Information Security Supply Chain Analyst
7 days ago
At S&W, we help our clients thrive by simplifying the complex, illuminating new paths, and shaping solutions that make a difference. As one of the UK's top 10 fastest-growing accountancy firms, we have been a trusted partner since 1881—helping businesses and individuals meet challenges and seize opportunities across generations.
Built on expertise and driven by ambition, we provide a comprehensive range of services, including tax and accountancy, advisory and assurance, corporate finance, and restructuring. We are defined by our purpose—to help navigate challenges, unlock potential, and achieve the extraordinary.
Job DescriptionWhat will you be doing?
S&W Group is looking for an experienced Information Security Risk Professional with expertise in security compliance and assurance, ISO 27001 implementation, PMO (project management office), risk assessments, supply chain and working on other governance, risk and compliance projects within a team. You'll be highly motivated, pro-active and will become a productive member of a busy Information Security team, gaining exposure to a number of areas across the business.
As an Information Security Supply Chain Analyst, you'll verify that third parties meet the minimum-security requirements to protect our organisation from a supply chain related attack or incident. You'll apply relevant risk mitigations and deal with multiple stakeholders to ensure end to end treatment is applied. You'll also be part of our PMO and governance and compliance processes and will deliver updates to senior management in meetings and information security forums, whilst ensuring the business remains compliant to regulatory frameworks and good practice standards.
This role works within the Information Security Team and collaborates with other teams such as Privacy, Legal, Group Risk, Infrastructure, SecOps and Procurement, providing you with great opportunities for stakeholder engagement – it's a great time to join us at S&W.
This role is a permanent position to be based at our Liverpool office on a hybrid working pattern with minimum 2 days per week in the office.
The interview process will be in two stages and will consist of one face to face interview at the Liverpool office.
Your responsibilities will include among others
- Perform internal information security risk assessments and recommend mitigation actions to be implemented in solutions
- Perform vendor risk assessments and due diligences on third parties and recommend mitigation actions to be implemented by third parties
- Assess third party adherence to the minimum-security standards and record/track deviations or concessions
- Operate a risk-based assurance approach to ensure key third parties continue to comply with the defined security requirements
- Generate MI and reporting on third-party assessments and maintain risk profile of third parties
- Reviewing information security controls on an ongoing basis against the changing risk landscape to evaluate changes in residual risk and assess the sufficiency of the corresponding compensating control(s) or the need for new controls
Skills and Experience
To be successful in this role, you should have
- Experience in Information Security governance, risk and compliance areas
- Experience managing internal and third-party vendor risk assessments and writing risk assessment reports
- Experience reviewing risk assessments, and SOC Type II reports for completeness and have worked with suppliers to address issues/concerns
- Experience managing audit returns from clients and regulators
- Supporting Legal and Procurement Teams with complex contract reviews/negotiations and communicating security risks/impacts to various business (often non-technical) stakeholders
- Assisting writing Information Security related Policies, Processes and/or Procedures and analysing security controls
Desired
- Experience in using good practice standards such as ISO 27001, ISO 22301, ISO 9001, Cyber Essentials and NIST
- Experience in a Project Management Office
- Degree or equivalent in Information Technology or Risk Management
- Certification in Information Security domains
- Certification in cloud architectures is advantageous, especially Microsoft Azure
As a colleague here at S&W you will have access to benefits that include
- Competitive salary
- Private medical insurance
- Life assurance
- Pension contribution
- Hybrid working model (role dependent)
- Generous holiday package
- Option to purchase additional holiday
- Shared parental leave
- Fully funded training towards professional qualifications
- Cycle to work scheme
- Season ticket loan
- Eye care support
We are proud to value the differences that a diverse workforce brings, representative of society and our clients. At S&W we have a wide range of highly active employee resource groups and we're delivering multiple diversity, equity and inclusion initiatives across the organisation. It is our commitment to provide a workplace where all colleagues, regardless of identity, background, or circumstance, feel respected as individuals and feel that they can achieve their full potential and work in a safe, supportive, and inclusive environment.
We are happy to make any reasonable adjustments to accommodate for your needs throughout the application process. Please let your Recruiter know.
-
Information Security Supply Chain Analyst
2 weeks ago
Liverpool, Liverpool, United Kingdom SW Group Full time £40,000 - £80,000 per yearCompany Description At S&W, we help our clients thrive by simplifying the complex, illuminating new paths, and shaping solutions that make a difference. As one of the UK's top 10 fastest-growing accountancy firms, we have been a trusted partner since 1881—helping businesses and individuals meet challenges and seize opportunities across generations.Built on...
-
Supply Chain Assistant
2 weeks ago
Liverpool, Liverpool, United Kingdom The Very Group Full time £25,000 - £40,000 per yearAbout UsWe are The Very Group and we're here to help families get more out of life. We know that our customers work hard for their families and have a lot to balance in their busy lives. That's why we combine amazing brands and products with flexible payment options on to help them say yes to the things they love. We're just as passionate about...
-
Supply Chain Manager
1 week ago
Liverpool, Liverpool, United Kingdom Kaizen Talent Solutions Limited Full time £40,000 - £80,000 per yearJob Description Are you a Supply Chain Manager looking for an opportunity to make a significant impact on cultural change in an innovative and rapidly growing SME manufacturer? This is a superb opportunity to work in an ambitious, profitable and forward-thinking company based in Liverpool, fully committed to becoming best in class for supply chain...
-
Supply Chain Manager
1 week ago
Liverpool, Liverpool, United Kingdom Kaizen Talent Solutions Limited Full time £50,000 - £60,000 per yearJob Description Are you a Supply Chain Manager looking for an opportunity to make a significant impact on cultural change in an innovative and rapidly growing SME manufacturer? This is a superb opportunity to work in an ambitious, profitable and forward-thinking company based in Liverpool, fully committed to becoming best in class for supply chain...
-
Information Technology Security Analyst
1 week ago
Liverpool, Liverpool, United Kingdom Ventula Consulting Full time £60,000 per yearSecurity Operational Technical Delivery Analyst – Remote (Occasional travel to site) - £50,000 + benefitsThe UK's leading trade and logistics company is seeking a skilled Security Operational technology Delivery Analyst to join them in managing the day-to-day service, incidents and projects for CCTV, Electronic Access Control Systems and OT systems across...
-
Supply Chain Administrator
2 weeks ago
Liverpool, Liverpool, United Kingdom The Very Group Full time £25,000 - £40,000 per yearAbout usWe are The Very Group and we're here to help families get more out of life. We know that our customers work hard for their families and have a lot to balance in their busy lives. That's why we combine amazing brands and products with flexible payment options on to help them say yes to the things they love. We're just as passionate about helping our...
-
Commercial Supply Chain Leader UK/Ireland
17 hours ago
Liverpool, Liverpool, United Kingdom Elanco Full timeAt Elanco (NYSE: ELAN) – it all starts with animalsAs a global leader in animal health, we are dedicated to innovation and delivering products and services to prevent and treat disease in farm animals and pets.At Elanco, we are driven by our vision of Food and Companionship Enriching Life and our purpose – all to Go Beyond for Animals, Customers, Society...
-
Supply Chain Administrator
2 weeks ago
Liverpool, Liverpool, United Kingdom The Very Group Full time £25,000 - £40,000 per yearAbout usWe are The Very Group and we're here to help families get more out of life. We know that our customers work hard for their families and have a lot to balance in their busy lives. That's why we combine amazing brands and products with flexible payment options on to help them say yes to the things they love. We're just as passionate about helping our...
-
Supply Chain Administrator
1 week ago
Liverpool, Liverpool, United Kingdom Torus Full time £100,000 - £150,000 per yearHMS, part of Torus Group, is looking for a proactive and organisedSupply Chain Administratorto join our Liverpool team on a full-time, office-based basis at our Stonebridge office. This is an exciting opportunity to play a key role in ensuring the smooth running of our supply chain operations, helping to manage construction and maintenance materials for our...
-
Relief security officer
2 weeks ago
Liverpool, Liverpool, United Kingdom Amberstone Security Full time £31,200 per yearRelief Retail Security OfficerAbout ASELASEL design, develop and deliver fully bespoke and integrated security solutions, seamlessly bringing together people, technology and processes to achieve results-driven outcomes.As the original thinkers behind security risk modelling - which has revolutionised the industry - our business is underpinned by our risk...