Current jobs related to Information Security Risk Analyst - London, UK - Brown & Brown Europe


  • London,, UK, United Kingdom Thomson Keene Full time

    Job Title: Information Security Business Analyst3 Days onsite per week (London) + Day rate up to £500 (Umbrella)Client Overview:Our partner is a leading global commodities firm distinguished for its excellence in Energy and Metals sectors. We are in search of a Cyber Security Business Analyst who comprehends the integration of Infrastructure IT with...


  • London,, UK, United Kingdom Cititec Talent Full time

    Information Security Business Analyst - London - 6-Month ContractLocation: London (3 days in-office, 2 days WFH)Duration: 6-month contractPay Rate: Up to £500 per day (inside IR35)Cititec Talent is collaborating with a global commodities firm to find an experienced, hands-on Information Security Business Analyst for their London team. This contract role...


  • London,, UK, United Kingdom Acumin Full time

    IT Security Risk Analyst We are seeking a highly skilled IT Security Risk Analyst to strengthen our cybersecurity posture. In this role, you will be responsible for identifying, assessing, and mitigating risks that could impact our IT infrastructure and digital assets. You will work closely with cross-functional teams to develop risk management strategies...

  • Risk Analyst

    3 weeks ago


    London, UK, United Kingdom Paritas Recruitment - Risk Full time

    Risk Analyst - Financial Risk Reporting A leading global financial services business is seeking a Risk Analyst to join their London based team. Reporting directly to the Head of Market Risk you will be responsible for daily reporting and monitoring of the metals and collateral markets and measuring the risk exposure of member and counterparty portfolios...


  • London, UK, United Kingdom Paritas Recruitment - Risk Full time

    IT Operational Risk Analyst A global commodity trading firm based in London is seeking a candidate to join their Operational Risk team at Analyst level. The role would suit a candidate already in operational risk seeking a fresh challenge, or an IT Auditor, looking to move into the operational risk space. If selected you would work with all areas of IT...


  • London, UK, UK, United Kingdom Saepio Information Security Full time

    Title: Cloud Security Solutions ArchitectLocation: Hybrid, London or High Wycombe, United KingdomSalary: £70k basic, £90k OTE Year 1, £110k OTE Year 2Hours: Full Time - (Mon – Fri, 9am – 6pm)Reporting To: Solutions Architecture ManagerSaepio are an Information Security Solutions Provider that work with UK based corporate customers with between...


  • London,, UK, United Kingdom Thinking Search Full time

    An excellent opportunity to join a leading professional services firm in the Information Security and Compliance Function. You will have experience working in the legal or professional services industry with expertise in client audits, vendor risk assessments and ISO certifications. This is a 12 month FTC maternity cover and hybrid working is available. The...

  • Security Analyst

    5 days ago


    London,, UK, United Kingdom Computappoint Full time

    Senior Process Risk and Control Analyst Base Salary: Excellent market salary on offer (based on candidate experience)Package: Excellent company benefits & competitive bonusHybrid Model: 3 days per week in Central London office, 2 days remoteOffice Location: Central LondonAbout the Client and the Role:My client, a highly prestigious, globally renowned name in...


  • London,, UK, United Kingdom Locke and McCloud Full time

    Cyber Security AnalystWe seek a Global Security Analyst to support and enhance our Firm’s security infrastructure. This role involves managing security tickets, assisting with strategic projects, and collaborating with IT departments to enforce best practices.Key Responsibilities:Serve as the first point of contact for security-related issues via the...

  • Security Analyst

    4 weeks ago


    London, UK, UK, United Kingdom Harnham Full time

    Job Title: Security AnalystContract Duration: 3-6 MonthsLocation: RemoteDay Rate: £300-£450 per dayThe Role:We are seeking a skilled Security Analyst to join our team on a contract basis. In this role, you will play a critical part in monitoring, detecting, and responding to security incidents using Microsoft Sentinel. Your primary responsibility will be...


  • London,, UK, United Kingdom Harrington Starr Full time

    We are seeking a seasoned Information Security Manager for a leading global London based end user who are a market leader in their field, and a recognised name internationally. The successful candidate will take ownership of all infosec compliance and assurance throughout the organisation. You will also be responsible for managing a team of analysts to help...


  • London,, UK, United Kingdom CornerStone - Risk, Cyber & Security Full time

    CornerStone is a leading independent Security Risk Consultancy, and we are now looking for a Technical Security Consultant to join our award-winning team in a UK-wide capacity. We are seeking an individual who enjoys working in a fast-paced, collaborative environment that is built upon innovation, teamwork, taking ownership, and supporting each other....

  • Security Analyst

    2 weeks ago


    London, UK, UK, United Kingdom Legal & General Full time

    Helping over ten million people around the world manage their savings, retirement plans and life insurance requires a lot of people behind-the-scenes. It’s up to us in L&G Group functions – which includes our tech and digital teams, Group Finance, HR, Risk and Corporate Comms to provide the essential support services that all areas of the business need,...


  • London,, UK, United Kingdom Eames Consulting Full time

    Director of Information securityLondon (Hybrid)£150,000+Eames are working on the hire of a Director of Information Security. This position will play a role in implementing and running the Information security program and strategy across the UK and Europe.The role:Building and managing excellent networks and client relationships organisationally wide...


  • London,, UK, United Kingdom SilverRock Bank Full time

    At SilverRock, we are building a new bank. Our vision is to “Pioneer fairer financial outcomes by empowering lenders to deliver and enabling savers to prosper” We are doing this by building a unique and highly scalable data driven multi-asset bank through a partnership of ecosystems, specialising in the delivery of forward flow partnerships and portfolio...


  • London, UK, UK, United Kingdom DGH Recruitment Full time

    Cyber Security AnalystDGH Recruitment are currently recruiting on behalf of a leading client in the spectator sports industry who require a Cyber Security Analyst to join the team in London. The role involves providing specialist support to IT and the wider business across the breadth of Information and Cyber Security.This will be a hybrid role with a...


  • London,, UK, United Kingdom Locke and McCloud Full time

    Vice President, Information SecurityThe OpportunityWe are seeking a highly experienced and strategic leader to join our global team as the Vice President of Information Security. In this key executive role, you will drive our organization's security vision, delivering a comprehensive program that aligns with both global objectives and regional...


  • London,, UK, United Kingdom Espire Infolabs Full time

    Job Title: Information Security GRC SpecialistLocation London Uk Job Type: Fixed term contract 6 months + possible extensionsTravel: 3 days onsite and 2 days remote workKey skill Solid experience with implementing risk framework based on iso27k presenting risk and collecting risks ⁠experience with security awareness training Job description Lead...


  • London, UK, United Kingdom Brit Full time

    Vacancy Name Analyst- Risk Aggregation Employment Type Permanent Location London Role Details We`re looking for an Analyst (Risk Aggregation)About BritAt Brit, we believe that the uncertainty of the future should never stand in the way of progress. That`s why we exist. To help people and businesses face the future and thrive. We are change-makers...


  • London, UK, United Kingdom British Land Full time

    Job Title: Cyber Security Analyst Department: Technology LOCATION: Marble Arch, London REPORTING TO: Head of Information Security TYPE OF CONTRACT: Full-Time, Permanent PLACES, PEOPLE, PREFER Our purpose is to create and manage outstanding places which deliver positive outcomes for all our stakeholders on a long term, sustainable basis. We are a...

Information Security Risk Analyst

4 months ago


London, UK, United Kingdom Brown & Brown Europe Full time

Information Security Risk Analyst

Location: Hybrid - London

Package: Negotiable + Benefits


The Information Security Risk Analyst III at Brown & Brown is responsible for analysing information security controls both within our organisation and with third-party entities. This analysis aims to identify and assess associated information security risks, and effectively communicate these findings to the business stakeholders. This role requires a thorough understanding of information security principles and practices, as well as the ability to evaluate complex systems and processes. The Information Security Risk Analyst III plays a crucial role in safeguarding our organisation's information assets and maintaining a strong security posture.


The day to day:

  • research and analysis to handle inbound cybersecurity inquiries from company’s third parties.
  • research and analysis related to vetting new or potentially new third parties.
  • recommendations for communicating identified security risks of new or potentially new third parties.
  • track, monitor, and investigate potential information security incidents reported by company’s third parties.
  • and analyse third party risk including documentation.
  • guidance in identifying, evaluating, and developing processes and procedures that are effective; meet information security standards and requirements, and follow information security policies and regulations.
  • reporting and analysis to monitor and communicate information security risk activities
  • best practices and recommend how to improve current practices and monitoring.
  • complex inquiries from business partners and third parties (e.g., RFPs, Information Security questionnaires, Contract reviews, etc.).
  • small to medium Information Security Risk Management project initiatives.
  • and maintain dashboards, reports, metrics, and trending data related to information security.
  • a strong understanding of information security fundamentals
  • working with ticketing systems (ex. Remedy, Service Now)
  • to assess information security controls based on cybersecurity principles and tenets. (e.g., CIS CSC, NIST SP 800-53, Cybersecurity Framework, etc.).
  • to identify cybersecurity and privacy issues that stem from connections with internal and external


About you:

  • Degree (Cyber security or related field), relative Information Security certification, and extensive related experience.
  • Information Systems Security Professional (CISSP), or related certification.
  • and understanding of controls related to COBIT, HITRUST, SOX, PCI, HIPAA, and other regulations.
  • to review Service and Organization Controls (SOC) reports to confirm expected business and partner controls are implemented.
  • of risk management processes (e.g., methods for assessing and mitigating risk).
  • of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.
  • of cybersecurity and privacy principles.
  • of organisation's enterprise information security architecture.
  • of Security Assessment and Authorization process.
  • of cybersecurity and privacy principles used to manage risks related to the use, processing, storage, and transmission of information or data.
  • of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins).
  • of cybersecurity and privacy principles and organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).


The rewards:

  • negotiable basic salary and all the normal benefits you’d expect (Holiday, company pension etc.)
  • collaborative, open and honest environment that is designed to deliver the best outcomes to our clients and staff
  • flexible working methodology to enable you to be where you need to be, if you don’t need to be in an office then don’t, if you want to be in an office your welcome to use one.
  • environment built around supporting and developing our staff with funding available for relevant professional qualifications.