Job Search and Career Advice Platform

Enable job alerts via email!

Business Analyst (Information Security)

RedRock Resourcing

United Kingdom

On-site

GBP 46,000 - 55,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading organisation in the Bristol area is seeking a Business Analyst (Information Security) to play a key role in delivering risk-informed business analysis. Candidates should have strong business analysis experience, particularly in secure or regulated environments. Responsibilities include documenting requirements with a focus on security, producing relevant artefacts, and facilitating stakeholder workshops. This is an excellent opportunity to join a market leader with a competitive salary of up to £55k.

Qualifications

  • Experience in a secure and/or regulated environment.
  • Proficient in gathering requirements and documenting them.
  • Familiarity with Secure by Design principles and UK GDPR.

Responsibilities

  • Elicit and document business and functional requirements.
  • Produce security-aware artefacts like BRDs and Risk Assessment reports.
  • Facilitate workshops with security and compliance stakeholders.

Skills

Strong business analysis experience
Proficient in requirements gathering
Stakeholder analysis
Documentation
Designing operational processes
Service transition knowledge
Job description

Business Analyst (Information Security) - Up to £55k - New Role (REF05)

Bristol-based.

Keywords: Business Analyst, IT, Cyber Security, Information Security.

A leading organisation in the Bristol area requires a Business Analyst to join its growing delivery function. Suitable candidates will have a good understanding of cyber security/cyber security frameworks and will play a key role in delivering risk‑informed business analysis while ensuring security is embedded throughout the delivery lifecycle.

Key Responsibilities / Deliverables
  • Elicit and document business and functional requirements with security and privacy considerations.
  • Produce security‑aware artefacts including Business Requirements Documents (BRDs), Functional Specifications, Threat Modelling inputs, Risk Assessment reports, Security Requirements Traceability Matrix (SRTM).
  • Contribute to security risk assessments, DPIAs, and asset classification activities.
  • Facilitate workshops with security, compliance, and technical stakeholders to capture security obligations.
  • Ensure traceability from security requirements through to test validation and service go‑live.
  • Support the secure onboarding and retirement of service components, aligned with UK government guidance.
Suitable candidates will have the following:
  • Strong business analysis experience in a secure and/or regulated environment.
  • Proficient in requirements gathering, stakeholder analysis, and documentation.
  • Demonstratable experience in designing operational processes.
  • Knowledge of service transition.
  • Familiarity with any of the following would be useful: Secure by Design principles, NCSC guidelines, Cyber Essentials or ISO 27001, UK GDPR and Data Protection Act.

Please send CV for full job description and an informal chat. Excellent opportunity to join a market leader!

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.