Senior Information Security Risk Analyst

Reference: pwh44roxk8mli1zv1odg

We are seeking a Senior Information Security Risk Analyst to support the identification, assessment and management of technology and information security risks across a complex environment. This role will work closely with stakeholders across technology, compliance, audit and business functions to strengthen risk governance, improve resilience and promote effective security practices. The successful candidate will provide expert advice on risk matters and help ensure that security risks are understood, appropriately owned and managed within agreed tolerance levels.

Responsibilities will include conducting information security and technology risk assessments; evaluating controls against internal policies, regulatory expectations and recognised industry frameworks; maintaining risk registers, control documentation and management reporting; and supporting the development of risk treatment plans. You will analyse control weaknesses, emerging threats and business changes, providing clear recommendations and tracking remediation through to completion. The role will also contribute to security assurance activities, third-party and supplier risk assessments, audits, policy reviews, exception management and the preparation of concise reports for senior stakeholders and governance committees. You may also support risk and control awareness initiatives across the wider organisation.

Applicants should have substantial experience in information security, technology risk, IT audit, governance, risk and compliance, or a related discipline. A strong understanding of security frameworks and standards such as ISO 27001, NIST or COBIT is expected, together with experience assessing technical and organisational controls in a regulated or complex environment. Relevant professional qualifications, such as CISSP, CISM, CRISC, CISA or equivalent, would be advantageous. You will need excellent analytical, communication and influencing skills, with the ability to translate technical issues into clear business risks and practical actions. Strong attention to detail, sound judgement, effective stakeholder management and the confidence to challenge constructively are essential.

£65,000.00 - £80,000.00
Per annum
Added 09/09/2026
Reference: pwh44roxk8mli1zv1odg

Senior Information Security Risk Analyst

Leeds, England, United Kingdom Permanent Risk Analyst

Other similar jobs

Vice President, Enterprise Risk Management & Legal Entity Risk

Added 25/08/2026

We are seeking a Vice President, Enterprise Risk Management & Legal Entity Risk to provide strategic leadership across the enterprise risk framework and legal entity governance environment. This senior role will oversee the identification, assessment, monitoring and management of key risks, ensuring that risk practices support business objectives, regulatory expectations and sustainable growth. The successful candidate will serve as a trusted adviser to senior leaders and governance committees, providing clear, independent insight into the organisation’s risk profile and emerging exposures. Key responsibilities include leading the development and ongoing enhancement of the enterprise risk management framework, risk appetite statement, policies, standards...

Learn more

Technical Specialist (cyber related), Operational Risk and Resilience, R&CGI Operational Risk and Resilience Team - Insurance Directorate

Added 24/07/2026

We are seeking a highly skilled Technical Specialist with a strong focus on cyber-related issues to join our Operational Risk and Resilience Team within the Insurance Directorate. In this role, you will be responsible for identifying, assessing, and mitigating cyber risks that could impact the organization's operational resilience. You will work closely with cross-functional teams to develop and implement strategies aimed at enhancing the cybersecurity posture and ensuring compliance with relevant regulations and industry standards. Your expertise will be critical in conducting risk assessments, analyzing potential threats, and recommending appropriate risk management solutions. The ideal candidate will have a solid...

Learn more

Risk Manager - Tech & Cyber Risk

Added 22/07/2026

We are seeking a skilled Risk Manager specializing in Tech & Cyber Risk to join our dynamic team. In this role, you will be responsible for identifying, assessing, and mitigating risks associated with technology and cybersecurity within the organization. You will develop and implement risk management strategies to safeguard sensitive data and maintain compliance with industry regulations. Collaborating closely with IT, legal, and operational teams, you will conduct thorough risk assessments, create risk reports, and present findings to senior management while ensuring that risk policies are upheld and communicated effectively across the organization. To excel in this role, you will...

Learn more

Group Information Security Risk Analyst

Added 01/09/2026

We are seeking a Group Information Security Risk Analyst to support the identification, assessment and management of information security risks across a diverse, international environment. In this role, you will work with technology, business and control owners to maintain a clear view of the organisation’s risk profile and help ensure that security risks are managed within agreed policies, frameworks and risk appetite. You will contribute to a consistent, practical and risk-based approach to information security governance. Key responsibilities will include conducting risk assessments for systems, processes, projects, suppliers and emerging technologies; reviewing security controls and documenting gaps; maintaining risk registers,...

Learn more

Business Information Risk Analyst

Added 11/09/2026

We are seeking a Business Information Risk Analyst to support the identification, assessment and management of information and technology risks across a complex business environment. In this role, you will work with stakeholders across business operations, technology, security, compliance and audit to help ensure that information assets are protected and that risk is managed within agreed appetite and regulatory expectations. You will contribute to a proactive risk culture by providing clear, practical advice and promoting consistent risk management practices. Key responsibilities will include maintaining risk and control registers, supporting risk assessments, reviewing business processes and identifying potential vulnerabilities, control weaknesses...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 20/08/2026

We are seeking a skilled and experienced Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for identifying, assessing, and managing risks associated with technology and security across various platforms. You will conduct thorough risk assessments, ensuring compliance with regulatory requirements and internal policies. This includes evaluating the effectiveness of existing security controls and making recommendations for enhancements to safeguard our systems and data. You will also collaborate with cross-functional teams to implement security best practices and promote a culture of risk awareness within the organization. The ideal candidate will possess a deep...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 13/08/2026

We are seeking a highly skilled Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for assessing and mitigating security risks associated with technology and information systems. You will conduct thorough risk assessments, develop risk management strategies, and ensure compliance with industry standards and regulations. The ideal candidate will possess a deep understanding of security frameworks and have experience in implementing security controls across diverse environments. Your duties will include collaborating with cross-functional teams to identify and evaluate security vulnerabilities, conducting audits and assessments, and providing expert guidance on best practices. You will...

Learn more

Senior Internal Audit Analyst, Technology and Cyber Risk

Added 21/08/2026

We are seeking a highly skilled Senior Internal Audit Analyst specializing in Technology and Cyber Risk to join our dynamic team. In this role, you will be responsible for conducting comprehensive audits of technology processes and systems, ensuring compliance with regulations and internal policies. You will assess the effectiveness of IT controls, identify areas of risk, and provide actionable recommendations to enhance operational efficiency and security posture. Your analytical skills will be crucial in evaluating complex data sets and translating findings into clear, concise reports for stakeholders. The ideal candidate will possess a deep understanding of technology and cybersecurity frameworks,...

Learn more

Senior Internal Audit Analyst, Technology and Cyber Risk

Added 19/08/2026

We are seeking a highly skilled Senior Internal Audit Analyst with expertise in Technology and Cyber Risk to join our dynamic team. In this role, you will be responsible for leading and executing comprehensive internal audit projects, focusing on technology and cyber risk assessments. You will evaluate the effectiveness of internal controls, compliance with regulations, and the overall risk management framework. Your analytical skills will be crucial in identifying vulnerabilities, assessing potential threats, and recommending actionable strategies to mitigate risks. As a Senior Internal Audit Analyst, you will collaborate with cross-functional teams to develop audit plans and ensure alignment with...

Learn more

Senior IT Cyber Governance, Risk & Compliance Analyst

Added 18/08/2026

We are seeking a highly skilled Senior IT Cyber Governance, Risk & Compliance Analyst to join our dynamic team. In this role, you will be responsible for developing, implementing, and maintaining an effective governance, risk management, and compliance framework to ensure the organization meets all regulatory requirements and industry standards. You will conduct thorough risk assessments, identify vulnerabilities, and recommend appropriate mitigation strategies. Additionally, you will collaborate with cross-functional teams to enhance cybersecurity policies and procedures, ensuring alignment with overall business objectives. The ideal candidate will have a strong background in IT security, risk management, and compliance, with a proven...

Learn more

Information Security Governance, Risk, and Compliance (GRC) Specialist

Added 09/09/2026

An opportunity is available for an Information Security Governance, Risk, and Compliance (GRC) Specialist to support the development, implementation, and continuous improvement of information security governance and risk management practices. The successful candidate will help ensure that security policies, controls, and processes align with business objectives, regulatory obligations, and recognised industry frameworks. This role will work closely with technology, operational, legal, privacy, and business stakeholders to promote a consistent and effective approach to managing information security risk. Key responsibilities will include maintaining information security policies, standards, procedures, and control documentation; coordinating risk assessments and tracking remediation activities; supporting internal and...

Learn more

Head of Operational Information Security, Risk and Assurance

Added 04/09/2026

We are seeking an experienced Head of Operational Information Security, Risk and Assurance to lead the development and delivery of a robust operational security, risk and assurance function. This is a senior leadership role with responsibility for protecting information assets, strengthening resilience and ensuring that security practices support organisational objectives. You will provide clear direction across information security operations, technology risk, governance, compliance and assurance, while promoting a culture of shared accountability for security. You will oversee the identification, assessment and treatment of information and technology risks, ensuring that effective controls are designed, implemented and continuously improved. Responsibilities will include...

Learn more

Security and Information Risk Advisor

Added 01/09/2026

We are seeking a Security and Information Risk Advisor to support the effective management of information security, technology risk and data protection across a complex organisation. This role will provide trusted advice to stakeholders, helping them understand security requirements, identify potential risks and implement practical, proportionate controls. You will contribute to a strong risk-aware culture while ensuring that security considerations are embedded into business change, operational processes and third-party relationships. Key responsibilities will include conducting security and information risk assessments; advising on policies, standards and control frameworks; reviewing risks associated with projects, systems, suppliers and cloud services; and supporting the...

Learn more

Information Security and Compliance Risk Manager

Added 26/08/2026

We are seeking an Information Security and Compliance Risk Manager to lead the development, implementation and continual improvement of information security, compliance and enterprise risk management practices. This role will provide trusted advice to senior stakeholders, helping to identify, assess and manage technology, information and operational risks across the organisation. You will support a strong culture of security and accountability while ensuring that policies, controls and processes remain aligned with relevant legislation, regulatory expectations, industry standards and business objectives. Key responsibilities will include maintaining the information security and compliance risk framework; managing risk assessments, control reviews, assurance activities and remediation...

Learn more

Security and Information Risk Advisor

Added 20/08/2026

We are seeking an experienced Security and Information Risk Advisor to join our team. In this role, you will be responsible for identifying, assessing, and mitigating information security risks across the organization. Your primary focus will be to develop and implement robust security policies and procedures while ensuring compliance with relevant regulations and standards. You will conduct regular risk assessments and vulnerability analyses, providing strategic recommendations to enhance the organization’s security posture. The ideal candidate will possess strong analytical skills and the ability to communicate complex security concepts to both technical and non-technical stakeholders. You will work closely with various...

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.