An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Alfa Financial Software Limited is seeking an Information Security Analyst to strengthen ISO 27001/27018 compliance across our global client base. You’ll help maintain the ISMS, work with auditors, and translate complex security requirements for stakeholders.
This role requires hands-on ISO controls experience, strong analytical skills, and the ability to collaborate with engineers, auditors and senior leadership. A regulated industry background and Jira/Confluence familiarity are helpful.
Alfa is looking to recruit an ISO 27001 and ISO 27018 Information Security Analyst to strengthen our Information Security and Audit/Compliance functions. Alfa Systems sits at the heart of some of the world's largest asset finance companies, across 26 countries which means information security isn't a back‑office function here, it's central to how our clients trust us with their business. If you want your work to genuinely matter, this is that kind of role.
You’ll help maintain and continuously improve our Information Security Management System (ISMS), keeping our policies and procedures sharp and our compliance with ISO 27001 and ISO 27018 on point. You’ll get involved in SSAE 18 / ISAE 3402 SOC 1 Type 2 and SSAE 18 SOC 2 Type 2 assurance audits, spot opportunities to improve our security controls and processes, and contribute to how we analyse and mitigate risk.
On the audit and compliance side, you’ll actively participate in ISO 27001 and ISO 27018 audits, build clear documentation for regulatory and audit requirements, support internal and external audits and regulatory inspections, and compile the evidence that keeps it all standing up to scrutiny.
You’ll be part of a collaborative Information Security team, working closely with colleagues across the business to communicate complex requirements clearly, whether that’s to engineers, auditors or leadership.
Ticketing systems (Jira preferred) and knowledge management platforms (Confluence preferred) will be part of your everyday toolkit, alongside the frameworks and standards that underpin everything we do, ISO 27001, ISO 27018, and an awareness of others like NIST and CSA STAR.