Logo of Huzzle

Attack Surface Reduction Analyst - Edinburgh

image

NatWest Group

Jun 12, 2024

Applications are closed

  • Job
    Full-time
    Junior & Mid Level
  • Software Engineering
  • Edinburgh

Requirements

  • To be successful in this role, you’ll need knowledge of one or more security subject areas and experience of setting risk appetites. You’ll also demonstrate experience of, or a willingness to learn risk management frameworks.
  • Additionally, you’ll need:
  • Good understanding of security principles and networks
  • Experience of implementing security controls in cloud environments
  • Strong people and stakeholder management skills
  • Knowledge of vulnerability management processes and tooling
  • The ability to communicate complex technical information in a clear and concise manner

Responsibilities

  • Supporting with the identification of risks, while contributing to risk management strategies to achieve business objectives and customer outcomes
  • Understanding and implementing Agile methodologies and actively contributing to finding opportunities to build security early into design
  • Making sure that decisions made are based on robust data, return on investment and value measures that demonstrate thoughtful and intelligent cost management
  • Actively contributing to your centre of excellence (CoE) specialism by cross sharing learnings and best practice with CoE and community of practice colleagues
  • Building and leveraging relationships with key stakeholders across the bank to support them in understanding and managing risk effectively
  • Identifying vulnerabilities in a range of environments across a complex technology estate
  • Triaging vulnerabilities with a view to prioritising remediation activities
  • Analysing and presenting data to management to guide tactical and strategic decision making

FAQs

What is the main focus of an Attack Surface Reduction Analyst?

The main focus of an Attack Surface Reduction Analyst is to understand and ensure robust security is continuously considered and incorporated at every stage, programme increment and feature team delivery throughout the development lifecycle and through to support.

How does an Attack Surface Reduction Analyst collaborate with feature teams?

An Attack Surface Reduction Analyst collaborates with feature teams by participating in story refinement, sprint planning and retrospective sessions to establish a culture of innovation and strategic thinking.

What is the goal of an Attack Surface Reduction Analyst in terms of security?

The goal of an Attack Surface Reduction Analyst is to ensure that the bank has knowledge of, and opportunities to exploit, the latest developments in security to reduce attack surfaces and vulnerabilities.

A relationship bank for a digital world. We champion potential.

Finance
Industry
10,001+
Employees
1968
Founded Year

Mission & Purpose

We’re a business that understands when our customers and people succeed, our communities succeed, and our economy thrives. As part of our purpose, we’re looking at how we can drive change for our communities in enterprise, learning and climate. As one of the leading supporters of UK business, we’re prioritising enterprise as a force of change. We’re focusing on the people and communities who have traditionally faced the highest barriers to entry and figuring out ways to remove these. Learning is also key to our continued growth as a company in an ever changing and increasingly digital world. By setting a dynamic and leading learning culture, our people prosper, and our customers are given the tools to continue to improve their financial capability and confidence. One of the biggest challenges we all face in our future is climate change. That’s why we’ve put it right at the core of our purpose. We want to champion climate solutions with financing and entrepreneurial support, fully embed climate into our culture and decision making, and be climate positive by 2025. We’re committed to using our purpose to break down barriers, drive change and ultimately create a great place to work.