Access Management Analyst

Tesco Bank ,
Edinburgh, City of Edinburgh
Contract Type: Permanent

Overview

You’ll bring the ambition, we’ll provide the opportunities Tesco has built its success – and its reputation – on a tradition of excellent service and dedication to the customer, but Tesco Bank is about more than bringing these values to a new market. It’s about bringing a new approach to personal finances and retail banking. As we look to build upon existing talent within our senior and specialist roles, we’re creating a backbone of excellence – offering the highest-calibre of professional a chance for wide-ranging and long-lasting impact in a business that’s breathing new life into the industry. In the role of Access Management Analyst you will work with the Access Management manager to manage the Access Management, RBAC, UER and IT Roles within Tesco Bank in accordance with established Information Security Policy.You bring the knowledge and technical capability in applying Information Security policies and standards to drive technical controls around Access Management. Having good analytical problem solving skills with the ability analyse information and deliver excellent customer service. In the role you are accountable for: Assist users in defining their access rights and privileges and operate agreed logical access controls and security systems. Identify anomalies in access approvals and investigate to ensure all inappropriate access is removed. Deliver Access Management services in a consistent manner to ensure the security levels of Tesco Bank are maintained. Liaise with business and technical managers to ensure Access Management activity is undertaken within the defined timescales. Assist users with their requests for access within SLA. Operate the access management process for Tesco Bank platforms and applications. Liaise with business and technical managers to ensure Fulfilment activity is undertaken within the defined timescales. Prepare information for audit and assurance reviews. Conduct assurance control checks to ensure the accuracy of the review process, ensuring that all identified breaches are promptly and thoroughly investigated, updating process documentation where required. Draft, review and maintain procedures and documentation for CISO related operational activity. Reporting on identified risks including any vulnerabilities or control weaknesses. Working with the business to help mitigate security risk. Undertaking ad-hoc cyber and IT Security related work items as required. Experience required for role: Knowledge in Information Security standards and policies, in particular ISO27001. Knowledge of risk management techniques. Experience of working in an related IT/IS operational environment. Experience in providing effective MI to Senior Management. Knowledge of maintaining procedures and undertaking associated assurance. Relevant degree/qualification or experience.Wherever your talent lies, you’ll find challenge and reward in equal measure. We’re here to go the extra mile for our customers – and we’ll do the same for you. It’s simple. As long as you have the ambition, we’ll provide the opportunity for success. Visit our website and find the role that’s right for you.