Cloud Assurance Specialist
Division - Operations
Department - Cyber and Information Resilience
Salary: National (Edinburgh and Leeds) ranging from £60,000 to £78,000 and London from £70,000 to £85,000
The FCA regulates the conduct of 45,000 firms in the UK to ensure our financial markets are honest, fair and competitive. Follow this link to find out more About the FCA.
We are seeking a skilled and experienced Cloud Assurance Analyst to join our Cyber Assurance team, which is part of the Cyber & Information Resilience (C&IR) department.
Cyber and Information Resilience (C&IR) is responsible for the management of cyber security at the FCA. 'Cyber security' means the protection of the FCA's data and systems from malicious activity, including theft, damage and disruption, in order that the FCA can deliver its key business functions. C&IR is now part of a new formed Directorate lead by our CISO, Director of Cyber & Operational Resilience Division.
As a Cloud Assurance Specialist, you will act as a subject matter expert in relation to cloud security, working closely with a variety of projects and BAU throughout the FCA. You will be responsible for providing security input, technical oversight, advice and assurance, to ensure cloud services utilised by the organisation are implemented and operated securely.
Your expertise will ensure that our cloud environments are secure, compliant, and resilient against evolving cyber threats.
What you will be doing
-
Cloud Posture Management Toolsets - ability to uplift security posture management controls to reflect greater business dependency and increased targeting of our cloud environments
-
Competency to be able to have technical and strategic conversations with respect to Cloud Posture management Tools on complex technical designs and deployments
-
Cloud administration, security, or auditing of key cloud platforms such as Azure, AWS and GCP
-
Conduct regular security audits and risk assessments of cloud infrastructure to identify security vulnerabilities and risks
-
Working with DevSecOps practices to integrate cloud security controls into the software development lifecycle and automated CI/CD pipelines
-
Defining security metrics and reporting (KPI’s and KRI’s)
What you will get from the role
-
Tackle a challenging and varied security portfolio, collaborating with key stakeholders and senior members across the FCA
-
Support and drive the cloud assurance agenda
-
Innovate and contribute to an evolving team within the FCA
-
Broaden cloud technical skills and knowledge
-
Participate in the development of cyber and information assurance activities within the FCA
Which skills are required?
We are a Disability Confident Employer; therefore, disabled people or individuals with long-term conditions who best meet the minimum criteria for a role will go through to the next stage of the recruitment process. (To learn more about the Disability Confident Scheme Click Here)
Minimum
-
Direct experience of industry security best practices (NCSC, CSA, NIST) and apply them to cloud platforms (e.g., Azure, AWS, Salesforce)
-
Experience translating complex security issues for diverse audiences which includes creating assurance processes and managing monthly reporting
-
Proven experience of leading or participating in comprehensive cloud risk assessments and reporting findings with clear recommendations for remediation
Essential
-
Excellent Experience with Stakeholder Management
-
Demonstratable Cloud Security Architecture and Implementation experience
-
Experience using Cloud Posture Management tools
-
Experience Carryout Cloud Risk Assessments
-
Experience Defining Security Metrics - Key Performance Indicators and Key Risk Indicators
We are proud to be an inclusive employer and our ambition is to cultivate a culture for all employees that respects their individual strengths, views, and experiences. We believe that our differences and similarities enable us to be a better organisation – one that makes better decisions, drives innovation, and delivers better regulation.
Within the workplace you will have access to various employee resource groups which aim to promote and achieve a healthy work / life balance and support our diversity ambitions.
Did you know? 50% of our Executive Committee were the first in their family to attend university.
The FCA is committed to achieving greater diversity across all levels of the organisation. Given this, we particularly welcome applications from women, minority ethnic, disabled, and neurodivergent candidates for our Senior Associate role.
Benefits of working at the FCA
-
25 days holiday per year plus bank holidays
-
Hybrid working (work from home up to 60% of your time)
-
Private healthcare with Bupa
-
A non-contributory Pension of at least 8%
-
Life assurance
-
Income protection
We also have a competitive flexible benefits scheme which gives you the opportunity to create a personalised benefits package, tailored to suit your lifestyle.
We welcome applications from candidates who are looking for flexible arrangements. Many of our staff work flexibly including working part-time, staggered hours, and job shares. We can’t promise to give you exactly what you want but we can explore what might work best for both sides.
Follow this link to see what life is like at the FCA - Life at the FCA
Application Support
We are dedicated to removing barriers and ensuring our application process is accessible to everyone. We offer a range of adjustments to make your application experience as comfortable and straightforward as possible.
If you have an accessibility need, disability, or condition requiring changes to the recruitment process, please contact your recruiter using the details below and they will be happy to discuss this further with you.
Useful information
-
This role is graded as Senior Associate – Regulatory
-
SC Clearance is required for this role - SC Guidance The successful candidate will hold or will be required to obtain Security Clearance (SC) level vetting.
-
Advert closing date: 3rd February
-
CV Review/Shortlist: 5th/6th February
-
Screening calls: w/c 10th Feb
Your Recruiter will discuss the process in detail with you during screening for the role, therefore, please make them aware if you are going to be unavailable for any date during this time.
Got a question?
If you are interested in learning more about the role please contact:
-
For internal applicants, please contact Katie Ayling at [email protected]
-
For external applicants, please contact Asha Gladis at [email protected]
Applications must be submitted through our online portal. Applications sent via email will not be accepted.
Top Skills
What We Do
We work to ensure financial markets work well for individuals, for businesses and for the economy as a whole.
We do this by:
- regulating the conduct of approximately 50,000 businesses
- prudentially supervising 48,000 firms
- setting specific standards for around 18,000 firms
We were set up on 1 April 2013, taking over conduct and relevant prudential regulation from the Financial Services Authority (FSA).
Our Head Office is based in London, and we work across the UK, from our office in Edinburgh and via colleagues in Belfast and Cardiff.
Firms and individuals must be authorised or registered by us to carry out certain activities. Before we grant authorisation, firms must demonstrate that they meet a range of requirements. We then supervise these firms to make sure they continue to meet our standards and rules after they’re authorised. If firms and individuals fail to meet these standards, we have a range of enforcement powers we can use.
We work alongside the Prudential Regulation Authority (PRA), the prudential regulator of around 1,500 banks, building societies, credit unions, insurers and major investment firms.