Security and Information Risk Advisor

Reference: 0icfc76c7z3dkfffc9j1

We are seeking a Security and Information Risk Advisor to support the effective management of information security, technology risk and data protection across a complex organisation. This role will provide trusted advice to stakeholders, helping them understand security requirements, identify potential risks and implement practical, proportionate controls. You will contribute to a strong risk-aware culture while ensuring that security considerations are embedded into business change, operational processes and third-party relationships.

Key responsibilities will include conducting security and information risk assessments; advising on policies, standards and control frameworks; reviewing risks associated with projects, systems, suppliers and cloud services; and supporting the development and tracking of remediation plans. You will maintain accurate risk documentation, prepare reports and management information, and contribute to governance forums and assurance activities. The role will also involve supporting audits, incident reviews, business continuity planning and the assessment of compliance with relevant legal, regulatory and industry requirements. You will work closely with technology, privacy, procurement, internal audit and business teams to promote consistent and effective security practices.

We are looking for experience in information security, technology risk, governance, compliance or a related discipline, with a practical understanding of risk assessment and control design. Knowledge of recognised frameworks such as ISO 27001, NIST, COBIT or equivalent standards is desirable, as is experience working with third-party risk, data protection and security assurance. Relevant professional qualifications, such as CISSP, CISM, CRISC, ISO 27001 Lead Implementer or Auditor, are advantageous. You will need strong analytical, communication and influencing skills, the confidence to challenge constructively, and the ability to explain complex security issues clearly to both technical and non-technical audiences. A proactive, organised and collaborative approach is essential.

COMPETITIVE SALARY
Added 01/09/2026
Reference: 0icfc76c7z3dkfffc9j1

Security and Information Risk Advisor

Glasgow, Scotland, United Kingdom Permanent Risk Analyst

Other similar jobs

Senior Information and Cyber Security Officer

Added 17/09/2026

We are seeking an experienced Senior Information and Cyber Security Officer to lead and support the development of a robust, risk-based security environment. This is an opportunity to play a key role in protecting information, systems, services and users across a complex organisation, while helping to strengthen security culture and resilience. You will provide expert advice to senior stakeholders, contribute to strategic planning and ensure that security considerations are embedded throughout the design, delivery and operation of technology and business services. Your responsibilities will include maintaining and improving information security policies, standards and procedures; identifying, assessing and managing cyber and...

Learn more

Lead Cyber Security Analyst - Identity and Access Management

Added 05/08/2026

We are seeking a skilled Lead Cyber Security Analyst specializing in Identity and Access Management (IAM) to join our dynamic team. In this role, you will be responsible for developing, implementing, and managing IAM strategies and solutions to protect sensitive data and ensure compliance with industry regulations. You will lead efforts to assess and mitigate risks associated with user identities, authentication, and authorization processes, while collaborating with cross-functional teams to enhance security posture across the organization. Your key responsibilities will include designing and enforcing access controls, conducting regular audits and assessments of IAM systems, and responding to incidents related to...

Learn more

Principal Cyber Security Analyst (IAM)

Added 11/09/2026

We are seeking a Principal Cyber Security Analyst specialising in Identity and Access Management (IAM) to provide technical leadership across the design, delivery and continuous improvement of secure identity services. You will play a key role in protecting systems, data and users by developing effective access controls, strengthening identity governance and ensuring that security practices align with business and regulatory requirements. Your responsibilities will include leading the analysis and resolution of complex IAM and cyber security issues; designing and implementing role-based access control, privileged access management, authentication and authorisation solutions; and establishing robust processes for joiner, mover and leaver activities,...

Learn more

Cyber Security Analyst

Added 01/09/2026

We are seeking a Cyber Security Analyst to help protect critical systems, applications, networks, and data from evolving cyber threats. Working as part of a collaborative security function, you will monitor security events, investigate alerts, assess potential incidents, and support the delivery of effective security controls. This role is suited to an analytical and proactive professional who can communicate clearly, remain calm under pressure, and translate technical findings into practical recommendations. Your responsibilities will include monitoring security information and event management platforms, endpoint protection tools, vulnerability scanners, and other security technologies. You will triage and investigate suspicious activity, support incident...

Learn more

Principal Cyber Security Analyst

Added 21/07/2026

We are seeking a highly skilled Principal Cyber Security Analyst to join our dynamic team. In this pivotal role, you will be responsible for leading the development and implementation of robust cybersecurity strategies to protect our organization’s information systems. You will conduct comprehensive risk assessments, vulnerability analyses, and threat modeling to identify potential security weaknesses and ensure the integrity, confidentiality, and availability of sensitive data. Additionally, you will play a critical role in incident response, investigating security breaches, and providing recommendations for improvements to mitigate future risks. The ideal candidate will possess a deep understanding of cybersecurity frameworks and standards,...

Learn more

Security and Information Risk Advisor

Added 20/08/2026

We are seeking an experienced Security and Information Risk Advisor to join our team. In this role, you will be responsible for identifying, assessing, and mitigating information security risks across the organization. Your primary focus will be to develop and implement robust security policies and procedures while ensuring compliance with relevant regulations and standards. You will conduct regular risk assessments and vulnerability analyses, providing strategic recommendations to enhance the organization’s security posture. The ideal candidate will possess strong analytical skills and the ability to communicate complex security concepts to both technical and non-technical stakeholders. You will work closely with various...

Learn more

Security and Information Risk Advisor (4728)

Added 18/08/2026

We are seeking a highly skilled Security and Information Risk Advisor to join our team. In this role, you will be responsible for providing expert guidance on information security policies, risk management practices, and compliance frameworks. You will conduct comprehensive risk assessments to identify vulnerabilities and implement effective mitigation strategies. Your expertise will be crucial in developing security protocols and ensuring adherence to industry standards, safeguarding sensitive data and assets. As a Security and Information Risk Advisor, you will collaborate with various stakeholders to promote a culture of security awareness and best practices across the organization. Your responsibilities will include...

Learn more

Technical Specialist (cyber related), Operational Risk and Resilience, R&CGI Operational Risk and Resilience Team - Insurance Directorate

Added 24/07/2026

We are seeking a highly skilled Technical Specialist with a strong focus on cyber-related issues to join our Operational Risk and Resilience Team within the Insurance Directorate. In this role, you will be responsible for identifying, assessing, and mitigating cyber risks that could impact the organization's operational resilience. You will work closely with cross-functional teams to develop and implement strategies aimed at enhancing the cybersecurity posture and ensuring compliance with relevant regulations and industry standards. Your expertise will be critical in conducting risk assessments, analyzing potential threats, and recommending appropriate risk management solutions. The ideal candidate will have a solid...

Learn more

Crisis Management and Protective Security Advisor

Added 25/08/2026

We are seeking a Crisis Management and Protective Security Advisor to provide expert guidance on organisational resilience, emergency preparedness and the protection of people, assets and operations. The successful candidate will support the development, implementation and continuous improvement of crisis management, business continuity and protective security arrangements across a complex and dynamic environment. This role will involve working with senior stakeholders, operational teams and external partners to identify risks, strengthen preparedness and ensure an effective response to incidents. Key responsibilities will include conducting protective security and threat assessments; developing and reviewing crisis management, business continuity, emergency response and recovery plans;...

Learn more

Fraud and Cyber Crime Advisor

Added 11/09/2026

We are seeking a Fraud and Cyber Crime Advisor to support the identification, prevention and investigation of fraud, cyber-enabled crime and related financial risks. This role will provide expert advice across a range of complex cases, helping to protect customers, colleagues, systems and assets from evolving threats. You will assess intelligence, identify patterns of suspicious activity and contribute to effective responses that reduce financial, operational and reputational risk. Key responsibilities will include investigating suspected fraud and cyber incidents, reviewing alerts and case referrals, gathering and evaluating evidence, and preparing clear reports and recommendations. You will work closely with internal teams...

Learn more

Information Security Advisor

Added 23/07/2026

We are seeking a knowledgeable and proactive Information Security Advisor to join our dynamic team. In this role, you will be responsible for developing and implementing information security strategies and policies to safeguard sensitive data and IT assets. You will conduct risk assessments, identify vulnerabilities, and recommend appropriate security solutions. Collaborating with various departments, you will ensure compliance with relevant regulations and industry standards while promoting a culture of security awareness throughout the organization. Your expertise will be crucial in monitoring security incidents, analyzing security breaches, and leading response efforts to mitigate potential threats. You will also provide guidance and...

Learn more

Security Advisor

Added 17/09/2026

We are seeking a Security Advisor to provide trusted, practical advice that strengthens security across people, processes, technology and physical environments. In this role, you will work with stakeholders at different levels to identify risks, assess the effectiveness of existing controls and recommend proportionate improvements. You will contribute to a positive security culture by making complex issues clear, actionable and relevant to day-to-day operations. Your responsibilities will include conducting security assessments, supporting risk reviews, maintaining risk and issue registers, and advising on appropriate mitigation plans. You will help develop, review and implement security policies, standards, procedures and guidance, ensuring they...

Learn more

Supply Chain Security Advisor

Added 15/09/2026

We are seeking an experienced Supply Chain Security Advisor to strengthen the resilience, integrity and security of complex supply networks. In this role, you will provide expert guidance on supply chain security risks, controls and compliance requirements across suppliers, logistics providers, manufacturing partners and other external stakeholders. You will work closely with procurement, operations, information security, risk, legal and business continuity teams to identify vulnerabilities and develop practical, risk-based improvements. Your responsibilities will include conducting supply chain security assessments, reviewing supplier risk profiles and supporting due diligence activities throughout the third-party lifecycle. You will help establish and maintain security standards,...

Learn more

Field Security Technical Advisor

Added 15/09/2026

We are seeking a Field Security Technical Advisor to provide expert technical guidance and operational support across field-based programmes and facilities. The role will assess security risks, identify vulnerabilities, and recommend practical measures to protect personnel, assets, information, and operations in complex or changing environments. You will work closely with programme, logistics, facilities, and management teams to ensure that security considerations are integrated into planning, implementation, and day-to-day activities. Key responsibilities will include conducting security assessments and site visits; reviewing and updating security plans, procedures, and contingency arrangements; advising on access control, physical protection, communications, transport, travel, and emergency preparedness;...

Learn more

UKCSC Chartered or Principal Enterprise Advisor - Security Architecture

Added 08/09/2026

We are seeking an experienced Security Architecture professional to provide strategic advice and technical leadership across complex enterprise environments. The successful candidate will shape secure, resilient architectures that support organisational objectives, digital transformation and effective risk management. You will work with senior stakeholders, technology teams and delivery partners to establish security principles, define target architectures and ensure that security is embedded throughout the design, delivery and lifecycle of services. Key responsibilities will include developing and maintaining security architecture frameworks, patterns, standards and reference models; assessing proposed solutions and identifying security risks, dependencies and opportunities for improvement; and producing clear, proportionate...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.