Group Information Security Risk Analyst
We are seeking a Group Information Security Risk Analyst to support the identification, assessment and management of information security risks across a diverse, international environment. In this role, you will work with technology, business and control owners to maintain a clear view of the organisation’s risk profile and help ensure that security risks are managed within agreed policies, frameworks and risk appetite. You will contribute to a consistent, practical and risk-based approach to information security governance.
Key responsibilities will include conducting risk assessments for systems, processes, projects, suppliers and emerging technologies; reviewing security controls and documenting gaps; maintaining risk registers, treatment plans and associated reporting; and supporting the development of risk metrics and management information. You will monitor remediation activity, challenge control owners where appropriate and escalate significant issues through established governance channels. The role will also involve supporting security assurance activities, third-party risk reviews, audits, policy updates and the continuous improvement of information security risk processes. You will be expected to build effective relationships with stakeholders at all levels and communicate complex risk matters clearly to both technical and non-technical audiences.
The successful candidate will have experience in information security, technology risk, cybersecurity governance, audit or a closely related discipline. A good understanding of recognised security and risk frameworks, control principles, regulatory expectations and risk assessment methodologies is essential. Experience with third-party risk, cloud security, vulnerability management or security assurance would be advantageous. You should be analytical, organised and confident in evaluating evidence, identifying trends and making well-reasoned recommendations. Strong written and verbal communication skills are required, along with the ability to manage competing priorities, work collaboratively across functions and operate effectively in a changing environment. Relevant professional qualifications in information security, risk management or audit are desirable, but equivalent practical experience will also be considered.
Group Information Security Risk Analyst
Other similar jobs
Popular job searches
Your next job
starts here.
JOB SPECIALISMS
LATEST JOBS
TOP SEARCHES
LOCATIONS
- Security Engineer
- Security Analyst
- Security Architect
- IT Security Manager
- Security Consultant
- SOC Analyst
- Identity Access Management IAM
- Cyber Security Consultant
- Cloud Security
- Application Security
- Incident Response
- Penetration Tester
LATEST JOBS
- Security Engineer (Contractor)
- Vice President, Field CISO Com...
- Microsoft 365 & Security Infra...
- Senior ICT Security Designer
- Data Protection Expert
- Data Protection Officer: Schoo...
- Data Protection Officer
- IT CONSULTANT (IT Management,...
- Technology and Cyber Employee...
- Cyber Security Consultant
- Cyber Security Consultant (Pen...
- Platform and Services Engineer...