Information Security Analyst

2 weeks ago


London, United Kingdom Pontoon Full time

**Information Security Analyst
Financial Services
Hybrid in London: 2 days per week onsite average
£37,000 - £39,000 per annum**

The Information Security Analyst role supports the Information Security Manager to enable business processes and innovative technology to deliver key business objectives in a secure manner which protects our reputation, organisational and customer data,in line with the risk appetite of the business The Information Security Analyst is responsible for enforcing the key components of the information security programme to ensure that technology products and services are secure by design and that all technologyservices can be delivered securely. The key disciplines within the role are:

- **Information Security**: Supporting the Information Security Management System, optimising controls, policies and standards in key functional areas across the Scheme. Investigate and respond to any information security events/incidents.
- **Information Security Assurance activities**: Delivering Information security assurance strategies, implementing continuous improvements, and delivering training programmes for each organisational department. Supporting Information Securityaudit activities.
- **Information Security Risk**: Conduct risk analysis and contribute to the prioritisation of information security initiatives based on risk and business need.

**My Priorities - what I will deliver**
- Draft information security policies, methods, and processes as necessary
- Support internal audits and reviews of the Information Security Management System as part of the ISMS audit programme and management review
- Generate reports on Information Security metrics, key risk indicators (KRI) and compliance for stakeholders
- Support audits/assessments interface for various internal and external stakeholder requirements (i.e., ISO27001 certification, GDPR compliance assessment, audits, and regulatory reviews).
- Maintain Continuous Security Improvement Plan (CSIP)
- Support the ISMS, including compliance with annual reviews to ensure its continuing suitability, adequacy, and effectiveness. This annual review includes assessing opportunities for improvement and the need for changes to the ISMS
- Investigate any information security incidents and implement any corrective actions
- Analyses incident reports, identify root causes and planned improvement actions and prepare summary reports for management, identifying any relevant trends, ISMS performance and any further recommendations for action
- Support the delivery of 3rd Party Due Diligence assessments for new & existing relationships
- Conduct annual information risk assessments on information assets, supported by asset and risk owners as appropriate, and identify significant threat changes and exposure of information and information processing facilities to threats
- Act as SME for Information security exercising and incident management.
- Display and promote working and personal behaviours that accord with the Scheme's. Values acting as a professional role model for all staff.
- Deputies for Information Security Manager as required.

**My knowledge - what I need to know**
- Security knowledge - Any IT security certifications in one of ISO 27001, CCSP, or equivalent would be highly advantageous
- Demonstrated knowledge and understanding of information risks and threats
- Understanding of information security constraints and best practice.
- Experience or knowledge of working with information security frameworks and standards such as ISO27001
- Experience or knowledge of conducting information security risk assessments following industry standards
- Experienced producing quality documentation, including management information, security dashboards, reports, policies, standards, and guidelines

**Experience**
- Understanding of Incident Management
- Experience with writing and socialising policies, standards and procedures
- Understanding of information security concepts such as security architecture and design, Information security standards and information security risk assessment.
- Understanding of business continuity and compliance and audit frameworks



  • London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    IT Security AnalystHampshire / Hybrid / 3 days a week£50k - £70k flexible depending on experienceA financial Services firm is looking for passionate IT security / Cyber professionals to join their growing team as anIT Security Analyst.You will be responsible for preventing cyber attacks by monitoring systems and evaluating threats, using the latest cloud...


  • London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    IT Security AnalystHampshire / Hybrid / 3 days a week£50k - £70k flexible depending on experienceA financial Services firm is looking for passionate IT security / Cyber professionals to join their growing team as anIT Security Analyst.You will be responsible for preventing cyber attacks by monitoring systems and evaluating threats, using the latest cloud...


  • London, Greater London, United Kingdom LT Harper - Cyber Security Recruitment Full time

    IT Security AnalystHampshire / Hybrid / 3 days a week£50k - £70k flexible depending on experienceA financial Services firm is looking for passionate IT security / Cyber professionals to join their growing team as an IT Security Analyst.You will be responsible for preventing cyber attacks by monitoring systems and evaluating threats, using the latest cloud...


  • London, Greater London, United Kingdom Insite IT Full time

    Information Security AnalystIf the following job requirements and experience match your skills, please ensure you apply promptly.Insite IT have a great opportunity for an Information Security Analyst to join one of the UK's leading Retailers as they grow their Security function.The Information Security Analyst will play an important role in the maintenance...


  • London, United Kingdom Comtecs Group Full time

    Junior Information Security AnalystA variety of soft skills and experience may be required for the following role Please ensure you check the overview below carefully.Junior Information Security Analyst / Junior InfoSec Compliance Analyst - Governance, Risk & Compliance (GRC), Supplier Assurance (InfoSec), 3rd Party Risk Management, Supplier Due Diligence,...


  • London, United Kingdom Comtecs Group Full time

    Junior Information Security AnalystJunior Information Security Analyst / Junior InfoSec Compliance Analyst - Governance, Risk & Compliance (GRC), Supplier Assurance (InfoSec), 3rd Party Risk Management, Supplier Due Diligence, Client Liaison, Process Implementation, Incident Analysis and Reporting. CISM, CISSP, CySA+, CASP+ etc; ISO 27001, NIST, Cyber...


  • London, Greater London, United Kingdom Rutherford Briant Full time

    Are you enthusiastic about ensuring data security and compliance with industry regulations?We are aiding a client in their quest to find a new Information Security Analyst for a key role in safeguarding the organization's assets. Your duties will involve developing and updating ISMS documentation, ensuring ISO 27001 compliance, and extending certification to...


  • London,, UK, United Kingdom Comtecs Group Full time

    Junior Information Security AnalystJunior Information Security Analyst / Junior InfoSec Compliance Analyst - Governance, Risk & Compliance (GRC), Supplier Assurance (InfoSec), 3rd Party Risk Management, Supplier Due Diligence, Client Liaison, Process Implementation, Incident Analysis and Reporting. CISM, CISSP, CySA+, CASP+ etc; ISO 27001, NIST, Cyber...


  • London, United Kingdom Comtecs Group Full time

    Junior Information Security AnalystJunior Information Security Analyst / Junior InfoSec Compliance Analyst - Governance, Risk & Compliance (GRC), Supplier Assurance (InfoSec), 3rd Party Risk Management, Supplier Due Diligence, Client Liaison, Process Implementation, Incident Analysis and Reporting. CISM, CISSP, CySA+, CASP+ etc; ISO 27001, NIST, Cyber...


  • London, Greater London, United Kingdom Oliver Bernard Full time

    Information Security Analyst - £70KOur client is a leading Software-as-a-Service (SaaS) development company – They build bespoke Big Data solutions for financial services, pharma and ecommerce client around the world.Offer great remote / hybrid flexible working, they're looking for an experienced Cyber Security Analyst to join them.You'll work directly...


  • City of London, Greater London, United Kingdom Insite IT Full time

    Information Security Analyst Insite IT have a great opportunity for an Information Security Analyst to join one of the UK's leading Retailers as they grow their Security function. The Information Security Analyst will play an important role in the maintenance and improvement of all security operation procedures and processes across the entire...


  • City of London, Greater London, United Kingdom Insite IT Full time

    Information Security AnalystInsite IT have a great opportunity for an Information Security Analyst to join one of the UK's leading Retailers as they grow their Security function.The Information Security Analyst will play an important role in the maintenance and improvement of all security operation procedures and processes across the entire business. You...


  • City of London, United Kingdom Insite IT Full time

    Information Security AnalystInsite IT have a great opportunity for an Information Security Analyst to join one of the UK's leading Retailers as they grow their Security function.The Information Security Analyst will play an important role in the maintenance and improvement of all security operation procedures and processes across the entire business. You...


  • City of London, United Kingdom Insite IT Full time

    Information Security AnalystInsite IT have a great opportunity for an Information Security Analyst to join one of the UK's leading Retailers as they grow their Security function.The Information Security Analyst will play an important role in the maintenance and improvement of all security operation procedures and processes across the entire business. You...


  • London, United Kingdom ITS Recruitment | ITS Works Full time

    Job Description Information Security Analyst - Governance and Compliance Information Security Analyst - Governance and Compliance - required by 700 user City Law Firm. Reporting to the Head of InfoSec you will be responsible for supporting the governance, risk and compliance activities of the department, and ensuring security culture and processes are...


  • London, United Kingdom ITS Recruitment | ITS Works Full time

    Job Description Information Security Analyst - Governance and Compliance Information Security Analyst - Governance and Compliance - required by 700 user City Law Firm. Reporting to the Head of InfoSec you will be responsible for supporting the governance, risk and compliance activities of the department, and ensuring security culture and processes are...


  • London, United Kingdom ITS Recruitment | ITS Works Full time

    Job Description Information Security Analyst - Governance and Compliance Information Security Analyst - Governance and Compliance - required by 700 user City Law Firm. Reporting to the Head of InfoSec you will be responsible for supporting the governance, risk and compliance activities of the department, and ensuring security culture and processes are...


  • London, United Kingdom ITS Recruitment | ITS Works Full time

    Job Description Information Security Analyst - Governance and Compliance Information Security Analyst - Governance and Compliance - required by 700 user City Law Firm. Reporting to the Head of InfoSec you will be responsible for supporting the governance, risk and compliance activities of the department, and ensuring security culture and processes...


  • London, United Kingdom ITS Recruitment | ITS Works Full time

    Job Description Information Security Analyst - Governance and Compliance Information Security Analyst - Governance and Compliance - required by 700 user City Law Firm. Reporting to the Head of InfoSec you will be responsible for supporting the governance, risk and compliance activities of the department, and ensuring security culture and processes are...


  • London, United Kingdom Comtecs Ltd Full time

    Information Security Analyst / Client & Supplier InfoSec Compliance Analyst - Governance, Risk & Compliance (GRC), Supplier Assurance (InfoSec), 3rd Party Risk Management, Supplier Due Diligence, Client Liaison, Process Implementation, Incident Analysis and Reporting. CISM, CISSP, CySA+, CASP+ etc; ISO 27001, NIST, Cyber Essentials Plus. 12 Month FTC....