Hybrid Security Governance Analyst - ISMS & Compliance

Commify-Group

Nottingham

Hybrid

GBP 30,000 - 40,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Competitive salary
Company bonus scheme
Healthcare cash plan
27 days annual leave + bank holidays
Wellbeing leave days
Birthday day off
Employer pension 5%
Death in service 4x salary
Annual awards
Social events
Training & development
Flexible hybrid working

Job summary

Commify-Group is seeking a Security Governance Analyst to join our Cyber Security team. With around one year of hands-on experience in information security, risk, or compliance, you will help drive our Information Security Management System (ISMS) across more than 20 active global frameworks, working directly with our Cyber Security Manager.

If you already have the fundamentals and seek breadth, high visibility, and clear career progression, this is your opportunity.

Qualifications

  • Circa 1 year of experience in information security, compliance, GRC, or IT auditing.
  • Familiarity with at least one major compliance standard (ISO 27001, Cyber Essentials, PCI DSS, or SOC 2).
  • Strong organisational & stakeholder skills with ability to manage multiple priorities and chase updates.
  • Methodical mindset with strong written skills for audit-proof documentation.
  • Bonus points for experience with GRC tools or progress towards relevant certifications (e.g., Security+).

Responsibilities

  • Sourcing, evaluating, and maintaining audit-ready evidence for frameworks like ISO 27001, PCI DSS, SOC 2, HIPAA, and Cyber Essentials.
  • Driving technology risk action plans (~140+ items) and escalating stalled risks.
  • Planning and executing routine control testing across frameworks to ensure compliance.
  • Mapping control evidence to the Common Controls Framework (SCF) to standardise responses.
  • Coordinating global security awareness training and managing phishing campaigns across territories.
  • Overseeing distribution, communication, and acknowledgement of updated IS policies.

Skills

Information security experience
GRC familiarity
Stakeholder management
Attention to detail
Audit documentation

Tools

GRC tools

Job description

Commify-Group is seeking a Security Governance Analyst to join our Cyber Security team. With around one year of hands-on experience in information security, risk, or compliance, you will help drive our Information Security Management System (ISMS) across more than 20 active global frameworks, working directly with our Cyber Security Manager.

If you already have the fundamentals and seek breadth, high visibility, and clear career progression, this is your opportunity.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Global Cyber Governance Analyst — ISMS & Risk
Global Cyber Governance Analyst — ISMS & Risk

Commify • Nottingham

Hybrid
GBP 30,000 - 40,000
Company Bonus Scheme
Healthcare cash plan
27 days annual leave
+1
Junior Cyber Governance Analyst – Global Impact
Junior Cyber Governance Analyst – Global Impact

Commify-Group • Nottingham

On-site
GBP 30,000 - 35,000
Competitive salary
Company bonus scheme
Healthcare cash plan
+8
Graduate Cyber Governance Analyst — Global Exposure & Growth
Graduate Cyber Governance Analyst — Global Exposure & Growth

Commify • Nottingham

On-site
GBP 30,000 - 35,000
Competitive Salary
Company Bonus Scheme
Healthcare cash plan
+7
Information Security Manager - HYBRID
Information Security Manager - HYBRID

Proactive Appointments • Cambridgeshire and Peterborough

On-site
GBP 60,000 - 90,000
Hybrid Information Security GRC Analyst: Impact & Compliance
Hybrid Information Security GRC Analyst: Impact & Compliance

Cygnet • Birmingham

Hybrid
GBP 45,000 - 52,000
25 days annual leave
Bank holidays
Fully paid training
+5
Security Analyst: ISMS & Compliance (Hybrid Bristol)
Security Analyst: ISMS & Compliance (Hybrid Bristol)

Applicable Limited • West of England

Hybrid
GBP 36,000 - 60,000
25 days holiday (plus bank holidays)
Company pension
Income Protection
+3
Hybrid Information Security Analyst – ISMS & Compliance
Hybrid Information Security Analyst – ISMS & Compliance

Europa Worldwide Group • Dartford

Hybrid
GBP 40,000 - 45,000
Hybrid Working
Onsite amenities
25 days annual leave
+5
Cyber Security & Compliance Analyst | Hybrid Role
Cyber Security & Compliance Analyst | Hybrid Role

Personal Group • Milton Keynes

Hybrid
GBP 54,000 - 66,000
Holiday entitlement
Private medical insurance
Travel insurance
+2
Cyber Governance Analyst
Cyber Governance Analyst

Commify • Nottingham

Hybrid
GBP 30,000 - 40,000
Company Bonus Scheme
Healthcare cash plan
27 days annual leave
+1
Cyber Governance Analyst
Cyber Governance Analyst

Commify-Group • Nottingham

Hybrid
GBP 30,000 - 40,000
Competitive salary
Company bonus scheme
Healthcare cash plan
+9