Information Security Analyst I

2 weeks ago


London, Greater London, United Kingdom Farrer & Co Full time

Working hours:
Full-time(Monday - Friday; 9.30am - 5.30pm)

Reports to:
Senior Information Security Manager

Team:
Risk and Information Security

Location:
London

The Firm
Farrer & Co is synonymous with the highest quality legal advice and service.

We advise individuals, families, businesses, financial services, educational and not-for-profit organisations on every aspect of the law, wherever the need arises.

From our offices in London we work with trusted professionals around the world to deliver a seamless international service.
Our clients present us with complex and varied challenges.

Whether that's a complicated family trust issue, a multinational corporate transaction, or an emerging threat to their reputation, they need clear thinkers who can advise on the best solutions, fast thinkers when speed is of the essence and agile thinkers who can produce a fresh approach to get the job done.

That's why they choose us.
Our clients value our in-depth knowledge, technical excellence and diversity of disciplines.

But what really binds our long-standing relationships with them is our approach: pragmatic, plain speaking and always steadfast in our values, which we hold dear.

Values which mean we gain our clients' trust, always strive to do the right thing, and aim for the best results for them.

Superb client service sits at the heart of everything we do. We are modern lawyers with timeless values.
Scope

This role will support the Senior Information Security Manager with oversight of the Firm's Information Security Management System (ISMS) focused on governance, risk, and compliance functions.

The roles cover broad aspects of information security management principles with varied responsibilities to support the overall information security strategy.

This will help with maintaining various security related accreditations, embed security culture across the firm and contribute towards helping the Risk & Information Security team meet and exceed customer expectations and deliver a consistent and efficient service.

Responsibilities

Support team with various ISO27001 related projects to include planning internal and external audits, risk assessment, risk treatment and improvement plans, and support with implementation of control objectives.

Support with Information Security Education and Awareness strategy to include delivery of training using various methods, simulation exercises, communication, reporting and trend analysis.

Information security incident management liaising with Security Operations Team to include reporting, advising, response and escalation to management.

Manage and maintain client due diligence questionnaires on behalf of InfoSec and IT to include maintaining repository of questions and ensuring timely responses are submitted to requesting team.

Support with onboarding of new suppliers as part of Project Management process and Supplier Risk Management policy, maintaining and reviewing third party questionnaires, collating responses, identifying gaps with baselines controls, and proposing recommendations where appropriate, keeping track of agreed remediation plans.

Maintain ISMS related policies, guidance, and procedures to include policy reviews, document management, version control, publications and communication using various methods.

Work with IT Security Operations and IT in general to ensure that baseline security processes are documented and followed in line with ISO27001 standards and regulatory requirements.

Work with various controls owners to support with audit readiness and reviews.
Generate monthly security metrics, dashboards and reporting for management review,

Advice IT with managing technical risks & issues through vulnerability management oversight, gap analysis and ensure that findings are documented and assigned for remediation.

Oversight of DLP alerts to include reporting and recommendations to improve DLP policies with the aim of reducing risk of disclosure.

Work closely with the staff across firm to gather information on working practices to identify security risk and exposure and recommend steps to Improve security posture and processes.

Keeping abreast of latest cyber related threats, trends, and opportunities.
Skills and Experience
~5 -7 years of experience in Information Security with a focus on governance, risk, and compliance,
~ Expertise conducting information security related audits such as ISO27001, NIST,
~ Experience in applying and implementing ISO related controls both technical and operational,
~ Understanding of general information security management principles and data protection,
~ Experience working within Information Security or IT Security, Data Protection,
~ Experience in working Information Security training and awareness tools,
~ Ability to identify opportunities for improvement,
~ Logical thinker and creative problem solver,
~ Excellent written and verbal communication skills,
~ Self-motivated, proactive, and able to take responsibility,
~ Strong MS skills using MS Word, Excel, PowerPoint, and Outlook.

Experience in one or more of the following would also be advantageous:
Experience working in the legal sector or similar
Experience working with incident management tools such as Sunrise or Service Now
Understand concept of Cloud infrastructure and Cloud Security
General security-related qualification or certificates such as CISM, CISA, CISSP
Ability to use Visio, or similar tools
Experience updating intranet sites using SharePoint or similar platforms.

Education:
It would be beneficial to have:
~ Degree in any discipline or information security related qualification or certificates such as CISM, CISA, CISSP; ISO27001 Lead Implementer or Lead Auditor

Special aspects

Our office hours are 09.30 to 17.30 but it is essential that the applicant is committed, flexible and prepared to work beyond the normal office hours when necessary and in response to demand.

Overtime at weekends may be necessary from time-to-time in order to support project work or incident management.

We expect the successful applicant to bring the experience, commitment and passion to further define the job description and embed the principles of good IT Security in the culture of the firm.

Farrer & Co is an equals opportunity employer who welcomes applications from candidates from all backgrounds.

We look to employ the best candidates regardless of age, gender, race, ethnicity, social or economic background, religion, disability, sexual orientation, national origin, or any other protected characteristic.

We are keen to ensure candidates have the best interview experience possible, if you require any adjustments during the interview or application process please let the recruitment team know.

Comments Farrer & Co conducts a pre-employment screening which consists of a Criminal History Background and Credit Check for successful candidates.

#J-18808-Ljbffr

  • London, Greater London, United Kingdom Quadient Full time

    Quadient is a global leader in customer communication solutions. It's these connections that make Quadient such an exceptional place to grow your career – and help our future-focused team lead the way. By focusing on four key solution areas including Customer Experience Management, Business Process Automation, Mail-related Solutions, and Parcel Locker...


  • London, Greater London, United Kingdom Pontoon Full time

    **Information Security AnalystFinancial ServicesHybrid in London: 2 days per week onsite average6 months£400 per day**The Information Security Analyst role supports the Information Security Manager to enable business processes and innovative technology to deliver key business objectives in a secure manner which protects our reputation, organisational and...


  • London, Greater London, United Kingdom Cloudsecurityexpo Full time

    Our client, a leading bank specializing in services for global fintechs and SME lending solutions, is seeking an Information Security GRC Analyst. The role will help shape our client's cybersecurity posture. Key responsibilities include identifying and mitigating security risks, ensuring regulatory compliance, and developing security frameworks. This...


  • London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    IT Security AnalystHampshire / Hybrid / 3 days a week£50k - £70k flexible depending on experienceA financial Services firm is looking for passionate IT security / Cyber professionals to join their growing team as anIT Security Analyst.You will be responsible for preventing cyber attacks by monitoring systems and evaluating threats, using the latest cloud...


  • London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    IT Security AnalystHampshire / Hybrid / 3 days a week£50k - £70k flexible depending on experienceA financial Services firm is looking for passionate IT security / Cyber professionals to join their growing team as an IT Security Analyst.You will be responsible for preventing cyber attacks by monitoring systems and evaluating threats, using the latest cloud...


  • London, Greater London, United Kingdom KJ Cargo Services Full time £30,000

    We're Hiring INFORMATION SECURITY ANALYST KJ Cargo – Shipping Services Ltd is based in London, UK. We have networks of partners all over theworld providing our clients with comprehensive and extremely high Freight, Logistics and Procurement Services. We have relentlessand innovative complete logistic experience. Would you like to work for KJCARGO...


  • London, Greater London, United Kingdom Insite IT Full time

    Information Security AnalystIf the following job requirements and experience match your skills, please ensure you apply promptly.Insite IT have a great opportunity for an Information Security Analyst to join one of the UK's leading Retailers as they grow their Security function.The Information Security Analyst will play an important role in the maintenance...


  • London, Greater London, United Kingdom Rutherford Briant Full time

    Are you enthusiastic about ensuring data security and compliance with industry regulations?We are aiding a client in their quest to find a new Information Security Analyst for a key role in safeguarding the organization's assets. Your duties will involve developing and updating ISMS documentation, ensuring ISO 27001 compliance, and extending certification to...


  • London, Greater London, United Kingdom Oliver Bernard Full time

    Information Security Analyst - £70KOur client is a leading Software-as-a-Service (SaaS) development company – They build bespoke Big Data solutions for financial services, pharma and ecommerce client around the world.Offer great remote / hybrid flexible working, they're looking for an experienced Cyber Security Analyst to join them.You'll work directly...


  • London, Greater London, United Kingdom Tiger Resourcing Group Full time

    Information Security AnalystContract:Permanent, full time, 35 hours per weeknLocation:West Malling with hybrid working (Average of 2 days per week in office)Two roles:nInformation Security Analyst Salary:Up to £44,000 per annumnSenior Information Security Analyst Salary:Up to £60,000 per annumAre you an information security professional with a good...


  • London, Greater London, United Kingdom Jas Gujral Full time £70,000 - £85,000

    Senior Information Security Analyst Our Client is a leading global company specialising in pharma products. They are looking to recruit a Senior Information Security Analyst with at least 5 to 7 years expertise in Technology Security. The Senior Information Security Analyst is responsible for maintaining information security policies, architecture,...


  • London, Greater London, United Kingdom Computappoint Full time

    Information Security AnalystHybrid Model: 50% Remote / 50% Central London office (based on calendar month)Office Location:LondonType:PermanentAbout the Client and Role:My client, a globally operating law firm, is seeking an experienced Information Security Analyst to join their London based security operations team on a permanent basis.The Security Analyst...


  • London, Greater London, United Kingdom Brown and Brown Insurance Full time

    We are part of Brown & Brown Insurance group. Built on meritocracy, our unique company culture rewards self-starters and those who are committed to doing what is best for our customers. Information Security Risk Analyst Location: Hybrid - London The Information Security Risk Analyst III at Brown & Brown is responsible for analysing information security...

  • IT Security Analyst

    2 weeks ago


    London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time £50,000 - £70,000

    IT Security Analyst Hampshire / Hybrid / 3 days a week £50k - £70k flexible depending on experience A financial Services firm is looking for passionate IT security / Cyber professionals to join their growing team as an IT Security Analyst. You will be responsible for preventing cyber attacks by monitoring systems and evaluating threats, using the latest...


  • London, Greater London, United Kingdom Brown & Brown Europe Full time

    Job DescriptionInformation Security Risk AnalystLocation: Hybrid - LondonPackage: Negotiable + Benefits The Information Security Risk Analyst III role at Brown & Brown involves analysing information security controls internally and with third parties. This analysis is conducted to identify and evaluate information security risks and effectively communicate...


  • London, Greater London, United Kingdom Oliver Bernard Full time

    Information Security Analyst - Splunk - £60KCheck below to see if you have what is needed for this opportunity, and if so, make an application asap.Our client is a leading Software Engineering and IT Consultancy.Offering excellent remote and hybrid working flexibility (based in London), they're looking for a Security Engineer / Cyber Security Analyst with...


  • London, Greater London, United Kingdom Oliver Bernard Full time £60,000

    Information Security Analyst - Splunk - £60K Our client is a leading Software Engineering and IT Consultancy. Offering excellent remote and hybrid working flexibility (based in London), they're looking for a Security Engineer / Cyber Security Analyst with good experience of monitoring and Splunk to join them. You'll have the chance to work directly with...

  • IT Security Analyst

    2 weeks ago


    London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time £50,000 - £70,000

    IT Security AnalystHampshire / Hybrid / 3 days a week£50k - £70k flexible depending on experienceA financial Services firm is looking for passionate IT security / Cyber professionals to join their growing team as an IT Security Analyst.You will be responsible for preventing cyber attacks by monitoring systems and evaluating threats, using the latest cloud...


  • London, Greater London, United Kingdom Barclay Simpson Full time

    We're collaborating with a reputable financial institution in London, and we're looking for an experienced Information Security Analyst with expertise in Governance, Risk, and Compliance. This role provides an exciting opportunity to contribute to the cybersecurity posture of a leading organisation.Responsibilities:Maintain information security policies and...


  • London, Greater London, United Kingdom TRIA Full time £60,000

    Senior IT Security Analyst Salary: Up to £60,000 Location: Hybrid – 2 days per week at either the London, Weymouth, or Newcastle offices We are currently looking for a talented Senior IT Security Analyst to join a leading B2C retailer dedicated to modernizing their technology landscape. The company is making substantial investments in IT. Reporting to...