Back to all jobs

Information Security Analyst SecOps at Ten Lifestyle Group

Mid Posted about 6 hours ago RemoteFirstJobs Product
Security

AI summary: Information Security Analyst manages security operations, DLP policies, vulnerability remediation, and access controls across on-premise and cloud environments to ensure compliance with global standards.

Description

Shape the Future of Service Excellence with Ten!

Driving Innovation. Building Trust. Redefining Service Excellence.

Ten is on a mission to become the most trusted service business in the world. We service the most valuable customers of the world’s leading private banks, premium financial services and luxury brands globally including HSBC, Bank of America, and Swisscard. Corporate clients use Ten’s services to acquire, engage and retain affluent, high net worth customers or valued employees. The service drives critical customer metrics, including revenue growth, net promoter score, and supports digital transformation initiatives.

Millions of individuals worldwide have access to Ten’s services across lifestyle, travel, dining and entertainment. They rely on Ten to unlock seamless, curated experiences that enrich their lives.

We’re profitable, ambitious, and scaling fast. As the first B Corp listed on the London Stock Exchange, we’re setting the standard for sustainable growth and technology, AI driven innovation.

For more information, check out our Welcome to Ten video!

We are looking for an Information Security Analyst - SecOps to support the information security function, working with business, product, and development teams to implement and maintain security controls aligned with our information security policies and compliance requirements.

Your role involves maintaining and upholding the Information Security Management System, managing security risks, and ensuring compliance with global standards such as PCI-DSS, GDPR, and ISO27001. The priority for this role is to reduce exposure to cybersecurity risks and ensure the highest level of protection for both on-premise and cloud environments.

You will work closely with IT Services, Legal, Compliance, and Product Development teams on shared objectives such as security strategy, risk management, and incident response.

Key responsibilities:

Security Operations & Engineering

  • DLP Management: Design, implement, and maintain DLP policies across endpoint, email, and cloud environments to prevent unauthorized data transfer.
  • Web & Perimeter Security: Manage Secure Web Gateways (SWG), and URL filtering to protect the corporate network.
  • Vulnerability Remediation: Work alongside our Vulnerability Analyst to oversee ASV (Approved Scanning Vendor) scans and ensure perimeter vulnerabilities are mitigated within compliance windows.
  • Access Control: Facilitate and manage logical access reviews (user accounts, contractors, service accounts, firewall rules, etc.) and physical access, (CCTV, Office and Data Center Access).
  • SOC - Manage the Security Operations Center (SOC), ensuring that SIEM alerts and incident notifications are addressed according to SLA and communicated and reported appropriately.
  • SDLC and Secure Development - Act as the SME for information security in all system development activities, ensuring that internally developed systems and applications are developed and released securely, compliant to internal policies and without security flaws.

Risk Management & Compliance

  • PCI-DSS & SOC2 Support: Gather and organize technical evidence (logs, configurations, access reviews) for annual audits.
  • Control Monitoring: Perform regular “health checks” on security controls to ensure we remain in a state of continuous compliance, not just “point-in-time” readiness.
  • Act as a subject matter expert for security requirements across the organization.
  • Ensure compliance with global standards and regulatory requirements.

Incident Management & Education

  • Input into the Security Incident and Event Management (SIEM) capability.
  • Carry out operational BAU activities related to reducing risk and securing Ten Groups environment.
  • Serve as a point of escalation for IT security matters and provide guidance on security-related issues.

Security Strategy & Framework Development

  • Contribute to the Information Security Management System aligned with legal and regulatory standards.

  • Assist in the development of security control frameworks to mitigate identified risks.

  • Ensure documentation of high-quality policies and procedures that meet compliance requirements.

  • Minimum 3 years of experience in information security with a strong technical background, including knowledge of networking, cloud platforms (AWS, O365), and security protocols.

  • Experience in managing security deliverables within financial or credit card processing environments (PCI-DSS).

  • Familiarity with GDPR, ISO27001, and other regulatory standards.

  • Experience in security audits, incident response, and security awareness training.

  • Demonstrated ability to drive security initiatives and ensure regulatory Compliance.

  • Strong communication, stakeholder management, and technical troubleshooting skills

  • Fluent in English

Guidelines for Hybrid/Home Office :

  • Located in Cape Town.

  • Please note that you will be asked to enter into a hybrid working arrangement - at least 2x a week in the office.

  • A secure home office at your confirmed address, free from background noise or other distractions.

  • You must meet our minimum internet speeds if you want to work in our hybrid model and this will be checked during the recruitment process and again when you join. We also have a great office that you can work from as an alternative.

Our people are at the heart of the business and we have a culture of recognition and reward - both through regular appraisals but also annual Extra Mile Awards where we celebrate those who have gone that extra mile in their role. We also encourage all our staff to incorporate their aspirations and interests into their career at Ten and we are there every step of the way in supporting development.

Rewards designed around you:

  • A competitive salary depending on experience.

  • Hybrid working. You can combine working from home and working from the office.

  • Paid time away from work. Our employees enjoy a competitive paid time off package, including a paid day each year to volunteer time for a good cause that is important to them.

  • Paid Sabbaticals. One (1) month paid Sabbatical after every 5 years of Service, without tapping into annual leave.

  • Extra Rewards. Lucrative Ten Loyalty Rewards program which includes a bonus and gift to say thank you for being part of Ten.

  • Remote Working Holidays - possibilities to Travel and Work anywhere in the world!

  • Employee Discounts. Access to lots of great travel and entertainment discounts as our clients’ members would!

  • Be part of our global, dynamic, and inclusive Team, with diversity at its core.

  • Genuine career opportunities within a dynamic and international company.

Commitment to Diversity

We encourage diverse philosophies, cultures, and experiences. We appreciate diversity and are dedicated to creating an inclusive work environment for our employees. This idea unites the teams at TEN. All aspects of our relationship, including the decision to hire, promote, discipline, or terminate, will be based on merit, competence, performance and business needs.