capability across cyber operations, incident response, threat management and cyber security disciplines.

Key Interfaces:

  • Cyber Operations & Third-Party Security Manager
  • Head of Cyber
  • Cyber Governance & Compliance Manager
  • Cyber Assurance & Architecture Manager
  • IT Infrastructure & Operations
  • Digital Workplace Team
  • Service Desk
  • Operational Resilience Function
  • Risk & Compliance
  • Third-Party Suppliers
  • Managed Security Service Providers (SOC/MDR)
  • Internal and External Auditors

Person Specification

Knowledge/Experience/Skills:

  • Strong analytical, organisational and problem-solving skills.
  • Ability to coordinate multiple activities and maintain accurate records.
  • Strong written and verbal communication skills.
  • Ability to work effectively under pressure and manage competing priorities.
  • Strong attention to detail.
  • Understanding of cyber security fundamentals and cyber threat concepts.
  • Understanding of incident response, vulnerability management and cyber operations principles.
  • Familiarity with Microsoft 365 and reporting tools.
  • Ability to analyse information and identify trends, risks or issues requiring escalation.
  • Ability to maintain accurate records, documentation and action tracking.
  • Interest in developing a career within cyber security operations and incident response.
  • Strong Microsoft Office skills, particularly Excel, Word and PowerPoint.
  • Demonstrable interest in cyber security, technology operations or cyber risk.

Qualifications:

Essential:

  •  Educated to A-Level standard (or equivalent experience).
 Desirable:
 
  •  Degree or equivalent qualification in Cyber Security, Information Technology or a related discipline.
  • ISC2 Certified in Cybersecurity (CC).
  • CompTIA Security+.
  • Microsoft Security Operations Analyst (SC-200).
  • Microsoft Security, Compliance & Identity Fundamentals (SC-900).
  • CREST Practitioner Intrusion Analyst (CPIA).
  • ITIL Foundation.
  • Cyber Essentials Foundation.

Competencies:

  • Problem Solving and Judgement
  • Customer Focus
  • Planning and Reviewing
  • Communication and Collaboration
  • Attention to Detail
  • Performance Focus
  • Resilience and Adaptability
  • Continuous Learning

About Us

Life, Work and Benefits

At Arbuthnot Latham, we seek proactive individuals who embrace high standards and bring the energy needed to drive success. In return, you can thrive in a dynamic environment that values your innovative ideas and provides the stability and support for your personal and professional growth.  Our human-scale ethos means that everyone is recognised as an individual, not just a number, creating a workplace where you truly belong and thrive.  

As a service led, relationship driven bank, in-person collaboration and wellbeing are important to us and drives our inclusive culture.  With this in mind, our Agile Working Policy offers one day a week working from home.

Benefits

  • Competitive holiday allowance with the ability to buy / sell / rollover up to five days per year
  • Pension via market leading provider
  • Private Healthcare cover
  • 4x Life Assurance
  • Discretionary Bonus
  • Access to a suite of flexible benefits including Cycle to Work Scheme, Gym Scheme, Health Assessment, Season Ticket / Travel loans and Dental insurance as well as other discounts / vouchers

Data Privacy and Reasonable adjustments

We take keeping your data security seriously.  For more detail on how we may keep your data please refer to our Privacy Notice

https://careers.arbuthnotlatham.co.uk/files/RecruitmentPrivacyNotice.pdf

Reasonable adjustments: Please let us know of any adjustments or arrangements that you may need to help you apply to this role or that will help you during the recruitment process. If you wish to discuss any particular requirements or concerns you have because of a disability or medical condition please contact us at [email protected]. Information you provide about any disability or medical condition will remain confidential unless it is necessary to disclose it to other members of staff or outside agencies to ensure the health and safety of yourself and others, or to implement the adjustments you require. In these circumstances we will first discuss with you how and to whom the information may be disclosed.