The Role
Supports cyber security operations by monitoring security tools, investigating alerts and incidents, managing vulnerabilities, coordinating penetration testing, improving security controls, and producing risk reports. The role also contributes to threat intelligence, SOC detection use cases, incident response procedures, and security projects involving cloud technologies, integrations, and new capabilities.
Summary Generated by Built In
The Group Information Security Team (GIST) is a central, highly visible, responsive, and effective team which enables Arrow Global Group to deliver against its strategic objectives by reducing risk associated with information security to an acceptable level. Following the continued evolution of the Group Information Security operating model and increasing requirements to maintain a secure business and IT environment, GIST is seeking a Group Cyber Security Operations Analyst to support and enhance its Cyber Security Operations capabilities. The primary purpose of the role is to support the Confidentiality, Integrity and Availability (CIA) of information processed by Arrow Global and its portfolio companies through the effective operation, monitoring, and continuous improvement of key cyber security controls and services.
Key Responsibilities
- Monitor outputs from security tools and services including the Security Operations Centre (SOC), email security gateways, web security gateways, vulnerability management platforms, cloud security solutions, and other security technologies.
- Review, investigate, and coordinate the remediation of security alerts, incidents, and threats in conjunction with local IT teams and third-party service providers.
- Support the Incident Detection and Response process, ensuring incidents are appropriately investigated, documented, escalated, and resolved.
- Manage and track the end-to-end vulnerability management lifecycle, including vulnerability identification, reporting, remediation tracking, and escalation of overdue findings.
- Coordinate internal and external penetration testing activities and ensure findings are appropriately tracked through to resolution.
- Support the management and continuous improvement of security controls including endpoint protection, email security, web security, identity and access management, cloud security, and code repository security controls.
- Work closely with local IT teams, Cyber Security partners, and third-party service providers to ensure security processes and standards are consistently implemented and maintained.
- Produce regular operational reports, dashboards, and management information relating to cyber security risks, incidents, vulnerabilities, and control effectiveness.
- Maintain awareness of emerging threats, vulnerabilities, attack techniques, Artificial Intelligence (AI) security risks, and industry best practices.
- Produce actionable threat intelligence summaries and recommendations for security and technology teams, drawing on emerging threats, vulnerabilities, and threat actor activity relevant to Arrow Global's operating environment.
- Support the development of new SOC use cases, detection logic, and response procedures to improve security operations maturity.
- Act as a cyber security subject matter expert on projects involving new technologies, security capabilities, mergers, acquisitions, and business integrations.
Skills, Knowledge & Expertise
- Proven experience within a Cyber Security, Information Security, Infrastructure, or IT Operations role.
- Strong understanding of cyber security principles, technologies, and operational processes.
- Experience working with security monitoring platforms, security alerts, incidents, and vulnerability management processes.
- Knowledge of common security technologies including endpoint protection, email security, web security, identity and access management, vulnerability management, cloud security, and security monitoring solutions.
- Hands-on experience administering and supporting security technologies including SIEM, EDR, Secure Email Gateway (SEG), Secure Web Gateway (SWG), CASB, and vulnerability management platforms.
- Experience supporting Microsoft Entra ID security controls, including Conditional Access Policies and identity protection capabilities.
- Experience working with Security Operations Centres (SOC), Managed Security Service Providers (MSSP), or equivalent security service providers.
- Ability to analyse technical information and communicate findings clearly to technical and non-technical stakeholders.
- Effective prioritisation and organisational skills with the ability to manage multiple competing priorities.
- Strong analytical and problem-solving skills.
- Knowledge of cyber threat intelligence concepts, threat actor behaviours, and attack frameworks such as MITRE ATT&CK.
- Understanding of Microsoft 365, Azure, AWS, cloud environments, and associated cyber security risks.
About
Great talent comes in many forms, and we’re committed to building a diverse and inclusive team. Whilst a number of our roles do require specific qualifications and experience, and industry knowledge, we also value potential, unique perspectives, and transferable skills. If you’re excited about this opportunity but don’t meet every requirement, we’d still love to hear from you. We occasionally collaborate with recruitment agencies to fill niche or specialist roles. However, we do not accept agency terms or pay fees for speculative CVs submitted directly to our hiring managers or outside our Applicant Tracking System. If you are a recruitment agency interested in partnering with us for candidate supply, please reach out to [email protected]
Skills Required
- Proven experience in a Cyber Security, Information Security, Infrastructure, or IT Operations role
- Strong understanding of cyber security principles, technologies, and operational processes
- Experience with security monitoring platforms, security alerts, incidents, and vulnerability management processes
- Knowledge of endpoint protection, email security, web security, identity and access management, vulnerability management, cloud security, and security monitoring solutions
- Hands-on experience administering SIEM, EDR, Secure Email Gateway, Secure Web Gateway, CASB, and vulnerability management platforms
- Experience supporting Microsoft Entra ID security controls, Conditional Access Policies, and identity protection capabilities
- Experience working with Security Operations Centres, Managed Security Service Providers, or equivalent providers
- Ability to analyze technical information and communicate findings to technical and non-technical stakeholders
- Effective prioritization and organizational skills for managing competing priorities
- Strong analytical and problem-solving skills
- Knowledge of cyber threat intelligence, threat actor behaviors, and attack frameworks such as MITRE ATT&CK
- Understanding of Microsoft 365, Azure, AWS, cloud environments, and associated cyber security risks
Arrow Global Group Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Arrow Global Group and has not been reviewed or approved by Arrow Global Group.
-
Healthcare Strength — Company‑funded private medical insurance, a 24/7 Employee Assistance Programme, an annual company‑funded cancer screening, and a healthcare cash plan are part of the core offer. These provisions indicate robust health coverage that extends beyond basic care.
-
Leave & Time Off Breadth — Annual leave starts at 25 days with options to buy or sell days, alongside carers, faith/cultural, study, and life‑event leave plus paid volunteering time. These options broaden time‑away flexibility and support different life circumstances.
-
Flexible Benefits — A flexible benefits platform offers gym and hotel discounts, cycle‑to‑work, dental insurance, a retail discount card, and a gadget scheme, with some options employee‑funded. Flexibility to tailor add‑ons can increase perceived value across varied needs.
Arrow Global Group Insights
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
Arrow Global is a leading European vertically integrated alternative asset manager specializing in private credit and real estate. Founded in 2005, it acquires and manages loan and real estate portfolios, delivering risk-adjusted returns for global investors.








