Join us as a Cryptography Analyst at Barclays, where you'll play a critical role in fortifying cryptography infrastructure by supporting the design, configuration, implementation, and maintenance of robust PKI & HSM solutions, to support encryption, authentication, and digital signing processes across global operations. Alongside this you will also be responsible for embedding the necessary elasticity needed to support the modern ecosystem and the post-quantum landscape beyond that. This is an excellent opportunity for someone passionate about security and who thrives in a dynamic, collaborative environment.
To be successful as a Cryptography Analyst, you should have experience with:
• Certificate Management platforms such as Venafi, Digicert or Sectigo
• HSMs (Hardware Security Modules) like Thales or Entrust for secure key storage.
• Linux/Unix and Windows, especially for managing cryptographic systems.
Some other highly valued skills may include:
• PKI (Public Key Infrastructure) setting up and managing digital certificates and certificate authorities
• Incident response knowledge of how to handle breaches or compromises related to cryptographic assets.
• Compliance Knowledge, expertise in standards such as NIST, FIPS, ISO27001/27002
You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills.
This role will be based in our Knutsford office.
Purpose of the role
To manage and monitor the banks cryptographic assets, for all use cases, whilst ensuring the confidentiality, integrity, and authenticity of sensitive data, both through BAU support and On-Call support as part of a 24/7 global team.
Accountabilities
- Collaboration with internal and external customers and stakeholders to understand and identify cryptographic needs across the organisation, sharing best practices including solutions to business applications and processes.
- Execution of security assessments and penetration testing to identify vulnerabilities in cryptographic implementations and procedures and guide the implementation of mitigation strategies and communicate findings to relevant findings to relevant senior stakeholders.
- Implementation and monitoring of cryptographic solutions used in various banking applications to ensure they function correctly and meet the Cryptography Standard.
- Development of training content for colleagues to share expertise on cryptographic concepts, best practice and security procedures in line with Standards and Industry regulations Contribute to the creation of technical documentation and specifications related to cryptographic designs and implementations. Provision of subject matter expertise in cryptography methodologies.
- To manage and support the service management of cryptography solutions consumed by the Bank globally, in line with Technology Controls and Standards, including but not limited to Incident/Problem/Change/Vulnerability Management.
- Understanding of industry cryptographic principles including algorithms, protocols and technologies including symmetric and asymmetric keys, digital signatures, key exchange and encryption. Advocate the improvement and implementation of security controls when appropriate.
- Presentation of complex ideas effectively to technical and non-technical audiences at all levels of Leadership.
Analyst Expectations
- Will have an impact on the work of related teams within the area.
- Partner with other functions and business areas.
- Takes responsibility for end results of a team’s operational processing and activities.
- Escalate breaches of policies / procedure appropriately.
- Take responsibility for embedding new policies/ procedures adopted due to risk mitigation.
- Advise and influence decision making within own area of expertise.
- Take ownership for managing risk and strengthening controls in relation to the work you own or contribute to. Deliver your work and areas of responsibility in line with relevant rules, regulation and codes of conduct.
- Maintain and continually build an understanding of how own sub-function integrates with function, alongside knowledge of the organisations products, services and processes within the function.
- Demonstrate understanding of how areas coordinate and contribute to the achievement of the objectives of the organisation sub-function.
- Make evaluative judgements based on the analysis of factual information, paying attention to detail.
- Resolve problems by identifying and selecting solutions through the application of acquired technical experience and will be guided by precedents.
- Guide and persuade team members and communicate complex / sensitive information.
- Act as contact point for stakeholders outside of the immediate function, while building a network of contacts outside team and external to the organisation.
All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.