M365 Security Specialist

London, United Kingdom

Financial Conduct Authority

The Financial Conduct Authority is the conduct regulator for around 50,000 financial services firms and financial markets in the UK and the prudential supervisor for 48,000 firms

View all jobs at Financial Conduct Authority

Apply now Apply later

M365 Security Specialist

Division – Cyber and Information Resilience

Salary – National (Edinburgh and Leeds) ranging from £52,400 to £80,600 and London £57,700 to £88,600 per annum (Salary offered will be based on skills and experience)

About the FCA

The FCA regulates the conduct of 45,000 firms in the UK to ensure our financial markets are honest, fair and competitive. Follow this link to find out more About the FCA.

The Cyber and Information Resilience division was established in response to the growing threat of cyber security risks and the FCAs increasing reliance on data to effectively regulate the financial sector and ensure markets function well. This team integrates the key disciplines of cyber and information security, information management, and data privacy, providing a cohesive approach to safeguarding information and supporting regulatory objectives.

The team is primarily focused on the following key objectives:

  • Assuring services to ensure our systems, infrastructure, suppliers, and business processes are compliant with our policies and the FCA’s risk appetite

  • Validating that operational decisions are made in accordance with our security policies and standards, and do not increase the FCA’s overall risk exposure

  • Analysing compliance with the fundamental processes and plans required to manage risk and safeguard our most important assets

  • Determining that appropriate governance measures and controls are in place to ensure identified cyber risks and vulnerabilities are properly prioritised

The role of Microsoft 365 Security Specialist has been newly created as a result of the Document Management Transformation (DMT) project which is implementing SharePoint as a repository for FCA’s corporate records. The focus will be to provide experience and guidance to build and enhance the capability of Microsoft Security and Compliance Centre.

What will you be doing?

  • Acting as the subject matter expert for the security of the Microsoft Office 365 Security and Compliance Centre, and building core functionality within the platform

  • Providing a general understanding of the core and enhanced capabilities available through various components of Microsoft E5 licenses, including Data Loss Prevention, Threat Protection, Information Protection, and Advanced Compliance

  • Ensuring the security of potentially sensitive archived records by enabling appropriate access only to authorised individuals, in line with FCA policies and procedures

  • Collaborating with a range of stakeholders to understand their compliance needs – such as monitoring, alerting, and reporting – while asking questions and constructively challenging where appropriate to deliver the best possible solution

  • Assisting in the monitoring of alerts and reports across FCA business areas, and ensuring timely resolution to secure corporate records

What will you get from the role?

  • Join a dedicated team of professionals committed to safeguarding our corporate records, ensuring security at the highest level

  • Expand your expertise in Microsoft Office 365 Security and Compliance Centre, alongside powerful tools like PowerBI and Azure, gaining hands-on experience with cutting-edge technologies

  • Collaborate with diverse stakeholders across the FCA, including senior leaders, giving you the opportunity to make a meaningful impact at an influential level

Which skills are required?

We are a Disability Confident Employer; therefore, disabled people or individuals with long-term conditions who best meet the minimum criteria for a role will go through to the next stage of the recruitment process. (To learn more about the Disability Confident Scheme Click Here)

Minimum

  • Prior experience delivering solutions within the Microsoft 365 ecosystem, including hands-on experience with Microsoft Purview for information security and compliance

  • Proven experience safeguarding Critical Information Assets: developed and maintained an ISO27001 aligned risk management framework that reduced security incidents driving a compliance regime that is supported by industry standards such as NIST compliance

  • Prior experience using Microsoft Azure

Essential

  • Working knowledge of Microsoft Security and Compliance core functionality, used to deliver optimal business solutions and ensure compliance across the Microsoft Office Suite of products

  • Knowledge of additional tools such as Power BI and PowerShell scripts to enhance monitoring, alerting, and reporting within the Microsoft Office 365 environment

  • Knowledge and experience of core and enhanced capabilities available through various components of Microsoft E5 licenses, including Data Loss Protection, Threat Protection, Information Protection, and Advanced Compliance

  • Working knowledge of information management and security concepts, objectives, and industry standards such as NIST CSF, ISO15489, GDPR, and ISO27001

  • Experience implementing policy modules for automation aligned with industry standards, including ISO27001 and GDPR

Our Values & Diversity

We are proud to be an inclusive employer and our ambition is to cultivate a culture for all employees that respects their individual strengths, views, and experiences. We believe that our differences and similarities enable us to be a better organisation – one that makes better decisions, drives innovation, and delivers better regulation.

Within the workplace you will have access to various employee resource groups which aim to promote and achieve a healthy work / life balance and support our diversity ambitions.

Did you know? 50% of our Executive Committee were the first in their family to attend university.

Benefits of working at the FCA

  • 25 days holiday per year plus bank holidays (amend based on grade) 

  • Hybrid working (work from home up to 60% of your time)

  • Private healthcare with Bupa 

  • A non-contributory Pension of at least 8%

  • Life assurance

  • Income protection

  

We also have a competitive flexible benefits scheme which gives you the opportunity to create a personalised benefits package, tailored to suit your lifestyle.

We welcome applications from candidates who are looking for flexible arrangements.  Many of our staff work flexibly including working part-time, staggered hours, and job shares.  We can’t promise to give you exactly what you want but we can explore what might work best for both sides.

Follow this link to see what life is like at the FCA - Life at the FCA

Application Support

We are dedicated to removing barriers and ensuring our application process is accessible to everyone. We offer a range of adjustments to make your application experience as comfortable and straightforward as possible.

If you have an accessibility need, disability, or condition requiring changes to the recruitment process, please contact your recruiter using the details below and they will be happy to discuss this further with you.

Useful Information and Timeline

This role is graded as Senior Associate – Regulatory

Security Clearance (SC) is required for this role – SC Guidance  

The successful candidate will hold or will be required to obtain SC level vetting

  • Advert Closing Date: 25th May

  • CV Review/Shortlist: 19th & 27th May

  • First Round Screening Interviews: 23rd May & 2nd June

  • Competency Based Interview: 29th-30th May & 6th-9th June

Your Recruiter will discuss the process in detail with you during screening for the role, therefore, please make them aware if you are going to be unavailable for any date during this time. 

Got a question?

If you are interested in learning more about the role, please contact:

Steve.Christopher@fca.org.uk 

Applications must be submitted through our online portal. Applications sent via email will not be accepted.

Apply now Apply later
Job stats:  0  0  0

Tags: Automation Azure Business Intelligence Clearance Compliance GDPR Governance ISO 27001 Monitoring NIST PowerShell Privacy Risk management RMF Security Clearance SharePoint Vulnerabilities

Perks/benefits: Career development Competitive pay Equity / stock options Flex hours Team events

Region: Europe
Country: United Kingdom

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.