Information Security and Assurance Analyst

Reference: ozl6uv0l9dfxj4k651qr

We are seeking an Information Security and Assurance Analyst to support the protection, resilience and effective governance of information systems, data and technology services. This role will contribute to the development and maintenance of security controls, assurance processes and risk management activities, helping to ensure that information security requirements are understood and consistently applied across the organisation. You will work with colleagues across technology, business and operational teams to promote good security practices and provide practical, risk-based advice.

Key responsibilities will include supporting security risk assessments, reviewing control effectiveness and maintaining accurate records of risks, issues, exceptions and remediation actions. You will assist with internal and external audits, compliance reviews, supplier assurance activities and the preparation of evidence, reports and management information. The role will also involve monitoring security policies and standards, identifying opportunities for improvement, contributing to incident investigations and supporting the coordination of actions arising from security events, audits and assurance reviews. You may also help deliver security awareness activities and provide guidance on data protection, access management, vulnerability management and secure working practices.

The successful candidate will have experience in information security, IT assurance, risk, governance, audit or a related discipline, together with a sound understanding of security frameworks, policies, controls and regulatory requirements. You should be analytical, organised and confident in assessing information, identifying weaknesses and communicating recommendations to both technical and non-technical audiences. Strong written and verbal communication skills, attention to detail and the ability to manage competing priorities are essential. Experience with recognised frameworks such as ISO 27001, the NIST Cybersecurity Framework, COBIT or comparable standards would be advantageous, as would relevant professional qualifications or demonstrable equivalent experience. A proactive approach, sound judgement and a commitment to continuous improvement are central to success in this role.

COMPETITIVE SALARY
Added 18/09/2026
Reference: ozl6uv0l9dfxj4k651qr

Information Security and Assurance Analyst

Woking, England, United Kingdom Permanent Information Assurance

Other similar jobs

Security Assurance Specialist , AWS Compliance and Security Assurance EMEA

Added 19/08/2026

We are seeking a detail-oriented Security Assurance Specialist to join our dynamic team focused on compliance and security assurance within the EMEA region. In this role, you will be responsible for evaluating and implementing security measures to protect sensitive information and ensure compliance with industry regulations. Your expertise will be crucial in assessing risks, conducting audits, and developing strategies to enhance the security posture of our cloud services. You will collaborate with cross-functional teams to identify vulnerabilities and recommend solutions that align with best practices and compliance requirements. The ideal candidate will possess a strong understanding of cloud security frameworks...

Learn more

Senior Security Assurance Specialist , AWS Compliance and Security Assurance EMEA

Added 19/08/2026

We are seeking a Senior Security Assurance Specialist to join our team, focusing on compliance and security assurance across the EMEA region. In this role, you will be responsible for leading security assessments, audits, and compliance initiatives to ensure alignment with industry standards and regulatory requirements. You will collaborate with various stakeholders, including engineering, product management, and legal teams, to develop and implement security policies, procedures, and best practices. Your expertise will be crucial in identifying vulnerabilities and recommending effective mitigation strategies to enhance security posture. The ideal candidate will have a strong background in information security, risk management, and...

Learn more

Security Assurance Solutions Architect, AWS Security Assurance Services

Added 09/09/2026

We are seeking a Security Assurance Solutions Architect to help customers design, implement and validate secure solutions across cloud environments. In this role, you will act as a trusted security advisor, translating complex assurance requirements into practical technical architectures, controls and implementation plans. You will work with security, risk, compliance, engineering and business stakeholders to understand their objectives and guide them towards resilient, compliant and scalable outcomes. Key responsibilities include developing security assurance strategies; mapping regulatory, contractual and industry requirements to technical and organisational controls; reviewing architectures and identifying security gaps; and recommending pragmatic remediation approaches. You will support customer...

Learn more

Security Assurance Solutions Architect, AWS Security Assurance Services

Added 09/09/2026

We are seeking a Security Assurance Solutions Architect to help customers design, implement, and operate secure, resilient technology environments. In this role, you will serve as a trusted security advisor, translating complex regulatory, risk, and compliance requirements into practical technical solutions. You will work closely with security, engineering, architecture, risk, and compliance teams to develop assurance strategies that support business objectives while maintaining strong security controls. Your responsibilities will include assessing customer environments, identifying security and compliance gaps, and recommending improvements across governance, identity and access management, data protection, infrastructure security, monitoring, incident response, and resilience. You will create and...

Learn more

Security Assurance Manager, Security Assurance

Added 19/08/2026

We are seeking a dedicated Security Assurance Manager to oversee and enhance our security assurance framework. In this pivotal role, you will be responsible for identifying, assessing, and mitigating security risks across all operations. You will lead a team of security professionals in conducting thorough security assessments, audits, and risk analyses to ensure compliance with industry standards and regulatory requirements. Your expertise will be instrumental in developing and maintaining security policies, procedures, and best practices that safeguard our assets and data integrity. As a Security Assurance Manager, you will collaborate with cross-functional teams to implement effective security controls and provide...

Learn more

Cyber Security and Information Assurance Lead

Added 18/09/2026

We are seeking a Cyber Security and Information Assurance Lead to provide strategic and operational leadership across cyber security, information assurance, risk management and data protection. The successful candidate will help safeguard critical systems, information assets and services by developing robust security frameworks, policies and controls aligned with recognised standards and regulatory requirements. You will work closely with technology, operational and business stakeholders to ensure that security is embedded throughout the organisation’s services, projects and change programmes. Key responsibilities will include leading the assessment and management of cyber and information risks; maintaining security policies, standards, procedures and assurance documentation; and...

Learn more

Head of Operational Information Security, Risk and Assurance

Added 04/09/2026

We are seeking an experienced Head of Operational Information Security, Risk and Assurance to lead the development and delivery of a robust operational security, risk and assurance function. This is a senior leadership role with responsibility for protecting information assets, strengthening resilience and ensuring that security practices support organisational objectives. You will provide clear direction across information security operations, technology risk, governance, compliance and assurance, while promoting a culture of shared accountability for security. You will oversee the identification, assessment and treatment of information and technology risks, ensuring that effective controls are designed, implemented and continuously improved. Responsibilities will include...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 20/08/2026

We are seeking a skilled and experienced Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for identifying, assessing, and managing risks associated with technology and security across various platforms. You will conduct thorough risk assessments, ensuring compliance with regulatory requirements and internal policies. This includes evaluating the effectiveness of existing security controls and making recommendations for enhancements to safeguard our systems and data. You will also collaborate with cross-functional teams to implement security best practices and promote a culture of risk awareness within the organization. The ideal candidate will possess a deep...

Learn more

Certification and Assurance - Senior Security/Technology Risk Analyst

Added 13/08/2026

We are seeking a highly skilled Senior Security/Technology Risk Analyst to join our dynamic team. In this role, you will be responsible for assessing and mitigating security risks associated with technology and information systems. You will conduct thorough risk assessments, develop risk management strategies, and ensure compliance with industry standards and regulations. The ideal candidate will possess a deep understanding of security frameworks and have experience in implementing security controls across diverse environments. Your duties will include collaborating with cross-functional teams to identify and evaluate security vulnerabilities, conducting audits and assessments, and providing expert guidance on best practices. You will...

Learn more

Junior Cyber Risk and Assurance Analyst

Added 01/09/2026

We are seeking a motivated Junior Cyber Risk and Assurance Analyst to support the development, maintenance and continuous improvement of cyber security risk and assurance activities. This is an excellent opportunity for someone at the early stage of their cyber security career who is keen to build practical experience across governance, risk management, compliance and security assurance. You will work with colleagues across technology, risk and business functions to help identify, assess and manage cyber security risks in a structured and consistent way. Key responsibilities will include supporting cyber risk assessments, maintaining risk registers and action plans, and assisting with...

Learn more

Information Security Third Party Assurance Analyst

Added 03/09/2026

We are seeking an Information Security Third Party Assurance Analyst to support the assessment and ongoing oversight of the organisation’s suppliers, partners and other external service providers. In this role, you will help ensure that third parties meet required information security, privacy, resilience and risk management standards before and throughout the relationship lifecycle. You will work closely with procurement, legal, technology, privacy, risk and business teams to provide clear, practical assurance and support informed risk-based decisions. Your responsibilities will include reviewing supplier security questionnaires, independent assurance reports, policies, certifications and other evidence; assessing controls against recognised frameworks and internal requirements;...

Learn more

Senior Consultant (Technology & Cyber Assurance), Technology and Transformation

Added 11/09/2026

We are seeking a Senior Consultant to join a Technology and Transformation team, providing trusted advice across technology risk, cyber security and assurance. This role will support clients in understanding and managing technology-related risks while helping them deliver effective, resilient and secure transformation programmes. You will work with senior stakeholders, technology leaders and delivery teams to assess current capabilities, identify areas for improvement and provide practical recommendations that support business objectives. Your responsibilities will include planning and delivering technology and cyber assurance reviews, evaluating governance frameworks, policies, controls and operating models, and assessing risks associated with technology change, cloud adoption,...

Learn more

Cyber Risk and Assurance Specialist

Added 04/09/2026

We are seeking a Cyber Risk and Assurance Specialist to support the identification, assessment and management of cyber security risks across a complex technology and business environment. This role will help strengthen security governance, provide assurance over key controls and promote practical, risk-based improvements that protect information, systems and services. You will work closely with technology, operational risk, compliance, audit and business stakeholders to ensure cyber risks are understood, appropriately documented and managed within agreed tolerance levels. Key responsibilities will include maintaining cyber risk and control registers; conducting risk assessments for projects, suppliers, systems and emerging technologies; reviewing security policies,...

Learn more

Information Security Assurance Administrator

Added 18/09/2026

An opportunity is available for an Information Security Assurance Administrator to support the effective management, monitoring and continuous improvement of information security controls. The role will assist with maintaining assurance activities across systems, processes and third-party services, helping to ensure that security requirements are understood, implemented and evidenced. You will work with colleagues across technology, risk, compliance and operational teams to coordinate security reviews and support a strong culture of information protection. Key responsibilities will include maintaining security assurance records, control frameworks, policies, procedures and risk documentation; coordinating evidence collection for internal and external audits; tracking remediation actions and escalating...

Learn more

Information Security Assurance Manager

Added 26/08/2026

We are seeking an experienced Information Security Assurance Manager to lead and enhance information security assurance activities across a complex organisation. This role will provide independent oversight and constructive challenge, helping to ensure that information assets, technology services and business processes are appropriately protected against evolving cyber and operational risks. You will develop and manage a risk-based assurance programme covering governance, policies, controls, third-party arrangements, cloud services and key technology platforms. Responsibilities will include planning and delivering assurance reviews, assessing the design and effectiveness of security controls, coordinating remediation activity and providing clear reports to senior stakeholders and governance forums....

Learn more
At least 8 characters, 1 uppercase, 1 lowercase and 1 special character or number
Your file must be a doc, docx or pdf. No larger than 5MB.