Information Security Risk Analyst II

2 days ago


London, Greater London, United Kingdom GoHenry Full time £40,000 - £80,000 per year

Information Security Risk Analyst II | GoHenry

GoHenry is a UK-based fintech company created by parents to pioneer financial education. More recently, GoHenry moved into Europe and the US by joining forces with French fintech company PixPay and US investing app, Acorns.

Together, Acorns, PixPay, and GoHenry have over 6 million members across 5 countries. We are focused on empowering families with engaging money management tools, educational content, and a seamless product experience that creates financial well-being from birth to adulthood.

We are looking for an Information Security Risk Analyst II to support the security of GoHenry's financial education platform by identifying, analyzing, and mitigating information security risks. You will be part of the Global Infosec organization and will work closely with the US Infosec team. You will play a crucial role in maintaining our compliance posture and fostering a strong security culture

What you will do at GoHenry:

  • Risk Assessment and Analysis:

    • Conduct comprehensive risk assessments to identify vulnerabilities and potential threats.

    • Analyze and prioritize risks based on GoHenry' business context, impact, and likelihood. Provide actionable recommendations for risk mitigation.

  • Compliance and Audits

    • Develop and maintain security policies in line with industry standards

    • Support audit (SOC2, PCI DSS) and compliance activities concerning cyber regulations relevant to the UK/EU/US financial sector

  • Identity and Access Management

    • Manage Identity and Access Governance.

    • Conduct quarterly access reviews and periodic role certification by system owners

  • Cyber Security

    • Support Application Security team in matters relating to secure development lifecycle and security testing

    • Support Cloud Security team in continuously monitoring security controls across cloud environments, focusing on configuration assurance

    • Work with the IT team to ensure the effectiveness of our Endpoint security solutions

  • Training and Awareness:

    • Develop and deliver training programs to enhance security awareness among employees.

    • Foster a culture of security within the organization.

  • Collaboration and Communication:

    • Communicate cyber security issues, product requirements and risks to stakeholders and senior management in a manner that is consistent with GoHenry' business context.

What you will bring to GoHenry:

You are a detail-oriented security professional with a strong understanding of both technical security controls and regulatory compliance in a fast-paced fintech environment.

  • Minimum of 4 years of experience in the Information Security / GRC domain.

  • Experience: Proven experience in an Information Security, Cyber Security, or IT Risk role.

  • Risk Management Expertise: Hands-on experience performing formal risk assessments and managing risk registers.

  • Compliance Knowledge: Working knowledge of major security frameworks and regulatory requirements (e.g., ISO 27001, PCI DSS, SOC2, GDPR).

  • Technical Understanding: Familiarity with concepts like secure development lifecycle, cloud security principles (AWS/Azure/GCP), and identity/access management.

  • Communication Skills: Exceptional ability to translate complex technical risks into clear, business-focused language for both technical and non-technical audiences.

  • Certifications (Desirable): Relevant industry certifications such as CISSP, CISM, CRISC, or similar are a plus.

  • Hands-on experience with Security tools and Scripting will be a key differentiator.

What's in it for you?

We offer a competitive package and a culture that supports your professional growth, physical, and mental well-being.

All the essentials you would expect, including a workplace pension plan, 33 days of holiday (including public holidays), & great company events local & abroad

Other Offers:

  • GoFlex - Work from Home, Office, or a mix of both.

  • Your Birthday Day off.

  • 25 days annual leave, in addition to 8 UK bank holidays.

  • An excellent Induction & onboarding program with ongoing learning & development throughout your career.

  • A choice between Bupa Health Cash Plan or Bupa Private Medical.

  • Death in service – 4x your annual salary from month 1.

  • Physical and Mental Wellbeing support and platforms for you and your family.

  • Family-friendly leave policies:

    • Enhanced maternity leave – 20 weeks full basic pay after 2 years' service and 26 weeks full basic pay after 3 years' service.

    • Paternity leave – 4 weeks full pay after probation.

  • Salary Sacrifice options.

About GoHenry

We're on a mission to help every kid be smart with money. Our goal? Create generations of independent, confident young adults, armed with money skills that will set them up for life.

How we do it: We place the power in the hands of young people, giving them the tools they need to master the financial ropes for themselves. They can spend, save, earn, and give with GoHenry's prepaid debit card and app – because learning through doing really works (and it's more fun). All while our unique built-in controls give parents total peace of mind.

We're proud to say...

  • We ranked #38 in Newsweek's Top 100 Most Loved Workplaces in the UK in 2023.

  • We're one of Tech Track's top 50 fastest-growing UK companies.

  • We won Finders Kid's Cards Customer Satisfaction Awards in 2022 and 2023.

  • We won the Tech for Good award at the Better Society Awards 2023.

  • Our kids and parents have donated over £500,000 of their own money to NSPCC via their GoHenry accounts.

But we're still growing, and that's why we need you.

GoHenry is an equal-opportunity employer, and we're on a mission to foster a diverse & inclusive workplace. Individuals seeking employment at GoHenry are considered without regard to race, religion, national origin, age, sex, gender, gender identity, gender expression, sexual orientation, marital status, medical condition, ancestry, physical or mental disability, military or veteran status, or any other characteristic protected by applicable law.



  • London, Greater London, United Kingdom Oliver Bernard Full time £70,000 per year

    Information Security Analyst - FinTech - £70KOur client is a growing London SaaS company, working with clients across tech, trading, pharma and ecommerce around the world.Offering hybrid working, they're looking for an experienced Information Security / Cyber Security Analyst / Engineer to join them.You'll work directly with the CTO, CRO and IT teams to...


  • London, Greater London, United Kingdom Creatify Full time £7,203 - £72,060 per year

    Senior Information Security Analyst – 3-Month Remote ContractRate:£36.03 per hour (umbrella)Duration:3 monthsLocation:Remote (UK-based)Sector:Not-for-profit / Public Sector (confidential client)OverviewWe're supporting a leading UK not-for-profit organisation in strengthening its information security posture following a major digital...


  • London, Greater London, United Kingdom Robert Walters Full time

    My client, an International bank, based in London, is looking for an Information Security Analyst to join it's team. Three MUST for this role: 1) Three days per week in the office 2) They dont offer sponsorship 3) You must come from banking or financial services background 4) Must have at least 2/3 years experience in your current firmAbout The Information...


  • London, Greater London, United Kingdom Squarepoint Capital Full time £104,000 - £128,000 per year

    Position Overview:Squarepoint is seeking an Information Security Analyst to join the Security Operations team. The Information security Analyst provides first line of support for security inquires, manages vulnerability assessments, assesses third-party vendors and software requests, and investigates and responds to security alerts. The ideal candidate has a...


  • London, Greater London, United Kingdom a-e77a-4835-bd2f-990673b69389 Full time £780,000 per year

    Role DescriptionAre you an experienced professional in information security looking to lead efforts in enhancing an organization's security posture? Allianz is seeking a dedicated Risk and Controls Information Security Senior Analyst to join our team.In this role you will take a leading position in maintaining and enhancing the organization's information...


  • London, Greater London, United Kingdom Barclay Simpson Full time

    We're working with a leading financial services business committed to maintaining the highest standards of data protection and integrity across its cloud environments. They are seeking a dedicated Senior Information Security Analyst to focus on Cloud Security GRC.In this role, you'll lead cloud risk assessments, enforce security policies and standards, and...

  • Security Manager

    4 days ago


    London, Greater London, United Kingdom Information Security Solutions Full time £120,000 - £160,000 per year

    We are searching for candidates that match the role below:Title………………………Security ManagerCompany………………Financial ServicesLocation………………..LondonWorking pattern……Hybrid – 2 days per week in the officeSalary……………………£120,000 - £160,000The RoleWe are seeking a Security Manager to lead security...


  • London, Greater London, United Kingdom Octopus Energy Full time

    **About Octopus ElectroverseIn just four years, Octopus Electroverse has grown to become one of the largest eMobility players in Europe, with over 1,000,000 connected electric vehicle chargers and a customer ecosystem spanning web, iOS, Android, CarPlay, Android Auto & Automotive OS, and more. But that's just the start - we're busy launching new products,...


  • London, Greater London, United Kingdom Octopus Energy Full time £45,000 - £65,000 per year

    **About Octopus ElectroverseIn just four years, Octopus Electroverse has grown to become one of the largest eMobility players in Europe, with over 1,250,000 connected electric vehicle chargers and a customer ecosystem spanning web, iOS, Android, CarPlay, Android Auto & Automotive OS, and more. But that's just the start - we're busy launching new products,...


  • London, Greater London, United Kingdom Octopus Energy Group Full time £45,000 - £70,000 per year

    About Octopus Electroverse In just four years, Octopus Electroverse has grown to become one of the largest eMobility players in Europe, with over 1,250,000 connected electric vehicle chargers and a customer ecosystem spanning web, iOS, Android, CarPlay, Android Auto & Automotive OS, and more.  But that's just the start - we're busy launching new products,...