Information Security Analyst

2 weeks ago


City Of London, United Kingdom Lancashire Insurance Group Full time

Information Security Analyst Join to apply for the Information Security Analyst role at Lancashire Insurance Group Application Deadline: 21 November 2025 Department: IT Location: London Information security is an essential function at Lancashire and is committed to continuous improvement. The addition of this role is an important element in achieving its security objectives during Lancashire’s time of digital transformation and growth. Reporting to the Information Security Manager, the post holder will be responsible for evaluating cyber security controls, conducting risk assessments and collaborating with cross‑functional teams. The post holder will support the Information Security Manager in maintaining all aspects of information security risk management, including responding to security inquiries and incidents, maintaining cyber security governance, and ensuring compliance with relevant regulatory requirements. Specific Responsibilities Support the Information Security Manager in delivering the Information Security Management System and drive continuous improvement for information security. Evaluate and assess cyber security controls across the business and its third‑party vendors to ensure compliance with the NIST Cyber Security Framework (CSF). Conduct comprehensive risk assessments using the NIST CSF. Use risk management techniques to identify cyber threats, risks and issues in a timely manner. Support, develop and conduct third‑party vendor security assurance activities. Collaborate with cross‑functional teams to develop and implement risk management activities. Respond to security support tickets and other enquiries; provide information security support and escalation. Support the creation and collection of metrics, validate security control performance and identify emerging cyber risks. Collaborate with the Enterprise Risk Management (ERM) team to maintain, develop and deliver cyber risk reporting and appetite statements. Maintain Information Security policy and procedure ensuring content is relevant to the current cyber threat landscape. Maintain, develop and test the Cyber Incident Response Plan, ensuring content is relevant to the current cyber threat landscape. Monitor, maintain and manage Lancashire compliance with its relevant cyber security regulation obligations. Manage actions and output generated by stakeholder engagements; for example customers, regulators, internal and external auditors. Maintain currency with emerging security trends, threat intelligence, industry standards and good practice, and security‑enhancing technologies. Essential Skills, Knowledge & Experience A degree in Computer Science, Cybersecurity, Information Security, or a related discipline, or up to two years of experience in an Information Security role. Understanding of cyber security control assessments, either through academic study or practical exposure. Familiarity with cyber risk reporting and risk appetite statements, gained through coursework or hands‑on experience. Knowledge of recognised security frameworks such as NIST CSF, ISO27001, acquired through study or work experience. Awareness of cybersecurity compliance requirements with regulatory frameworks such as FCA, PRA, NYDFS. Understanding of governance frameworks including policy and procedure development. Ability to achieve against agreed deadlines. Ability to work both independently and collaboratively. Strong interpersonal and communication skills (written and verbal), with the ability to interact with technical and non‑technical stakeholders at all levels. Strong analytical and problem‑solving skills. Strong organisation and planning skills. A pro‑active and enthusiastic approach. Knowledge of Microsoft systems (on‑premises and Azure cloud), technologies, infrastructure, awareness of systems management and operational support tools. Acknowledges and responds positively to exceptional events in information security to meet the objectives of the business. Desirable Skills, Knowledge & Experience Experience working in a professional services environment. The Lancashire Way Straight‑talking – We feel empowered to share thoughts and ideas, because everyone’s voice matters. Collaborative – We work together towards common goals, share knowledge and support each other. Hard‑working – We all have a stake in the company’s success and are proactive in contributing to our goals and vision. Responsible – We focus on achieving tangible results with consistent standards across the Group. Positive – We engage with brokers, clients, communities, stakeholders and colleagues professionally and passionately as proud ambassadors of Lancashire. Seniority level: Entry level Employment type: Full‑time Job function: Information Technology Industries: Insurance #J-18808-Ljbffr



  • City of London, United Kingdom i3 Resourcing Limited Full time

    **Information Security GRC Analyst** **£47,000 - £55,000** **2-3 days in a London office / 1-2 days from home** **EXCELLENT full benefits package and bonus** **Information Security GRC Analyst, Governance, Risk, Compliance, Security Risk, Privacy Risk, Management Information, ISO27001, NIST, SOX, Firewalls, IDS/IPS, DLP, Information Security Analyst,...


  • City Of London, United Kingdom 0400 FBD USA LLP Full time

    Information Security Analyst page is loaded## Information Security Analystlocations: Manchester: Londontime type: Full timeposted on: Posted Todayjob requisition id: R-06927**Information Security Analyst** to join our collaborative team and help strengthen our organisation’s resilience against evolving cyber threats.**What you’ll do** As an...


  • City Of London, United Kingdom hireful Full time

    Are you looking to join a global software technology company, with their main base of operations here, in the UK, as an experienced GRC Information Security Analyst? Do you have experience in the GRC Security space with audits, auditors, ISO27001, PCI DSS, SOC2, NIST & current compliance regulations? If so & you are looking to expand your information...


  • City Of London, United Kingdom Proactive.IT Appointments Limited Full time

    11302CF£190 – 200 per day + Inside IR35 (Fully Remote) Information Security Analyst Up to £200 per day (Inside IR35) | 3 Month Contract | Fully Remote Working Our client are seeking an experienced Information Security Analyst to provide immediate support to the Information Security team. This role is a hybrid of technical security analysis and...


  • City Of London, United Kingdom PIC Full time

    Overview Role Purpose: We are looking for an experienced Information Security Governance Analyst to work within our Information Security team. The team is committed to supporting the effective operation of information security risk management, including the implementation and management of an Information Security Management System (ISMS), a framework of...


  • London, Greater London, United Kingdom Oliver Bernard Full time £70,000 per year

    Information Security Analyst - FinTech - £70KOur client is a growing London SaaS company, working with clients across tech, trading, pharma and ecommerce around the world.Offering hybrid working, they're looking for an experienced Information Security / Cyber Security Analyst / Engineer to join them.You'll work directly with the CTO, CRO and IT teams to...


  • City Of London, United Kingdom Vastbouw Full time

    Change your job, change your workplace, change your future...Ricoh are currently recruiting for an Information Security Analyst based in London who will be accountable for the development, implementation, and continuous improvement of the Information Security Management System (ISMS) at Ricoh Europe PLC. The role exists to protect the confidentiality,...


  • City Of London, United Kingdom Alfasystems Full time

    Information Security and Data Privacy Analyst Alfa are currently recruiting a Information Security and Data Privacy Analyst. The Information Security and Data Privacy Analyst contributes to the information security, data protection, artificial intelligence and audit/compliance functions within the organisation.**Key responsibilities/activities;****Data...


  • London, United Kingdom Proactive Appointments Full time

    Information Security Analyst  Up to £200 per day (Inside IR35) | 3 Month Contract | Fully Remote Working  Our client are seeking an experienced Information Security Analyst to provide immediate support to the Information Security team. This role is a hybrid of technical security analysis and governance, risk, and compliance (GRC)activities. The successful...


  • London, United Kingdom Pontoon Full time

    **Information Security Analyst Financial Services Hybrid in London: 2 days per week onsite average 6 months £400 per day** The Information Security Analyst role supports the Information Security Manager to enable business processes and innovative technology to deliver key business objectives in a secure manner which protects our reputation, organisational...