Get more replies from employers
Send a job-specific resume in minutes.
REX Cyber Security in Bristol is seeking an Information Security Analyst to join its governance and assurance team. The role focuses on ISO 27001, ISMS governance and audit, with international scoping and controls improvement across the business.
You will lead risk assessments, contribute to compliance activities, and support certification efforts, audits and supplier security reviews in a fast‑paced professional services environment.
We’re working with a leading professional services company in Bristol that is looking to appoint an Information Security Analyst to join its established security function.
This is a great opportunity for an experienced InfoSec professional who enjoys the governance, risk and assurance side of security, with a particular focus on ISO 27001, ISMS governance, audit, compliance and control assurance.
You’ll play an important role in maintaining and developing the organisation’s security framework, working across the business to manage risk, strengthen controls and support the continued development of its ISO 27001 certification internationally.
You’ll take a hands‑on role across information security governance, audit and compliance, helping ensure security controls remain effective, proportionate and aligned with recognised standards.
Key responsibilities will include:
We’re looking for someone with previous experience in an Information Security, GRC, Security Assurance or ISMS-focused role, ideally within a complex or regulated organisation.
You’ll ideally bring:
Relevant certifications such as CISSP, CISMP, ISO 27001 Lead Implementer or Lead Auditor would be highly beneficial.
This is an opportunity to join a leading professional services business where information security is a key priority and have genuine involvement in the continued development of its security and assurance capability.
You’ll gain exposure across a broad international environment, with the opportunity to influence ISO 27001 governance, audit, risk, third-party assurance and security culture across the organisation.