Skip to main content

Cybersecurity Analyst

Healix - Healix International - Esher
Esher
Healix image 1
Esher
Share

Cybersecurity Analyst

About the role

At Healix International, cybersecurity is critical to protecting our people, clients, and operations. We’re looking for an experienced Cybersecurity Analyst to play a key role in identifying, assessing, and mitigating cyber threats across our operational systems.

The purpose of this role is to ensure that cybersecurity threat vectors are identified in our operational systems and appropriate measures are put in place to safeguard the company.

The role will take ownership of the organisation’s core security platforms, ensuring they are effectively configured, monitored, maintained and continually improved to support the protection of Healix systems, data and services.

As the cybersecurity function matures, this role will also help define the longer-term operating model for security operations within Healix.


Required skills, knowledge and experience

This position requires:

  • Prior experience: Minimum 5 years of experience in cybersecurity.

  • Technical acumen and knowledge: Cyber Essentials working experience, CIS benchmarks, strong understanding of network protocols, operating systems, and security technologies. Strong troubleshooting and problem-solving skills; familiarity with backup, disaster recovery, and business continuity solutions and database technologies. Implementing SIEM & SOAR platforms. Familiarity with threat intelligence platforms and frameworks (e.g. MITRE ATT&CK, Cyber Kill Chain) Additionally, experience with AI driven threat detection and response platforms (e.g. Darktrace), Data Loss Prevention and integration with M365 platforms (e.g. Purview) and exposure to DevSecOps practices and tools would be beneficial. Familiarity with NIST and ISO27001 frameworks is desirable.

  • Tools proficiency: Qualys, Microsoft Defender, Splunk, SolarWinds, Kubernetes, PowerShell, Python, Azure/AWS, Windows Server, Linux, New Relic, HashiCorp, Zerto, Jira.

  • Communication skills: the ability to communicate complex concepts to non-technical stakeholders; the ability to collaborate effectively with internal teams, vendors, and service providers to support and resolve issues.

  • Management skills: the ability to manage multiple priorities and deliver against agreed timescales. Successful application of these skills and the ability to deliver sustainably against agreed objectives and other performance metrics.

Relevant qualifications

  • Cloud security accreditations such as Microsoft Azure Security Engineer, Microsoft Cybersecurity Architect and/or AWS Certified Security are required.

  • Certified Ethical Hacker or equivalent is desirable.


Why join Healix?

You’ll be part of an organisation where cybersecurity is taken seriously, your expertise is valued, and you’re encouraged to keep learning and developing. We support ongoing training, professional development, and certifications as part of your role.

If you’re looking for a role where you can make a real impact on security, resilience, and risk management in a global organisation, we’d love to hear from you.

About this role

Role responsibilities and deliverables

This position denotes the following essential responsibilities and deliverables:

  • Working closely with the Group CTO, Head of IT Operations, Infrastructure team and Solution Architect to perform ongoing threat assessments of the operational systems in the organisation

  • to identify threat vectors

  • Propose, plan and implement (in conjunction the rest of IT) mitigations and solutions to manage these risks

  • Work with the Chief Risk Officer’s team to meet the cybersecurity risk management requirements

  • Ability to assess technical requirements and write proposals. Then manage implementation through to go-live and subsequent ongoing support and development

  • Keep abreast with new and emerging threats and the technologies to protect against these threats

  • Ensure appropriate automatic monitoring is in place to respond to these threats

  • Write the playbooks for managing hostile incursions

  • Execute (for test purposes, and if necessary for real) the playbooks including liaison with third party security providers where appropriate in the event of an incursion

  • Advise on changes that need to happen outside purely technical measures to safeguard the company, the systems and the data

  • Contribute to the development of security awareness training and initiatives

  • Participate in security architecture reviews and provide input on secure design for new and existing systems

  • Contribute to monthly infosec workshops and external pen test reviews

  • Assess and monitor third-party and supply chain cybersecurity risks

  • Develop and report on security metrics and KPIs to demonstrate risk reduction and program effectiveness

  • Support business continuity and disaster recovery planning and testing from a cybersecurity perspective

  • Stay informed of relevant legal, regulatory, and compliance requirements affecting cybersecurity

Important Information
Location:Healix International - Esher, Healix Group, Healix House, Esher Green, Esher, England, Surrey, KT10 8AB
Date Posted:14th August 2026
Closing Date:11th September 2026
Industry:Consultancy
Job Type:Full time
Salary:Based on Experience

What you will need

Required criteria

  • Proven cybersecurity experience – 5+ years in a cybersecurity or information security role, protecting complex operational environments
  • Strong technical security expertise – hands‑on experience with threat detection, SIEM/SOAR, monitoring, and incident response
  • Framework‑led security mindset – working knowledge of Cyber Essentials, CIS benchmarks, and recognised security frameworks
  • Clear communicator & collaborator – able to explain complex security risks and controls to non‑technical stakeholders

Desired criteria

  • Industry certifications – CISSP or equivalent (CISM, CEH, GIAC)
  • Modern security tooling exposure – experience with AI‑driven detection, DLP, M365 security platforms or cloud environments
  • Broader security lifecycle experience – exposure to DevSecOps, red/blue team exercises, or third‑party risk management

Cybersecurity Analyst

Healix
Esher
Or, if you already have an account:

Powered by SeeMeHired