Security & Data Privacy Analyst (ISO 27001/SOC 2)

Interact Software

Manchester

On-site

GBP 45,000 - 65,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Interact Software in Manchester seeks an Information Security & Data Protection Analyst to strengthen the information security and data protection framework, maintaining ISO 27001, SOC 2, Cyber Essentials and UK GDPR compliance.

You will work with technical and business teams to identify and mitigate risks, lead audits, and drive governance improvements while balancing security with commercial priorities.

Qualifications

  • 2-3 years minimum in an information security or data protection role.
  • Hands-on experience with at least two certification cycles (ISO 27001, SOC 2, etc.).
  • Demonstrable experience managing or influencing stakeholders at a senior level.
  • Involvement in penetration testing activities and remediations.
  • Experience handling real security incidents or data breaches.
  • Ability to pragmatically balance security risk against business need.
  • Maintenance and creation of the Risk Register, ROPA & DPIAs
  • Strong awareness of the GDPR, either through training from working within a business that processes personal data or independent learning.
  • Practical working knowledge of Defender, Intune, Entra, Purview, AWS and Azure

Responsibilities

  • Creating, reviewing and improving the security policies.
  • Implement and maintain Information Security Management System (ISO27001 certification)
  • Contribute to activities towards certification/compliance to security. standards and regulations (ISO 27001, SOC 2, Cyber Essentials, etc.)
  • Experience of undergoing audits
  • Support progress on business continuity plans and policy
  • Build and maintain relationships with technical and business stakeholders.
  • Leading regular risk assessments and internal process audits.
  • Working with internal teams and stakeholders to manage risks, suggest solutions, and resolving issues.
  • Support and lead with evidence collation for audits.
  • Conduct vendor/supplier reviews in line with Internal Policy.
  • Experience in completing client security questionnaires for prospects and customers
  • Maintain and improve information security awareness within the business.
  • Conduct monitoring activities as required with the UK GDPR and other data protection laws, again our data protection policies
  • Work with regulator investigations as required in Article 36
  • Point of contact to our employees and individuals about data processing activities.
  • Supporting the business maintaining the Security tickets through prompt follow-up and resolution, in collaboration with teams and other stakeholders.
  • Management of penetration testing remediations.

Skills

Security governance
Certification cycles
Stakeholder management
Penetration testing
Incident response
Risk assessment
GDPR awareness
Cloud platforms (AWS/Azure)
Security tooling (Defender/Intune/Ensa

Tools

Defender
Intune
Entra
Purview
AWS
Azure

Job description

Interact Software in Manchester seeks an Information Security & Data Protection Analyst to strengthen the information security and data protection framework, maintaining ISO 27001, SOC 2, Cyber Essentials and UK GDPR compliance.

You will work with technical and business teams to identify and mitigate risks, lead audits, and drive governance improvements while balancing security with commercial priorities.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

InfoSec & Data Protection Analyst — ISO 27001 & GDPR
InfoSec & Data Protection Analyst — ISO 27001 & GDPR

Sideways 6 • Manchester

On-site
GBP 42,000 - 62,000
25 days annual leave
Cycle to work scheme
Learning & Development platform
+5
Senior Information Security & Compliance Lead (Hybrid)
Senior Information Security & Compliance Lead (Hybrid)

InfoSec People Ltd • Hattersley

Hybrid
GBP 60,000 - 90,000
25 days annual leave
Life assurance
Health insurance
+3
Information Security and Data Protection Analyst
Information Security and Data Protection Analyst

Interact Software • Manchester

On-site
GBP 45,000 - 65,000
Security & Compliance Analyst – ISMS, ISO27001, GDPR
Security & Compliance Analyst – ISMS, ISO27001, GDPR

Peaple Talent • Manchester

On-site
GBP 40,000 - 60,000
Information Security Analyst
Information Security Analyst

REX Cyber Security • Bristol

Hybrid
GBP 50,000 - 70,000
Information Security & Compliance Analyst
Information Security & Compliance Analyst

Europa Worldwide Group • United Kingdom

Hybrid
GBP 42,000 - 62,000
Hybrid working
Onsite parking
Canteen onsite
+2
Junior Information Security Analyst: ISO 27001 & GRC
Junior Information Security Analyst: ISO 27001 & GRC

DVF Recruitment • Greater London

On-site
GBP 36,000 - 52,000
Senior Information Security & Compliance Analyst
Senior Information Security & Compliance Analyst

InfoSec People Ltd • Hattersley

Hybrid
GBP 60,000 - 90,000
25 days annual leave
Life assurance
Health insurance
+3
Security Lead: ISO 27001 & Risk Management
Security Lead: ISO 27001 & Risk Management

Jobtailor • Greater London

On-site
GBP 60,000 - 90,000
IT Information Security Analyst - Compliance
IT Information Security Analyst - Compliance

Adecco • West Midlands

Hybrid
GBP 45,000 - 55,000