Cyber Risk and Resilience Analyst

Halma plc

Greater London

On-site

GBP 55,000 - 85,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Halma plc in the United Kingdom seeks a Cyber Risk Analyst with strong cybersecurity audit and assurance background to identify vulnerabilities across the organization and its global portfolio. You will collaborate with Technology, Audit and Risk teams to assess risk, define controls, and report security status to executives.

The role emphasizes stakeholder engagement, regulatory awareness, and driving risk-informed decision making to ensure secure, resilient systems across the Halma group.

Qualifications

  • Relevant certifications in cybersecurity (such as CISM, CISSP, CRISC, or CISA) are preferred.
  • Strong experience in managing partnerships and fostering trust with stakeholders to influence decisions.
  • Excellent verbal and written communication skills for executive and board-level audiences.
  • Outcome-driven with ability to collaborate across functions to achieve results.

Responsibilities

  • Cyber Audit & Assurance: audit IT infrastructure, cloud environments, apps, and third-party vendors; map controls to standards.
  • Risk Assessment and Advisory: conduct cybersecurity risk assessments with Tech, Audit and Risk teams; advise partners.
  • Mitigation and Support: help track remediation actions; compile security reports for stakeholders.
  • Threat Intelligence and Security Awareness: monitor threats and trends; integrate intelligence into security strategy; train organization.

Skills

Cybersecurity risk management
Auditing & assurance
Stakeholder communication
Regulatory knowledge

Education

CISM, CISSP, CRISC, or CISA certifications

Job description

Help grow a safer, cleaner, healthier future for everyone, every day.

Role Overview

As cyber risks evolve, businesses face a complex and expanding threat landscape, making strategic risk management essential. We are seeking Our a talented Cyber Risk Analyst with a strong background in Cybersecurity Audit and Assurance to identify vulnerabilities within the organization and that of the organisation's portfolio of companies around the world, to improve risk visibility, and implement effective risk mitigation. In this role, you will also be instrumental in ensuring the organization's technology systems are secure, resilient, and aligned with acceptable risk thresholds.

Key Responsibilities
Cyber Audit & Assurance
  • Conduct comprehensive audit assessments of IT infrastructure, cloud environments, application stacks, and third-party vendor systems to verify control effectiveness
  • Map internal control frameworks to industry standards and regulatory mandates (e.g., ISO 27001, NIST CSF, SOC 2, HIPAA, GDPR, PCI-DSS)
  • Act as the primary liaison between technical teams and external/internal auditors during annual cyber audits and regulatory examinations
  • Define, execute, and document technical audit test plans, sampling strategies, and evidence collection workflows to support internal assurance reviews
Risk Assessment and Advisory
  • Work collaboratively with Technology, Audit, and Risk teams, and operating companies, to conduct thorough cybersecurity risk, audit and assurance assessments
  • Develop and sustain effective relationships with business and functional partners, offering guidance, risk oversight, and educational support
  • Identify and report on non-compliance with risk frameworks, ensuring that deviations are well-documented and visible.
Mitigation and Support
  • Assist the Audit and Risk Teams in identifying and tracking mitigation actions for any technology and cybersecurity issues.
  • Compile and present regular security reports for stakeholders, summarizing the organization's security status, incidents, and risk assessments.
Threat Intelligence and Security Awareness
  • Monitor and stay informed about new cybersecurity threats, vulnerabilities, and trends in the industry.
  • Integrate this intelligence into the organization's security strategy.
  • Foster an organization-wide security mindset by providing training and guidance on cybersecurity best practices.
Role Requirements
Professional Qualifications
  • Relevant certifications in cybersecurity (such as CISM, CISSP, CRISC, or CISA) are preferred.
  • Strong experience in managing partnerships and fostering trust, with the ability to influence and work collaboratively with various stakeholders
  • Excellent communication skills, both verbal and written, with the ability to convey complex information effectively, particularly to executive and board-level audiences.
  • Outcome-driven, with a demonstrated ability to foster teamwork across functions.
Technical and Analytical Proficiency
  • Solid understanding of operational risk management frameworks, including processes for identifying, assessing, and managing risk scenarios
  • Demonstrable experience with cyber assurance and audit risk assessment
  • Excellent knowledge of regulatory standards, frameworks, policies and procedures
Additional Qualifications
  • Proficiency in various technology domains, including systems and software architecture, cloud platforms, networking, IoT, and integration technologies
  • Experience in consulting and change management, particularly in supporting technology-led transformations within an organization.
  • Curiosity and awareness of rapid developments in technology and security, with the ability to assess how emerging trends may impact the organization.
  • Ability to navigate complex global structures, advocating for and implementing new ideas and innovative solutions.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Analyst - Cyber Risk
Information Security Analyst - Cyber Risk

Harrington Starr • Greater London

On-site
GBP 45,000 - 65,000
Competitive salary and benefits
Cyber Security Analyst: Risk, Governance & Incident Response
Cyber Security Analyst: Risk, Governance & Incident Response

Harrington Starr • Greater London

On-site
GBP 45,000 - 65,000
Competitive salary and benefits
Cyber Risk Manager
Cyber Risk Manager

Adepta Partners • Belfast City District

Hybrid
GBP 60,000 - 90,000
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Control Risks • Greater London

On-site
GBP 60,000 - 80,000
Competitively positioned compensation package
Discretionary global bonus scheme
Hybrid working arrangements
Cyber Risk & Security Manager
Cyber Risk & Security Manager

Spirit UK Ltd • Greater London

Hybrid
GBP 50,000 - 70,000
Cyber Security Specialist
Cyber Security Specialist

DiverseJobsMatter • England

On-site
GBP 70,000 - 100,000
Competitive salary
Comprehensive benefits package
Access to travel-related benefits
Associate Consultant, Cyber Advisory
Associate Consultant, Cyber Advisory

Cyber UK • Greater London

Hybrid
GBP 40,000 - 66,000
Competitively positioned compensation
Discretionary global bonus scheme
Support for hybrid working arrangements
+1
Senior Cyber Security Consultant
Senior Cyber Security Consultant

Control Risks • Greater London

Hybrid
GBP 90,000 - 130,000
Hybrid work arrangement
Global bonus scheme
Equal opportunity employer
Cybersecurity Analyst – Vulnerability Management
Cybersecurity Analyst – Vulnerability Management

Digital Realty Trust, L.P. • Greater London

Hybrid
GBP 60,000 - 90,000
Senior Consultant, Cyber Advisory
Senior Consultant, Cyber Advisory

Cyber UK • Greater London

Hybrid
GBP 70,000 - 90,000
Competitively positioned compensation
Discretionary global bonus scheme
Support for hybrid working arrangements