Information Security Analyst implementing risk management in a global enterprise. Collaborating across teams to enhance security and compliance operations in a fast-paced environment.
Responsibilities
Support the Information Security Risk Manager & Data Protection Officer to maintain a corporate-wide, global information risk management program.
Understand the business and identify challenges with current processes.
Monitor adherence with compliance programs.
Be involved in the development of the business towards continual improvement of security and compliance positions.
Requirements
2–3 years minimum in an information security or data protection role
Detailed report writing skills
Hands-on experience with at least one certification cycle (ISO 27001, SOC 2, etc.) from start to finish.
Demonstratable experience managing or influencing stakeholders at a senior level.
Involvement in penetration testing activities and remediations.
Experience handling real security incidents or data breaches.
Strong awareness of the GDPR, either through training from working within a business that processes personal data or independent learning.
Strong practical understanding of security and compliance frameworks, such as ISO27001, SOC 2 type II and Cyber Essentials Plus.
Practical working knowledge of Defender, Intune, Entra, Purview, AWS and Azure
Ability to pragmatically balance security risk against business need
Maintenance and creation of the Risk Register, ROPA & DPIAs
Curious and proactive
Approachable and calm
Excellent communication skills
Keen to learn
Technically well rounded
Can work autonomously
Commercially aware
Ability to pragmatically balance security risk against business need
**Desirable but not essential **
Knowledge of GRC tools such as Drata and Safebase.
Knowledge of Security and Awareness training tools, campaign creation etc.
SaaS background
Good understanding of Risk Management and continuous improvement practices.
Benefits
25 days annual leave (with the option to buy and sell additional days)
Cycle to work scheme
Access to Learning & Development platform
Life Insurance
Auto Enrolment Pensions
Healthshield (Cashback on dental check-ups and fillings, eye tests, physiotherapy, prescriptions and much more
Reimburse for usage of personal mobile phone
Free Gym membership and Free Friday lunch for office based staff
Partner Sales Specialist focusing on enabling partners to sell Microsoft Security solutions. Collaborating with teams to activate partners for effective sales across their customer base.
Activity Security Representative providing multi - disciplined security support for a customer’s facility at GDIT. Role involves ensuring security protocols and maintaining documentation for classified materials.
Cybersecurity Engineer enhancing enterprise security posture at GDIT. Designing secure identity controls and managing authentication solutions for Microsoft environments.
Information Security Officer developing risk management systems and collaborating with stakeholders for a tech company. Working on information assets and engineering teams in a hybrid working environment.
Security Lead managing GSA cloud applications security architecture. Collaborating with teams to ensure compliance with federal security standards and best practices.
Security Officer providing safety and security services in East Valley locations for Banner Health. Involves emergency response, patrols, alarm monitoring, and writing reports.
Security Engineer contributing to security initiatives for incident management platform at Rootly. Collaborating cross - functionally to ensure reliable and scalable security solutions.
Lead Senior Information System Security Manager (ISSM) for Boeing's cybersecurity programs. Focus on implementing compliance for DFARS/NIST and managing a large portfolio for CUI.
Técnico de Segurança do Trabalho supporting Segurança, Meio Ambiente e Saúde in submarinas operations for Petrobras in Macaé/RJ. Contribuir para ambientes de trabalho seguros e cumprimento de normas.
Senior Information Security Analyst focused on Blue Team/CSIRT at PagBank. Engaging in cybersecurity incident response and advanced security solutions support.