Cybersecurity Analyst

Cybersecurity Analyst
About the role
At Healix International, cybersecurity is critical to protecting our people, clients, and operations. We’re looking for an experienced Cybersecurity Analyst to play a key role in identifying, assessing, and mitigating cyber threats across our operational systems.
The purpose of this role is to ensure that cybersecurity threat vectors are identified in our operational systems and appropriate measures are put in place to safeguard the company.
The role will take ownership of the organisation’s core security platforms, ensuring they are effectively configured, monitored, maintained and continually improved to support the protection of Healix systems, data and services.
As the cybersecurity function matures, this role will also help define the longer-term operating model for security operations within Healix.
Required skills, knowledge and experience
This position requires:
Prior experience: Minimum 5 years of experience in cybersecurity.
Technical acumen and knowledge: Cyber Essentials working experience, CIS benchmarks, strong understanding of network protocols, operating systems, and security technologies. Strong troubleshooting and problem-solving skills; familiarity with backup, disaster recovery, and business continuity solutions and database technologies. Implementing SIEM & SOAR platforms. Familiarity with threat intelligence platforms and frameworks (e.g. MITRE ATT&CK, Cyber Kill Chain) Additionally, experience with AI driven threat detection and response platforms (e.g. Darktrace), Data Loss Prevention and integration with M365 platforms (e.g. Purview) and exposure to DevSecOps practices and tools would be beneficial. Familiarity with NIST and ISO27001 frameworks is desirable.
Tools proficiency: Qualys, Microsoft Defender, Splunk, SolarWinds, Kubernetes, PowerShell, Python, Azure/AWS, Windows Server, Linux, New Relic, HashiCorp, Zerto, Jira.
Communication skills: the ability to communicate complex concepts to non-technical stakeholders; the ability to collaborate effectively with internal teams, vendors, and service providers to support and resolve issues.
Management skills: the ability to manage multiple priorities and deliver against agreed timescales. Successful application of these skills and the ability to deliver sustainably against agreed objectives and other performance metrics.
Relevant qualifications
Cloud security accreditations such as Microsoft Azure Security Engineer, Microsoft Cybersecurity Architect and/or AWS Certified Security are required.
Certified Ethical Hacker or equivalent is desirable.
Why join Healix?
You’ll be part of an organisation where cybersecurity is taken seriously, your expertise is valued, and you’re encouraged to keep learning and developing. We support ongoing training, professional development, and certifications as part of your role.
If you’re looking for a role where you can make a real impact on security, resilience, and risk management in a global organisation, we’d love to hear from you.
About this role
Role responsibilities and deliverables
This position denotes the following essential responsibilities and deliverables:
Working closely with the Group CTO, Head of IT Operations, Infrastructure team and Solution Architect to perform ongoing threat assessments of the operational systems in the organisation
to identify threat vectors
Propose, plan and implement (in conjunction the rest of IT) mitigations and solutions to manage these risks
Work with the Chief Risk Officer’s team to meet the cybersecurity risk management requirements
Ability to assess technical requirements and write proposals. Then manage implementation through to go-live and subsequent ongoing support and development
Keep abreast with new and emerging threats and the technologies to protect against these threats
Ensure appropriate automatic monitoring is in place to respond to these threats
Write the playbooks for managing hostile incursions
Execute (for test purposes, and if necessary for real) the playbooks including liaison with third party security providers where appropriate in the event of an incursion
Advise on changes that need to happen outside purely technical measures to safeguard the company, the systems and the data
Contribute to the development of security awareness training and initiatives
Participate in security architecture reviews and provide input on secure design for new and existing systems
Contribute to monthly infosec workshops and external pen test reviews
Assess and monitor third-party and supply chain cybersecurity risks
Develop and report on security metrics and KPIs to demonstrate risk reduction and program effectiveness
Support business continuity and disaster recovery planning and testing from a cybersecurity perspective
Stay informed of relevant legal, regulatory, and compliance requirements affecting cybersecurity
What you will need
Required criteria
- Proven cybersecurity experience – 5+ years in a cybersecurity or information security role, protecting complex operational environments
- Strong technical security expertise – hands‑on experience with threat detection, SIEM/SOAR, monitoring, and incident response
- Framework‑led security mindset – working knowledge of Cyber Essentials, CIS benchmarks, and recognised security frameworks
- Clear communicator & collaborator – able to explain complex security risks and controls to non‑technical stakeholders
Desired criteria
- Industry certifications – CISSP or equivalent (CISM, CEH, GIAC)
- Modern security tooling exposure – experience with AI‑driven detection, DLP, M365 security platforms or cloud environments
- Broader security lifecycle experience – exposure to DevSecOps, red/blue team exercises, or third‑party risk management





