Controls Security Analyst

NatWest Group

East Midlands

On-site

GBP 50,000 - 75,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NatWest Group is seeking a Controls Security Analyst to proactively identify security events, incidents and trends that could impact the bank, customers, staff or assets. You will collaborate with colleagues, auditors and stakeholders to identify gaps, evaluate risks, support compliance, and track remediation actions.

You will ensure incident response, access controls, alert monitoring and root-cause analysis are performed to high standards, with strong data-driven decision making and

Qualifications

  • Mix of security, risk, compliance and communication skills.
  • Strong understanding of cybersecurity and technology risk management.
  • Familiar with ISO 27001, NIST and CIS Controls.
  • Identity and access management, vulnerability management and cloud security.

Responsibilities

  • Providing end to end security response, including triage, response, escalation and coordination of events and incidents.
  • Making sure decisions are based on data, ROI and cost management.
  • Encouraging identification of ideas and delivery of cost-reducing initiatives.
  • Building relationships across the bank and with third parties for commercially focused decisions.
  • Support internal and external audit requests for information and evidence.

Skills

Security
Risk management
Compliance
Stakeholder management
Incident management

Tools

Azure
AWS
GRC tools

Job description

Join us as a Controls Security Analyst
  • This is an opportunity for a driven analyst to take on an exciting new career challenge
  • You'll be able to build and maintain a wide network of stakeholders of varying degrees of seniority
  • It's a chance to have a tangible effect on our function, put your existing skills to the test and advance your career
What you'll do

As a Controls Security Analyst, you'll play a proactive role in anticipating and identifying security events, incidents and trends that could adversely impact the bank, our customers, employees or assets.

You’ll be collaborating with internal and external colleagues, auditors, specialists and stakeholders to identify control gaps, evaluate risks, support compliance activities, and track remediation actions. In addition you'll ensure activities relating to incident response, user access, alert monitoring, root cause analysis and scenario planning are completed in line with standard operating procedures and to a high standard.

You’ll also:

  • Providing end to end security response, including triage, response, escalation, and coordination of events and incidents
  • Making sure decisions made are based on robust data, return on investment and value measures that demonstrate thoughtful and intelligent cost management
  • Encouraging the identification of ideas and driving the delivery of initiatives that will reduce cost and simplify the bank
  • Building and leveraging relationships with colleagues across the bank, and with third parties, to make sure decisions made are commercially focused and create long term value for the organisation
  • Support internal and external audit requests for information and evidence and prepare audit evidence
The skills you'll need

To succeed in this role, you'll need a mix of security, risk, compliance and communication skills, along with a strong understanding of cybersecurity, technology risk management, and control assurance. You should be familiar with security frameworks such as ISO 27001, NIST, and CIS Controls, as well as principles of identity and access management, vulnerability management, and cloud security, along with proven experience with cloud platforms such as Microsoft Azure or AWS.

You’ll also require strong analytical skills, attention to detail, and the ability to assess risks and interpret control effectiveness. You’ll need the ability to translate complex technical concepts in a simplified and concise manner to your peers and management level colleagues.

Additionally, you need:

  • A proactive mindset, analytical skills and strong problem-solving ability and experience leading projects or managing remediation activities
  • Knowledge of governance, risk, and compliance (GRC) tools, and familiarity with regulatory requirements such as GDPR can also be valuable
  • An understanding of banking security controls
  • A good understanding of Agile Methodologies with experience of working in an Agile team
  • Incident management and security controls experience
  • Ability to work under pressure and to tight deadline on occasions
  • Excellent communication and stakeholder management skills, as you'll regularly engage with technical teams, business stakeholders, and auditors to explain findings and drive improvements

Hours 35

Job Posting Closing Date: 19/08/2026

Ways of Working: Hybrid

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

Novia Financial plc • Bath

On-site
GBP 55,000 - 75,000
Cyber Security Analyst
Cyber Security Analyst

SmartestEnergy • Ipswich

On-site
GBP 50,000 - 75,000
Flexible Working
Diversity and Inclusion Commitment
Controls Analyst
Controls Analyst

Premier Inn • Dunstable

Hybrid
GBP 38,000 - 48,000
Bonus: 15%
Brand discounts: Premier Inn stays up 
Restaurant discounts: up to 25%
+1
IT Security Controls Assurance Manager
IT Security Controls Assurance Manager

Lloyds Banking Group • Halifax

Hybrid
GBP 61,000 - 76,000
Security Assurance Analyst
Security Assurance Analyst

Caraffi • Reading

Hybrid
GBP 60,000 - 85,000
Cyber Security Analyst
Cyber Security Analyst

DTG Global • Cheshunt

On-site
GBP 45,000 - 60,000
Cyber Security Analyst
Cyber Security Analyst

SmartestEnergy Business Limited • Ipswich

Hybrid
GBP 60,000 - 100,000
Flexible Working
Global Impact
Commitment to Diversity and Inclusion
Security Detection & Response II
Security Detection & Response II

Bank of America • Chester

On-site
GBP 55,000 - 85,000
Private healthcare
Pension plan
Maternity leave
Cyber Security Business Analyst
Cyber Security Business Analyst

Bonhill Partners • Greater London

Hybrid
GBP 70,000 - 110,000
Security Engineer – Risk & Controls
Security Engineer – Risk & Controls

Iceberg • England

On-site
GBP 60,000 - 85,000