Information Security GRC Analyst

Fitch Ratings, Inc.

Manchester

Hybrid

GBP 65,000 - 105,000

Full time

37 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Healthcare
Pension/Retirement plan
Tuition reimbursement
Parental leave
Paid volunteer days
Matched donations
Mentorship program
Employee Resource Groups

Job summary

Fitch Ratings, Inc. in Manchester, UK is seeking an Information Security GRC Analyst to support the delivery and development of our Cyber Security Awareness and Education program, helping employees understand cyber risks and build secure working habits.

You will work with teams across our global organization, including Information Security, Employee Communications, Learning and Development, Technology, HR, and business stakeholders.

Qualifications

  • Experience in cyber security awareness, human risk, training, communications, or employee education.
  • Strong written communication skills, ability to simplify complex topics.
  • Good attention to detail and the ability to manage multiple tasks, deadlines, and stakeholders.
  • Strong organizational skills and keeping trackers and documentation.
  • Collaborate with technical and non-technical colleagues across teams and regions.
  • Willingness to learn about phishing, data protection, IAM, secure practices, AI risks.
  • Proactive, curious, improvement-focused mindset.
  • Preferred: experience with awareness programs, phishing simulations, or training platforms.
  • Preferred: drafting internal communications, newsletters, or training materials.
  • Preferred: coordinating campaigns, events, stakeholder reviews, or approvals.
  • Preferred: reporting metrics and dashboards.
  • Preferred: basic cyber security topics like password security, MFA, data handling, incident management.
  • Preferred: experience in regulated financial/services/global corporate env.

Responsibilities

  • Support planning, coordination, and delivery of cyber security awareness campaigns.
  • Support awareness communications like newsletters, emails, intranet posts and manager updates.
  • Translate technical topics into clear, employee-friendly messaging.
  • Support training lifecycle: content updates, testing, launch coordination, tracking, evidence retention.
  • Assist with targeted, regional and regulatory training activities and approvals.
  • Support phishing simulation campaigns, including prep, testing, communications, reporting and follow-up.
  • Compile and maintain program metrics and dashboards.
  • Prepare dashboards, leadership updates, meeting materials, and program reports.
  • Maintain organized records of approvals and communications.
  • Coordinate with Information Security, Technology, Communications, HR, L&D, Facilities and business teams.
  • Assist with virtual and in-person awareness events, speaker coordination, briefs and invitations.

Skills

Cyber awareness
Written communication
Attention to detail
Stakeholder management
Cross-team collaboration
Learning mindset

Tools

Word
PowerPoint
Excel
Outlook
Teams
SharePoint

Job description

Salary: £65,000 - 105,000 per year

Requirements
  • Experience in cyber security awareness, human risk, training, communications, or employee education.
  • Strong written communication skills, with the ability to make complex topics clear, simple, and engaging.
  • Good attention to detail and the ability to manage multiple tasks, deadlines, and stakeholders.
  • Strong organizational skills and confidence maintaining trackers, documentation, and structured records.
  • Ability to work collaboratively with technical and non-technical colleagues across different teams and regions.
  • Comfortable using Microsoft Office tools, including Word, PowerPoint, Excel, Outlook, Teams, and SharePoint.
  • Willingness to learn about phishing, social engineering, data protection, identity and access management, secure working practices, AI-related risks, and emerging cyber threats.
  • Ability to handle sensitive information responsibly and maintain confidentiality.
  • A proactive, curious, and improvement-focused mindset.
  • Preferred: Experience with cyber security awareness programs, phishing simulations, security training platforms, or employee engagement campaigns.
  • Preferred: Experience drafting internal communications, newsletters, articles, presentations, or training materials.
  • Preferred: Experience coordinating campaigns, events, workshops, stakeholder reviews, or approval processes.
  • Preferred: Familiarity with reporting metrics and dashboards.
  • Preferred: Basic understanding of cyber security topics such as password security, multi-factor authentication, data handling, AI-related risks, and incident management.
  • Preferred: Experience working in a regulated, financial services, professional services, or global corporate environment.
Responsibilities
  • Support the planning, coordination, and delivery of cyber security awareness campaigns, including Cyber Security Awareness Month and targeted initiatives throughout the year.
  • Support awareness communications such as newsletters, articles, email campaigns, intranet posts, manager updates, event invitations, and reminders.
  • Translate technical cyber security topics into clear, accessible, employee-friendly messaging.
  • Support the security awareness training lifecycle, including content updates, testing, launch coordination, completion tracking, reminders, and evidence retention.
  • Assist with targeted, role-based, regional, and regulatory training activities, including stakeholder reviews, approvals, and supporting documentation.
  • Support phishing simulation campaigns, including preparation, testing, audience coordination, communications, reporting, and post-campaign follow-up.
  • Compile and maintain program metrics, including training completion, campaign engagement, phishing simulation outcomes, reporting rates, and communication performance.
  • Support the preparation of dashboards, leadership updates, meeting materials, and program reports.
  • Maintain organized records of approvals, communications, process documentation, evidence, and supporting materials.
  • Coordinate with stakeholders across Information Security, Technology, Communications, HR, Learning and Development, Facilities, and business teams.
  • Assist with virtual and in-person awareness events, including speaker coordination, event briefs, calendar invitations, promotional materials, volunteer coordination, and post-event follow-up.
Technologies
  • AI
  • Excel
  • Incident Management
  • Support
  • Security
  • SharePoint
More

We are hiring an Information Security GRC Analyst in Manchester, UK, on a hybrid basis, with on-site presence required two days per week. In this role, you will support the delivery and ongoing development of our Cyber Security Awareness and Education program, helping employees understand cyber risks and build secure working habits. You will work with teams across our global organization, including Information Security, Employee Communications, Learning and Development, Technology, HR, and business stakeholders. This opportunity is suited to someone early in a career in cyber security, communications, learning and development, risk management, or employee engagement. We offer experience contributing to a global awareness program, dedicated training, leadership development and mentorship, retirement planning and tuition reimbursement, comprehensive healthcare, family-friendly policies including global parental leave, Employee Resource Groups, paid volunteer days, and matched donations. Fitch provides global securities markets with objective, timely, independent, and forward-looking credit opinions. To protect our credibility and reputation, we take precautions to avoid conflicts of interest; successful candidates will be asked to declare securities holdings and other potential conflicts before commencing employment, and may be asked to divest conflicting holdings. We are an Equal Opportunity and Aff. Employer and evaluate qualified applicants without regard to protected characteristics.

last updated 40 week of 2026

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Analyst, Information Security GRC
Analyst, Information Security GRC

Fitch Group • Manchester

On-site
GBP 42,000 - 64,000
Hybrid work model
Training & development opportunities
Tuition reimbursement
+4
Analyst, Information Security GRC
Analyst, Information Security GRC

Fitch • Manchester

On-site
GBP 42,000 - 56,000
Hybrid work two days per week
Tuition reimbursement
Healthcare coverage
+3
Cybersecurity Awareness Analyst
Cybersecurity Awareness Analyst

Fitch Group • Manchester

Hybrid
GBP 45,000 - 65,000
Hybrid work
Training & mentorship
Retirement planning
+4
Analyst, Information Security GRC
Analyst, Information Security GRC

Fitch Ratings • Manchester

Hybrid
GBP 42,000 - 60,000
Hybrid work environment
Learning & mobility
Retirement planning
+4
Cyber Security Awareness & GRC Analyst
Cyber Security Awareness & GRC Analyst

Fitch Ratings • Manchester

Hybrid
GBP 42,000 - 60,000
Hybrid work environment
Learning & mobility
Retirement planning
+4
Information Security Consultant
Information Security Consultant

Reed Technology • Horsham

On-site
GBP 45,000 - 55,000
Company car
Annual bonus
Private medical insurance
+3
Cybersecurity Awareness & Education Specialist
Cybersecurity Awareness & Education Specialist

Fitch Group • Manchester

Hybrid
GBP 45,000 - 65,000
Hybrid work
Training & mentorship
Retirement planning
+4
Cyber Security Awareness & GRC Analyst
Cyber Security Awareness & GRC Analyst

Fitch Ratings, Inc. • Manchester

Hybrid
GBP 65,000 - 105,000
Healthcare
Pension/Retirement plan
Tuition reimbursement
+5
Cyber Security Awareness & GRC Analyst
Cyber Security Awareness & GRC Analyst

Fitch • Manchester

Hybrid
GBP 42,000 - 56,000
Hybrid work two days per week
Tuition reimbursement
Healthcare coverage
+3
InfoSec GRC Analyst: Security Awareness & Training
InfoSec GRC Analyst: Security Awareness & Training

Fitch Group • Manchester

Hybrid
GBP 42,000 - 64,000
Hybrid work model
Training & development opportunities
Tuition reimbursement
+4