Information Security Analyst

Canopius

Manchester

Hybrid

GBP 45,000 - 65,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid working
Competitive base salary
Non-contributory pension
Discretionary bonus
Health & dental cover

Job summary

Canopius is seeking an Information Security Analyst to support security controls across on‑premise and cloud environments in a hybrid Manchester setting. The role works with Technology teams, third‑party providers, and business stakeholders to reduce cyber risk and maintain policy compliance.

You will help monitor SOC/SIEM outputs, participate in risk assessments, and assist with audit responses. Strong communication and a security‑minded mindset are essential for protecting information assets.

Qualifications

  • Experience in information security, IT risk, or IT operations.
  • Understanding of cybersecurity risks, threats, and control types.
  • Familiarity with incident management and assurance activities.
  • Ability to analyse information and document findings clearly.
  • Strong written and verbal communication skills.
  • Experience in regulated or enterprise environments.
  • Exposure to cloud security concepts (Azure).
  • Experience with security tooling (SIEM, endpoint protection, or vulnerability management).
  • Relevant information security education or certifications.

Responsibilities

  • Support the day-to-day operation of information security controls and services.
  • Monitor security tooling, alerts, and dashboards including SOC/SIEM outputs.
  • Investigate and respond to security events and incidents per procedures.
  • Escalate incidents and risks to the Information Security Manager as appropriate.
  • Perform assurance activities to assess control effectiveness.
  • Support gap analysis, compliance readiness, and ongoing monitoring.
  • Assist with risk identification, assessment, and documentation.
  • Track remediation actions and follow up with control owners.
  • Support security incident response activities including investigation and evidence gathering.
  • Assist with root cause analysis and lessons learned.
  • Contribute to improvements in controls and preventative measures.
  • Maintain and operate information security policies, standards, and procedures.
  • Provide guidance on security requirements to Technology and business teams.
  • Ensure security activities are auditable.
  • Support third-party security due diligence, reviews, and assurance activities.
  • Assist with responses to audits and regulatory requests.
  • Gather and provide evidence to demonstrate effective operation of controls.
  • Support security awareness and training activities.
  • Promote a positive security culture and clear communications.
  • Produce security reports and metrics for technical and non-technical audiences.
  • Analyze trends, threats, and emerging risks.
  • Contribute ideas to enhance security processes and controls.

Skills

Security operations
Incident response
Risk assessment
Cloud security
SIEM tooling
Endpoint protection
Vulnerability management
Regulatory compliance
Communication skills

Education

Information security certifications

Tools

SIEM systems
Endpoint protection
Vulnerability scanners
Azure security services

Job description

The Information Security Analyst is responsible for supporting the effective operation of information security controls, services, and processes across the organisation. Reporting to the Information Security Manager, the role provides hands‑on security analysis, monitoring, assurance, and risk support across on‑premise and cloud environments.

The role works closely with Technology teams, third‑party providers, and business stakeholders to help protect the organisation’s information assets, reduce cyber risk, and maintain compliance with security policies, standards, and regulatory requirements.

Responsibilities will include:

Security Operations & Monitoring

  • Support the day‑to‑day operation of information security controls and services.
  • Monitor security tooling, alerts, and dashboards, including SOC and SIEM outputs.
  • Investigate and respond to security events and incidents in line with agreed procedures.
  • Escalate security incidents and risks to the Information Security Manager as appropriate.

Security Assurance & Risk Support

  • Perform assurance activities to assess the effectiveness of security controls.
  • Support gap analysis, compliance readiness, and ongoing compliance monitoring.
  • Assist with the identification, assessment, and documentation of security risks.
  • Track remediation actions and follow up with control owners.

Incident Response & Problem Support

  • Support security incident response activities, including investigation and evidence gathering.
  • Assist with root cause analysis and documentation of lessons learned.

Contribute to improvements in controls, processes, and preventative measures.

Policy, Standards & Governance

  • Support the maintenance and operation of information security policies, standards, and procedures.
  • Provide guidance to Technology and business teams on security requirements and best practice.
  • Ensure security activities are documented and auditable.

Third‑Party & Audit Support

  • Support third‑party security due diligence, reviews, and assurance activities.
  • Assist with responses to internal and external audits, assessments, and regulatory requests.
  • Gather and provide evidence to demonstrate effective operation of security controls.

Security Awareness & Culture

  • Support the delivery of security awareness and training activities.
  • Promote a positive security and compliance culture across the organisation.
  • Contribute to communications and materials that improve security understanding and behaviour.
  • Produce security reports and metrics for both technical and non‑technical audiences.
  • Assist with analysis of trends, threats, and emerging risks.
  • Contribute ideas and improvements to enhance security processes and controls.

Skills and Experience

  • Experience in an information security, IT risk, or IT operations role.
  • Understanding of common cybersecurity risks, threats, and control types.
  • Familiarity with incident management, risk assessment, and assurance activities.
  • Ability to analyse information, identify issues, and document findings clearly.
  • Strong written and verbal communication skills.
  • Ability to manage multiple tasks and priorities with attention to detail.
  • Experience working in regulated or enterprise environments.
  • Exposure to cloud security concepts (e.g. Azure security services).
  • Experience with security tooling such as SIEM, endpoint protection, or vulnerability management tools.
  • Relevant education or certifications (or working towards) in information security.
About Us

Our benefits

We offer all employees a comprehensive benefits package that focuses on their whole wellbeing.

  • hybrid working
  • a competitive base salary
  • non-contributory pension
  • discretionary bonus
  • insurances including health (family) and dental cover
  • many other benefits to enhance financial, physical, social and psychological health

About Canopius

Canopius is a global specialty lines (re)insurer. We are one of the leading insurers in the Lloyd’s of London insurance market with offices in the UK, US, Singapore, Australia and Bermuda.

At Canopius we foster a distinctive, positive culture which enables us to bring our whole selves to work to flourish as people, and build a business which delivers profitable, sustainable results.

Based in incredible new offices in the heart of the City of London, Canopius operates a flexible, hybrid working model and is committed to providing an environment that challenges employees to be their best and where everyone's unique contributions are recognised, valued and respected.

We are fully committed to equal employment opportunities for all applicants and providing employees with a work environment free of discrimination and harassment. All employment decisions are made regardless of age, sex, gender identity, ethnicity, disability, sexual orientation, socio-economic background, religion or beliefs, marital or caring status, or any other status protected by the laws or regulations in the locations where we operate. We encourage and welcome applicants from all diverse backgrounds.

We make reasonable adjustments throughout the recruitment process and during employment. Please let us know if you require any information in an alternate format or any other reasonable adjustments.

Job Info
  • Job Identification 639
  • Job Category Information & Technology
  • Job Schedule Full time
  • Locations Level 5, Manchester, M2 3AB, GB (Hybrid)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Human Factors Manager
Cyber Human Factors Manager

Canopius • Manchester

Hybrid
GBP 90,000 - 120,000
Hybrid working
Non-contributory pension
Discretionary bonus
Head of IT Infrastructure
Head of IT Infrastructure

Canopius • Manchester

Hybrid
GBP 130,000 - 190,000
Hybrid working
Competitive base salary
Non-contributory pension
+2
Cyber Services Manager
Cyber Services Manager

Cyber UK • Greater London

Hybrid
GBP 70,000 - 90,000
Hybrid working
Comprehensive benefits package
Health and dental cover
Cyber Services Advisor
Cyber Services Advisor

vavemga • Greater London

Hybrid
GBP 40,000 - 70,000
Hybrid working
Competitive base salary
Discretionary bonus
+2
Global Proactive Cyber Services Lead
Global Proactive Cyber Services Lead

Cyber UK • Greater London

On-site
Senior Data Reporting Analyst
Senior Data Reporting Analyst

Canopius • Manchester

Hybrid
GBP 50,000 - 70,000
Competitive salary
Non-contributory pension
Discretionary bonus
+2
Data Governance & Quality Manager
Data Governance & Quality Manager

Canopius • Manchester

Hybrid
GBP 90,000 - 120,000
hybrid working
competitive base salary
non-contributory pension
+2
Information Security Analyst
Information Security Analyst

Heywood • Altrincham

Hybrid
GBP 42,000 - 62,000
Senior Global Data Protection Specialist
Senior Global Data Protection Specialist

vavemga • Greater London

Hybrid
GBP 75,000 - 120,000
Security Operations & Risk Analyst (Hybrid)
Security Operations & Risk Analyst (Hybrid)

Canopius • Manchester

Hybrid
GBP 45,000 - 65,000
Hybrid working
Competitive base salary
Non-contributory pension
+2