Job Search and Career Advice Platform

Enable job alerts via email!

Information Security - Security Analyst

WH Smith PLC

Greater London

Hybrid

GBP 45,000 - 65,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading retail company in Greater London is seeking an Information Security Analyst to oversee information security policies, manage risk assessments, and ensure compliance with regulations. Responsibilities include maintaining security standards and documentation, along with facilitating corporate training programs. This role offers a hybrid working model, competitive salary, bonuses, and additional benefits like private medical insurance and enhanced leave policies.

Benefits

Hybrid working model
4 pm Friday finish
Flexible working
25 days holiday plus additional
Family friendly leave
Competitive pension contribution
Share save scheme
Annual bonus
Competitive salary with car allowance
Private medical insurance
Staff discount card

Qualifications

  • Experience in a combination of risk management, information security and IT roles.
  • Knowledge of common information security management frameworks.
  • Strong knowledge of Office 365, Teams, and SharePoint.
  • Knowledge of data protection regulations.

Responsibilities

  • Maintain information security policies and standards.
  • Manage the information & data security roadmap.
  • Facilitate risk assessment and management.
  • Deliver information and data security training.
  • Maintain security risk management technical solutions.
  • Conduct access control and asset inventory reviews.
  • Partner with technology groups as a data security representative.
  • Document evidence for annual PCI DSS and DPIA.

Skills

Risk management
Information security
IT roles
Audit
Knowledge of ISO27001
Knowledge of Cyber Essentials
Knowledge of NIST
Knowledge of PCI DSS
Knowledge of SOC2
Office 365
Teams
SharePoint
Data protection regulations
Job description
Introduction

At WHSmith our people are at the heart of everything we do. They are the ones that go the extra mile for our customers and enable our growth. That’s why our IT team works closely with stakeholders to develop and implement technology solutions.

Responsibilities

As an Information Security Analyst you will be responsible for the operational and process assurance activities related to the availability, integrity and confidentiality of customer, business partner, employee and business information in compliance with the organisation’s information security policies.

  • Maintaining information security policies, processes and standards in coordination with internal security and business stakeholders.
  • Managing and maintaining the information & data security roadmap, incident and information requests.
  • Working directly with business partners to facilitate risk assessment and management, assessing and communicating in line with relative policies and processes.
  • Facilitating the delivery of the information and data security education and awareness training framework across the business to ensure consistent application of policies and standards.
  • Maintaining technical solutions and procedural controls required to manage information security risk in line with the organisation’s information security policies.
  • Facilitating regular access control, asset inventory reviews and remediation plans, in line with the access control policy and asset management policy.
  • Partnering with all technology groups (internal and external) as the data security representative on development projects to deliver secure and compliant security operational services.
  • Documenting evidence in support of annual PCI DSS and privacy impact assessments (DPIA).
Qualifications

What we are looking for:

  • Experience in a combination of risk management, information security and IT roles (including Audit).
  • Knowledge gained through working with common information security management frameworks (e.g., ISO27001, Cyber Essentials, NIST, PCI DSS, SOC2).
  • A strong knowledge of Office 365, Teams, and SharePoint.
  • Knowledge of data protection regulations and requirements.
  • Experience with PCI‑DSS controls and implementation.
Benefits

How we reward our teams:

  • Hybrid working model from home and in the office.
  • 4 pm Friday finish.
  • Flexible working.
  • 25 days holiday, plus your birthday off, plus bank holidays with an opportunity to buy extra days holiday.
  • Family friendly leave.
  • Competitive pension contribution.
  • Share save scheme.
  • Annual bonus based on company and personal performance.
  • Competitive salary and car allowance.
  • Private medical insurance.
  • Staff discount card for stores and online.
About us

WHSmith have occupied our place in our customers’ hearts for over two decades. You’ll find our stores and our family of brands in airports, hospitals, railway stations, on high streets and in shopping centres – as well as right across the world! We are an ambitious team that thrives on pace, collaboration and innovation resulting in a real entrepreneurial culture. Celebrating 230 years, we’re proud to have grown and evolved into a globally recognised brand present in over 30 countries around the world, and we’re proud to be that air of familiarity people love and trust on their journey, both in life and through life. As a diverse group of over 12,000 colleagues, we are all on the same journey to a better business through our commitments to our planet, people and the communities we serve. WHSmith are proud to be an inclusive employer, we want our colleagues to feel welcome, and free to be themselves with us.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.