Security Analyst II - Linux (Identity and Access Management)

Hours: 36

Salary: Competitive

Location: Welwyn Garden City

United Kingdom

Apply by: 23/08/2019


Security Analyst II - Linux (Identity and Access Management)

Welwyn Garden City

About the role

About the Cyber Security Team

Our Cyber Security team are the eyes and ears of our organisation. We use the latest technologies to increase visibility and protection of systems, services and data. To do this we need to stay ahead of the latest threats and continuously improve our tooling, techniques, and processes.

Responsible for developing and running security processes day-to-day for the Tesco Group, we’re continually working to step change security capability to further enhance the protection and controls that we offer for our customers and colleagues across the UK, Europe and Asia, and we’re looking to add great people to our growing team.

We believe that skilled and passionate people are our greatest asset in reducing risk to our business and customers. We encourage and support continual development and learning, and recognise the importance of keeping up with changes in technology and an evolving threat landscape.

About The Identity and Access Management (IAM) Team

With 440,000 colleagues across the Tesco group, managing joiners, movers and leavers presents a significant challenge.  The Identity and Access Management team, part of our Cyber Security team, is using automation and data science to ensure that people have the right access to do their job with as little friction as possible.

The Identity and Access Management team is made up of Product Managers, Engineers, Data Analysts and Operations Engineers working across the Tesco group to develop and deploy access controls. 

We’re responsible for ensuring that colleagues have the access they need to do their job and no more, reducing risk for the Tesco group.

You will be responsible for

As a Security Analyst II, you will be responsible for identifying and ensuring closure of control gaps in our estate in order to ensure compliance with Security Policies.

Our team’s job is to ensure that we implement high quality access controls across thousands of servers and hundreds of databases in multiple domains, as well as hundreds of business applications across our 9 group countries globally.

This role primarily relates to improving the consistency and quality of controls over access to Linux servers.  This will require deep understanding of Linux (RHEL, AIX) permissioning and access controls. 

This will primarily involve:

  • Carrying out technical analysis of current Linux authorisation configurations and implications for security posture.
  • Agreeing remediation patterns where configuration leads to controls issues with infrastructure teams
  • Identifying detailed remediation steps to be carried out in order to ensure policy alignment.
  • Working with infrastructure teams to ensure their completion.
  • Ensuring that new servers are delivered compliant with Security Policies.
  • Putting in place proactive (preferably automated) compliance checks to ensure visibility of control issues.

You will need

Given the scale at which Tesco operates, experience working to identify and use relevant datasets at scale will be critical to the success of the role. 

As Tesco is a fast-moving organisation, our technical environment is changing.  Security Analysts are key engagement points for infrastructure teams to ensure ongoing compliance and adherence to best practice.

You will also need to support and advise the Access Control team with complex operational queries in order to ensure ongoing policy adherence.

Key Skills and Experience

You’ll need to have demonstrated experience of:

  • A deep understanding of Linux and how privileges can be managed.
  • Strong scripting skills
  • Experience using Splunk (creating dashboards, writing stored queries) a plus.
  • A broad understanding of security concepts; an interest and passion for Cyber Security.
  • An analytical mindset; demonstrable ability to analyse complex problems to generate insight
  • Attention to detail and the ability to spot trends in data.
  • An ability to effectively prioritise your work given conflicting demands.
  • Strong written and verbal communication skills: articulating insight gained through data analysis to team members and those outside the team; making recommendations for next steps and remedial actions/improvements.
  • Showing consistently high energy levels; aspiring to make a significant difference over and above your core responsibilities.
  • Working within a large-scale organisation with distributed teams a plus.
  • An understanding of key Identity and Access Management concepts and controls necessary.
  • Experience working in a large-scale company in an IAM role of benefit.
  • Bachelors degree or demonstrable experience required; postgraduate degree desirable

About us

Our vision here at Tesco is to become every customer's favourite way to shop online, whether they are at home, out shopping, on the move, anywhere in the world.

We want our customers to be inspired and whatever they are looking for, we’re finding bigger and better ways to provide it.

Everything is underpinned by our continuous drive for the best tools and technology to deliver our vision. We’re driving innovation and transforming our Technology to become the world’s leading e-commerce business.

We need people who share our ambition to deliver for our customers; Passionate and confident people willing to take the initiative and drive us forwards. In return we offer excitement, a great team, an excellent benefit package, and significant career development opportunities.

Joining us means playing a part in defining; building and launching an ambitious roadmap of digital products that could affect the lives of millions of people over the years to come.

What’s in it for you

We offer excellent benefits that help make Tesco a great place to work.  These include but aren’t limited to:

  • An annual bonus scheme which you can achieve up to 3.5% of base salary
  • Colleague Clubcard (including a 2nd card for a family member) after 6 months service with 10% off most purchases at Tesco
  • Holiday starting at 25 days plus a personal day
  • A retirement savings plan - 4%-7.5% contribution rate
  • Life Assurance - 5 x contractual pay
  • Buy As You Earn Scheme
  • Save As You Earn Scheme
  • Deals & Discounts through Tesco including Tesco Mobile & Tesco Bank
  • Deals and Discounts through many other external businesses

Application process

Our office application process varies depending on the role and the level of experience needed.

Back to top

Explore our opportunities to get on. A place for everyone.