Information Security Compliance Analyst

GLORY

Basingstoke

On-site

GBP 40,000 - 60,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

25 days' holiday a year
Competitive Company pension scheme
Ongoing training and development
Private medical insurance
Life assurance
Income protection scheme
Dental insurance for all employees
Employee assistance programme
Employee wellbeing events
Employee My Benefits portal offering retail discounts

Job summary

GLORY is seeking an Information Security Compliance Analyst to join their Legal - Information Security department in Basingstoke. This newly created position involves responsibilities ranging from conducting audits to testing effectiveness of security controls. The role demands strong communication skills and a solid background in various Information Security frameworks, providing a lucrative opportunity for growth in the organization. Candidates with experience in managing risks and a consultative approach will thrive in this position, contributing to a culture of security excellence within the company. Registered auditors who can document findings comprehensively will be preferred.

Qualifications

  • Experience of working in an audit function.
  • Strong knowledge of Information Security governance frameworks.
  • Ability to navigate organisational politics and manage stakeholders.

Responsibilities

  • Plan, prepare and undertake a wide range of Information Security activities.
  • Work closely with internal and external audit teams to ensure compliance.
  • Lead and conduct Information Security internal and external audits.
  • Ensure third-party risks are identified, assessed, and managed effectively.

Skills

Experience in an audit function
Knowledge of Information Security frameworks
Clear and comprehensive audit documentation
Strong written and verbal communication skills
Ability to work autonomously
Ability to manage Information Security risks

Job description

Join or sign in to find your next job

Join to apply for the Information Security Compliance Analyst role at GLORY

Join to apply for the Information Security Compliance Analyst role at GLORY

Get AI-powered advice on this job and more exclusive features.

Department: Legal - Information Security

Department: Legal - Information Security

Location: UK/Basingstoke

Description

In this newly created position, you will be responsible for planning, preparing and undertaking a wide range of Information Security activities. You will work closely with internal and external audit teams and other stakeholders to ensure the effectiveness and compliance of the organization's information security measures. You will also work closely with the procurement team, business units, and third-party vendors to ensure that all third-party risks are identified, assessed, and managed effectively. Strong knowledge of Information Security governance frameworks is essential for this position.

You will be required to use your knowledge and experience to test, document, evaluate, remediate, and improve controls related to Information Security for effectiveness and operational efficiency. You will need to be able to audit all areas of the business where it is needed and take the lead when required. Within this role you will be responsible for supporting customer audits and responding to customer queries on Information Security and Information Systems and the associated functional processes and controls. You will also support third-party auditors to co-ordinate external audit activities to maintain and ensure compliance with industry standards. This will include managing the closure of any actions or findings raised. This new role offers an opportunity to be part of newly established functions to ensure we can evidence the measures put in place to protect our business and that of our customers.

You must be a highly effective communicator and a supportive team player, taking a consultative approach whilst maintaining the integrity and independence of the General Affairs department. You will combine an ability to navigate organisational politics and manage stakeholders, with a talent for operational delivery and a strong sense of accountability for results.


Main Responsibilities

  • Review existing documentation of IT controls, business processes, policies, procedures, and management reports for effectiveness and sustainability
  • Review, document, evaluate, and test manual and automated controls throughout the IT environment
  • Develop and implement audit testing methodologies
  • Design audit programs to ensure ongoing evaluation and validation of IT control effectiveness
  • Lead and conduct Information Security internal and external audits working to industry standards such as CIS, SOX and ISO27001
  • Assessment and evaluation of suppliers’ capabilities against applicable requirements, including GGS policies, standards and procedures
  • Lead and conduct Information Security risk assessments of suppliers and vendors
  • Working across internal stakeholders to collaborate and ensure that controls adhere to defined policies, process and procedures
  • Work with procurement and business units to ensure that suppliers and vendors comply with cyber security policies and standards.
  • Lead the completion of customer RFP, RFI due-diligence responses. working across multiple functions, including Sales, Product Development, Information Security and Information Systems to collate applicable information
  • Interpret audit results and make conclusions on the adequacy and reliability of controls; prepare and present reports as necessary
  • Prioritize audit findings based on severity of risk and non-compliance

Skills, Knowledge & Expertise

  • Must have experience of working in an audit function
  • Knowledge of Information Security frameworks such as NIST, CIS, SOX, Cyber Essentials, ISO27001, PCI-DSS and SOC
  • Contribute to an effective Information Security culture in support of audit objectives
  • Establish and maintain relationships across stakeholders, functional teams and external audit teams on relevant standards and frameworks
  • A good understanding of Information Security controls
  • Ability to appropriately identify and manage Information Security risks identified through audit completion in line with the business’s risk appetite
  • Able to produce clear and comprehensive audit documentation
  • Strong written and verbal communication skills
  • Commitment to excellence and high standards; strong organizational skills; able to manage time, priorities and workload
  • Ability to work autonomously and drive improvement
  • Comfortable to challenge seniority and existing processes
  • Knowledge of OneTrust or ServiceNow an advantage

Job Benefits

  • 25 days' holiday a year with the opportunity to buy up to five additional days each year
  • Competitive Company pension scheme
  • Ongoing training and development
  • Private medical insurance for all employees, (enhanced membership can be purchased for other family members)
  • Life assurance
  • Income protection scheme
  • Dental insurance for all employees
  • Employee assistance programme
  • Loyalty awards
  • Employee wellbeing events and Mental Health First Aiders
  • Employee My Benefits portal offering extensive retail discounts
  • Opportunity to volunteer for charity work

Seniority level
  • Seniority level
    Associate
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    IT Services and IT Consulting

Referrals increase your chances of interviewing at GLORY by 2x

Sign in to set job alerts for “Information Security Analyst” roles.

Bracknell, England, United Kingdom 5 days ago

Guildford, England, United Kingdom 1 month ago

Reading, England, United Kingdom 1 week ago

Reading, England, United Kingdom 1 week ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Lead Auditor
Information Security Lead Auditor

Alcumus • London

On-site
GBP 65,000 - 75,000
Enhanced Parental Leave
Generous annual leave
Healthcare Plan
+7
Cyber Threat Analyst
Cyber Threat Analyst

Accenture • Greater London

On-site
GBP 65,000 - 75,000
30 days vacation per year
Private medical insurance
Extra leave for charitable work
Security Analyst
Security Analyst

Fruition Group • England

Remote
Information Security Analyst
Information Security Analyst

Mountain Warehouse • London

Hybrid
GBP 40,000 - 70,000
Competitive salary and benefits package
Remote working, 1-2 times per month in the office
Holiday allowance
+2
Senior Blockchain protocol Security Auditor
Senior Blockchain protocol Security Auditor

Hacken, Blockchain Security & Compliance • United Kingdom

Remote
GBP 70,000 - 90,000
Medical Insurance
Health and Wellness Compensation
Learning and Development Budget
+3
Cyber Security Consultant - (Remote - UK)
Cyber Security Consultant - (Remote - UK)

Jobgether • United Kingdom

Remote
GBP 40,000 - 50,000
Remote working with flexible scheduling
Competitive compensation package
Professional development and certification support
+4
Security Consultant
Security Consultant

Gattaca • Crawley

On-site
GBP 60,000 - 80,000
Data Security Compliance Advisor
Data Security Compliance Advisor

Membership Bespoke • England

Hybrid
GBP 45,000 - 47,000
25 Days Holiday
Pension Scheme
Life Assurance
+5
Senior Security Analyst
Senior Security Analyst

La Fosse • Guildford

Hybrid
GBP 59,000 - 70,000
Cyber Security Consultant
Cyber Security Consultant

HM Revenue & Customs • England

Hybrid
GBP 50,000 - 70,000